<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Origami &#8211; Parse, Analyze &amp; Forge PDF Documents</title>
	<atom:link href="http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 14 Feb 2012 00:17:07 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Sebastian Haensch</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159727</link>
		<dc:creator>Sebastian Haensch</dc:creator>
		<pubDate>Wed, 21 Oct 2009 21:41:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159727</guid>
		<description>everyone was an amateur once..... even you

detection routines trigger on hack tools like this since they contain exploit code or can be used for harmfull actions. it&#039;s a common behavior.

i talked to my guy at panda labs today, he was suprised that panda actually reports a virus.test.string instead of exploit.code, somethin wrong but nothin to worry about it will be detected as hacktool by panda soon</description>
		<content:encoded><![CDATA[<p>everyone was an amateur once&#8230;.. even you</p>
<p>detection routines trigger on hack tools like this since they contain exploit code or can be used for harmfull actions. it&#8217;s a common behavior.</p>
<p>i talked to my guy at panda labs today, he was suprised that panda actually reports a virus.test.string instead of exploit.code, somethin wrong but nothin to worry about it will be detected as hacktool by panda soon</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rishabh Dangwal</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159701</link>
		<dc:creator>Rishabh Dangwal</dc:creator>
		<pubDate>Wed, 21 Oct 2009 12:27:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159701</guid>
		<description>amateurs...</description>
		<content:encoded><![CDATA[<p>amateurs&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: M</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159699</link>
		<dc:creator>M</dc:creator>
		<pubDate>Wed, 21 Oct 2009 11:49:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159699</guid>
		<description>What&#039;s a moebius strip in this context?</description>
		<content:encoded><![CDATA[<p>What&#8217;s a moebius strip in this context?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Darknet</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159683</link>
		<dc:creator>Darknet</dc:creator>
		<pubDate>Wed, 21 Oct 2009 03:09:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159683</guid>
		<description>It&#039;s a PDF exploitation tool and you guys are questioning why AV detects a PDF exploit inside, you baffle me really.</description>
		<content:encoded><![CDATA[<p>It&#8217;s a PDF exploitation tool and you guys are questioning why AV detects a PDF exploit inside, you baffle me really.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: K.P.</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159682</link>
		<dc:creator>K.P.</dc:creator>
		<pubDate>Wed, 21 Oct 2009 02:15:59 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159682</guid>
		<description>Avast reports JS:Pdfka-FS exploit ?!

Whatsup?</description>
		<content:encoded><![CDATA[<p>Avast reports JS:Pdfka-FS exploit ?!</p>
<p>Whatsup?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sebastian Haensch</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159669</link>
		<dc:creator>Sebastian Haensch</dc:creator>
		<pubDate>Tue, 20 Oct 2009 15:18:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159669</guid>
		<description>Panda reports Eicar.Mod thats funny...

EICAR: http://en.wikipedia.org/wiki/EICAR_test_file
I use this string sometimes during security audits. Panda reports the string as Eicar.Mod 

I havn&#039;t looked trough the code but I wonder if it contains the EICAR string or what hack Panda is trying to tell us here :)</description>
		<content:encoded><![CDATA[<p>Panda reports Eicar.Mod thats funny&#8230;</p>
<p>EICAR: <a href="http://en.wikipedia.org/wiki/EICAR_test_file" rel="nofollow">http://en.wikipedia.org/wiki/EICAR_test_file</a><br />
I use this string sometimes during security audits. Panda reports the string as Eicar.Mod </p>
<p>I havn&#8217;t looked trough the code but I wonder if it contains the EICAR string or what hack Panda is trying to tell us here :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: anonymous</title>
		<link>http://www.darknet.org.uk/2009/10/origami-parse-analyze-forge-pdf-documents/#comment-159667</link>
		<dc:creator>anonymous</dc:creator>
		<pubDate>Tue, 20 Oct 2009 15:00:09 +0000</pubDate>
		<guid isPermaLink="false">http://www.darknet.org.uk/?p=2169#comment-159667</guid>
		<description>clamav reports this containts a virus.

http://www.virustotal.com/analisis/03d625dd6742e83e1cf1e7aada8ac8204c837386922d724032600a741c8dd32d-1256051167</description>
		<content:encoded><![CDATA[<p>clamav reports this containts a virus.</p>
<p><a href="http://www.virustotal.com/analisis/03d625dd6742e83e1cf1e7aada8ac8204c837386922d724032600a741c8dd32d-1256051167" rel="nofollow">http://www.virustotal.com/analisis/03d625dd6742e83e1cf1e7aada8ac8204c837386922d724032600a741c8dd32d-1256051167</a></p>
]]></content:encoded>
	</item>
</channel>
</rss>

