Ok, I received a obvious phishing email with what I can only assume is a malicious pdf attachment.

I took the opportunity to learn from it and opened the file in my home lab isolated VM to examine it.

I suspect it is a key logger with the intent that the person freaks out and logs into their PayPal and Coinbase account.

It has what looks like Java script streams within it and tried to use a Python script to decode it but getting stuck. Any help reading this?

nostr:npub1f6ugxyxkknket3kkdgu4k0fu74vmshawermkj8d06sz6jts9t4kslazcka

#infosec #cybersecurity

Reply to this note

Please Login to reply.

Discussion

The way I avoid phishing emails is to just let my unread build up to 2000 emails and then abandon the account for a new one 😜

🧐

Got a similar thing recently.