​ Malicious payload VirusTotal scan results.

​ Malicious payload VirusTotal scan results.

Source publication
Preprint
Full-text available
The paper introduces StegArmory, a new open source software package with practical applications for offensive cyber security operators. StegArmory uses steganography techniques to embed machine code, or shellcode, in images. Shellcode is typically flagged as malicious by antivirus software due to the payloads they often contain, but detection becom...

Similar publications

Article
Full-text available
Logging is widely used in modern software development to record run-time information for software systems and plays a significant role in software testing. Although the research area of logging has attracted much attention, little attention is paid to the practice of test logging (i.e., the logging involved in test files). To fill this knowledge ga...

Citations

Chapter
In offensive and defensive exercises, the security detection side (red team) conducts simulated real network attacks from various entry points to the maximum extent in limited time without affecting the operation of the enterprise. And defense detection side (blue team), always represented the enterprise, conducts the defense based on the existing security measures to the best. Anti-anti-virus technology is significant and commonly used by the red team, to save the virus Trojan from being checked by antivirus software. However, most of existing anti-anti-virus methods are offline and complicated to develop on the site. This paper proposed an online automated anti-anti-virus method and introduced the design and implementation of an online anti-anti-virus tool in Python based on Flask Framework. Testing results show that the virus files processed by this tool can bypass much mainstream security software such as Velvet, 360, and Tencent Computer Control and it can achieve a low detection rate of 21.73%.KeywordsAnti-anti-virusPayload generationFlaskOffensive and defensivePython