Skip to content
SecArsenal
Educational and ethical use only. Only test systems you own or are explicitly authorized to test. Full disclaimer.

TYLabs QuickSand Framework

Python-based malware analysis framework for analyzing Office documents and PDFs to identify exploits in decoded streams using YARA signatures.

malicious-file-analysis
Official docs ↗

Platforms: Web · Last verified September 7, 2026

Python-based malware analysis framework for analyzing Office documents and PDFs to identify exploits in decoded streams using YARA signatures.

Only use this tool against systems you own or are explicitly authorized to test — see the disclaimer.

Getting started

Best for: Document and PDF malware analysis with exploit detection. See the official site linked above for details.