▽InfoSec Diary Blog Archive - Internet Security | SANS ISC ●11/24 20:58 Published: 2024-11-24Quick & Dirty Obfuscated JavaScript AnalysisAs mentioned in diary entry "Increase In Phishing SVG Attachments", I have a phishing SVG sample with heavily obfuscated JavaScript.As I didn't want to spend time doing static analysis, I did a quick dynamic analysis instead. TL;DR: I open the SVG file in a VM disconnected from the Internet, and use Edge's developer tools to view