Dangerzone: Convert PDFs, documents, or images to a safe PDF

49 points by piccirello 1 year ago | 6 comments
  • mike_d 1 year ago
    This is a process referred to in government as "Content Disarm and Reconstruction." But I can't stress this enough: if you don't trust the files, you shouldn't be processing them at all locally.

    I built a similar tool that converts >300 formats to images in a remote sandbox. https://preview.ninja/

    • barfbagginus 1 year ago
      How do I safely read them from the remote box, assuming we really expect the box to get compromised?

      If the box is compromised and I RDP, I can get mashed by an RDP exploit. If I download the image or pdf, I can get mashed with an image or PDF exploit.

      This is why I never trusted the Qubes image/PDF disarm workflow

    • fsflover 1 year ago
      Qubes OS has a convenient option to convert any PDF or picture into a trusted one, using strong hardware virtualization: https://blog.invisiblethings.org/2013/02/21/converting-untru...
    • Alifatisk 1 year ago
      This would be a really cool feature to have in Microsoft powerautomate, so every pdf I receive on outlook funnels through this.
      • joemazerino 1 year ago
        I use this tool often. I donate to support as well.