Skip to main content

Posts

Showing posts from 2020

QuickSand 2

The 2020 CSO Online survey revealed that 94% of malware is still delivered via email. We decided to refresh QuickSand.io into an all in one tool for analyzing both documents and PDFs for malware. Over the last few years the state of document and PDF malware has shifted dramatically from exploits to active content, exploiting the features of Office and PDF documents to deliver malware.


The web version of QuickSand.io is a simplified result to determine if the analyzed document has active content, high risk active content, or a potential exploit. We do recommend blocking active content from external email as much as possible.

Get StartedOn any page on https://quicksand.io click the `Choose File` button under the logo on the left, then select the file to scan. Click `Scan Document or PDF` to start the analysis. Javascript is required to upload the file.
LimitsFilesize: 10MB. Documents over 10MB (max 28s of processing) or PDFs over 5MB (max 18s of processing) may timeout on the online versio…

QuickSand.io version 2.0.1 major release

Check out our new version of QuickSand.io. Now supports PDF and documents (Office OLE/OpenOffice and RTF) all in a single tool.


We now use a risk description to define the risk from each document. Generally documents or PDFs will have either active content like macros or scripts, or contain an exploit.