T1564.007_vba-stomping

Adversaries may hide malicious Visual Basic for Applications (VBA) payloads embedded within MS Office documents by replacing the VBA source code with benign data.

cyberstrikeus Updated

File contents

cyberstrikeus/cyberstrike/tree/main/.cyberstrike/skill/mitre_attack/TA0005_defense-evasion/T1564.007_vba-stomping commit e4b901098e

Frequently asked questions

npx skillmds@latest add cyberstrikeus/t1564-007-vba-stomping