117

GitHub - aserper/DDEtect: Simple DDE object detector

 6 years ago
source link: https://github.com/aserper/DDEtect
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

DDEtect

Written by Amit Serper, @0xAmit DDEtector is a simple DDE object detector written in python

  • Currently supports only word DOCX and legacy DOC files
  • Prints the contents of the DDE payloads (Note: In some cases DDEtect won't print the entire DDE payload. I'm working on writing a better matching algorithm)
  • More features coming soon...

Notes

This was done quick-n-dirty. I'm sure that there is a better and more elegant way of doing everything in here but I wasn't giving it a lot of thought. Constructive feedback is always welcome, twitter is the best way of contacting me. This is a work in progress...

Running DDEtector

Execute the python file and supply a path to a docx file as an argument. Use the -d argument for a regular doc file or -x for a docx file:

alt text

DDEtector requires the following python modules:

  • zipfile
  • xmltodict
  • nested_lookup
  • argparse

Todos

  • Format autodetection
  • Support other office formats (ie. excel)

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK