securitytoolbox
Service icon

SecurityToolbox

Stable version 1.0.0 (Compatible with OutSystems 11)
Uploaded
 on 26 September 2022
 by 
0.0
 (0 ratings)
securitytoolbox

SecurityToolbox

Documentation
1.0.0
  • ValidatePDF
    PDF has more functions than just text: it can include images and other multimedia elements, be password protected, execute JavaScript and so on.
    We all know that there are a number of attacks where an attacker includes some javascript in a PDF document. This javascript uses some kind of vulnerability in how the PDF document is analyzed and presented to the user to execute malicious code on the targeted system.

    This action inspects PDF Object model and searches for executable Javscript and if found marks PDF as invalid.

    Find here some examples of PDF with Javascript:

    https://github.com/PortSwigger/portable-data-exfiltration/tree/main/PDF-research-samples/jsPDF/chrome