awesome-repositories.com
博客
MCP
awesome-repositories.com

通过 AI 驱动的搜索,发现最优秀的开源仓库。

探索精选搜索开源替代品自托管软件博客网站地图
项目关于排名机制媒体报道MCP 服务器
法律隐私政策服务条款
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
jonaslejon avatar

jonaslejon/malicious-pdf

0
View on GitHub↗
4,070 星标·529 分支·Python·BSD-2-Clause·8 次浏览

Malicious Pdf

This project is a set of specialized utilities for generating malformed documents, obfuscating payloads, and crafting specific attack vectors to evaluate the resilience of security scanners. It functions as a PDF fuzzing framework and security testing tool designed to create PDF files with embedded payloads for verifying how document viewers and web applications handle vulnerabilities.

The toolkit provides capabilities for encoding and hiding malicious content to test the detection effectiveness of security scanners. It includes a security payload generator for crafting specific attack vectors, such as credential theft and remote execution, to facilitate security verification.

The system supports the assembly of automated file suites and the organization of attack vectors into modular libraries. It utilizes template-based generation and payload-driven synthesis to construct documents that identify security gaps in PDF processing logic and document converters.

Features

  • PDF Security Testing - Creates documents with specific payloads to check if PDF viewers and web applications handle vulnerabilities safely.
  • PDF Generation Tools - Generates PDF files with embedded payloads to test the resilience of document viewers.
  • Adversarial Document Generation - Creates PDF documents containing common attack vectors to verify viewer and application resilience.
  • Document Synthesis - Constructs PDF files by combining vulnerability strings with valid file format specifications.
  • Attack Vector Libraries - Organizes vulnerability tests into discrete categories like remote execution and credential theft.
  • Malware Analysis - Generates files with common attack vectors to verify if security scanners can detect concealed threats.
  • Payload Obfuscators - Provides a utility for encoding and hiding malicious content within documents to evaluate security scanners.
  • Multi-Technique Obfuscation Engines - Implements multi-stage encoding and layering techniques to bypass security scanner detection.
  • Vulnerability Research - Implements a workflow for building specialized file suites to research remote execution and credential theft.
  • Penetration Testing Suites - Provides a suite of tools to identify security gaps in PDF processing logic.
  • Security Payload Generators - Crafts specific attack vectors such as credential theft and remote execution for security verification.
  • Document Vulnerability Testing - Generates PDF files containing specific payloads to test how viewers handle common security vulnerabilities.
  • PDF Fuzzing Frameworks - Provides a system for creating a wide range of malformed PDF documents to identify vulnerabilities in parsing libraries.
  • Automated Test Suites - Provides capabilities to group individual test cases into collections for batch testing document converters.
  • Security Detection Test Suites - Creates collections of specialized PDF files to test for vulnerabilities like credential theft in document converters.
  • Payload Injection Templates - Creates documents by injecting specific attack payloads into pre-defined PDF structure templates.
  • Nim Tools - Malicious PDF generator.

Star 历史

jonaslejon/malicious-pdf 的 Star 历史图表jonaslejon/malicious-pdf 的 Star 历史图表

AI 搜索

探索更多 awesome 仓库

用简单的语言描述您的需求 —— AI 将根据相关性为您从数千个精选开源项目中进行排序。

Start searching with AI

常见问题解答

jonaslejon/malicious-pdf 是做什么的?

This project is a set of specialized utilities for generating malformed documents, obfuscating payloads, and crafting specific attack vectors to evaluate the resilience of security scanners. It functions as a PDF fuzzing framework and security testing tool designed to create PDF files with embedded payloads for verifying how document viewers and web applications handle vulnerabilities.

jonaslejon/malicious-pdf 的主要功能有哪些?

jonaslejon/malicious-pdf 的主要功能包括:PDF Security Testing, PDF Generation Tools, Adversarial Document Generation, Document Synthesis, Attack Vector Libraries, Malware Analysis, Payload Obfuscators, Multi-Technique Obfuscation Engines。

jonaslejon/malicious-pdf 有哪些开源替代品?

jonaslejon/malicious-pdf 的开源替代品包括: veil-framework/veil — Veil is a payload generation framework and a suite of tools designed to automate the creation of obfuscated binaries… screetsec/thefatrat — TheFatRat is a security exploitation framework designed to automate the creation, obfuscation, and deployment of… edgesecurityteam/ehole — EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability… mantvydasb/redteaming-tactics-and-techniques — This project is a red teaming knowledge base and offensive security playbook designed to simulate adversary behavior.… 0dayctf/reverse-shell-generator — This project is a suite of tools for generating encoded shell commands and network listener configurations used in… bc-security/empire — Empire is a post-exploitation command-and-control (C2) framework designed for red team operations. It deploys and…

Malicious Pdf 的开源替代方案

相似的开源项目,按与 Malicious Pdf 的功能重合度排序。
  • veil-framework/veilVeil-Framework 的头像

    Veil-Framework/Veil

    4,199在 GitHub 上查看↗

    Veil is a payload generation framework and a suite of tools designed to automate the creation of obfuscated binaries and encoded shellcode. It functions as an anti-virus evasion tool that transforms binary code to bypass security scanners and endpoint detection software. The framework utilizes multi-language payload generation, employing various programming language compilers to create executables that evade signature-based detection. It includes an evasive shellcode encoder to remove forbidden characters and apply obfuscation techniques to hide payload logic. The project covers the generati

    Pythonantivirusevasionveil
    在 GitHub 上查看↗4,199
  • screetsec/thefatratscreetsec 的头像

    screetsec/TheFatRat

    11,038在 GitHub 上查看↗

    TheFatRat is a security exploitation framework designed to automate the creation, obfuscation, and deployment of payloads for penetration testing. It functions as a comprehensive toolkit that streamlines the exploitation lifecycle, enabling users to generate malicious executables, manage network listeners, and execute post-exploitation tasks through a unified command-line interface. The framework distinguishes itself by integrating various third-party exploitation utilities into a single, orchestrated workflow. It provides specialized capabilities for embedding code into legitimate binaries a

    Caccessibilityantivirusautorun
    在 GitHub 上查看↗11,038
  • edgesecurityteam/eholeEdgeSecurityTeam 的头像

    EdgeSecurityTeam/EHole

    3,436在 GitHub 上查看↗

    EHole is a specialized toolkit for network asset parsing, binary transformation, payload generation, and vulnerability research. It functions as an asset discovery and fingerprinting tool designed to identify software versions and high-value assets across IP ranges and URLs using custom fingerprints. The project provides a vulnerability research toolkit for decrypting software credentials and retrieving factory default passwords for security devices and web applications. It also includes a security payload generator for encoding and escaping command strings to bypass shell tokenization and ex

    Go
    在 GitHub 上查看↗3,436
  • 0dayctf/reverse-shell-generator0dayCTF 的头像

    0dayCTF/reverse-shell-generator

    3,959在 GitHub 上查看↗

    This project is a suite of tools for generating encoded shell commands and network listener configurations used in offensive security operations. It provides a collection of command generators for various shells and listeners to establish remote access during security penetration tests. The tool features a reverse shell payload generator that creates encoded command strings and a network listener command generator that produces the server-side syntax needed to accept incoming network connections. It includes a Base64 command encoder to transform shell commands into encoded strings to bypass s

    HTMLctfgeneratorhacking
    在 GitHub 上查看↗3,959
查看 Malicious Pdf 的所有 30 个替代方案→