4 ms·
Author here. The obfuscated code example was to show what a malware author might do to make malware analysis of a Python "compiled" binary more difficult. The c
by vesche 6y ago
Author here. The obfuscated code example was to show what a malware author might do to make malware analysis of a Python "compiled" binary more difficult. The code might be obfuscated & turned into an executable before deployed.
As far as the opencv library goes, used by PoetRAT, you can choose to bundle third party packages inside your executable with all the executable generators I mentioned at the beginning of the article like PyInstaller or Nuitka.
- theturingnerd 6y agoQuality work! Sidebar, it's crazy to see you on the front page of HN; hope you're doing well man! --t--
- neatze 6y agoThanks for article and explanation I am less confused now. I wonder how large malware payload size will be when packaged with open-cv :)
- vesche 6y agoThey can get really large, especially if it's a dependency that has many dependencies itself! Glad you enjoyed it, thanks so much for reading.