mgeeky / CustomXMLPart

A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.

Home Page:https://mgeeky.tech/payload-crumbs-in-custom-parts/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

CustomXMLPart

A PoC weaponising Custom XML parts for stealthily hiding malware code inside of Office document structures.

1.png

Technical explanation described in a dedicated blog post:

What it does?

The document provided simply displays a message box with a text extracted from a part.


☕ Show Support ☕

This and other projects are outcome of sleepless nights and plenty of hard work. If you like what I do and appreciate that I always give back to the community, Consider buying me a coffee (or better a beer) just to say thank you! 💪


Mariusz Banach / mgeeky, (@mariuszbit)
<mb [at] binary-offensive.com>

About

A PoC weaponising CustomXMLPart for hiding malware code inside of Office document structures.

https://mgeeky.tech/payload-crumbs-in-custom-parts/

License:GNU General Public License v3.0


Languages

Language:VBA 100.0%