Document Malware Analysis

Archive of document malware analysis posts covering macro payloads, OLE data, shellcode, and RTF exploit chains.

This archive collects hands-on posts about document-based malware samples, with a focus on macro payloads, OLE object parsing, exploit-triggered execution, and shellcode tracing. The goal is to connect static analysis with the runtime behavior of the sample.

Analysis Posts