Question Is that true or just a hoax?

Please provide comments and solutions that are helpful to the author of this topic.

Parkinsond

Level 56
Thread author
Verified
Well-known
Dec 6, 2023
4,531
11,857
5,469
Take potentially dangerous PDFs, office documents, or images and convert them to safe PDFs.

Dangerzone destroys malware by rendering your document into pixels in a secure sandbox and reconstructing it locally as a PDF.

Documents are sanitized in a sandbox with no network access, so if a malicious document can compromise one, it can't let anyone know.

Dangerzone is a free and open source project, maintained by Freedom of the Press Foundation (FPF), a nonprofit organization that protects and defends press freedom.

 
Or maybe use SumatraPDF? The dev intentionally avoid adding some features to prevent it to be more vulnerable. Honestly, who needs 1GB app to open 1MB PDF? :unsure:
I use OnlyOffice as my pdf editor/reader; it cannot run javascript; for docx files, it also does not run vba macro (when using MS Word for extensive editing, I have macros disabled).
 
This method can kill many malware embedded in documents.
However, many documents use embedded URLs to phishing/malicious websites. This can survive the rendering.
Yeah, this is where the CP emulation @SeriousHoax mentions and the CDR (content disarm and reconstruction) published by @Parkinsond start to differ.

Both of them remove macros, custom fonts and other content that can launch an attack, but Check Point also inspects links, and downloads and emulates all files.

It also analyses the contents for phishing.
 
I forgot to say I also disable opening URL on clicking in settings of pdf reader.
Samsung Autoblocker on max on android does just that, it is quite annoying, I have to use copy/paste, but it is a nice feature.
 

Attachments

  • Screenshot_20251031_081816_Messages.jpg
    Screenshot_20251031_081816_Messages.jpg
    141.6 KB · Views: 50