View Suspicious Documents Safely with Dangerzone

A standard piece of advice for staying safe online is to avoid opening attachments from people you don’t know or attachments that seem suspicious. It’s good advice, since PDFs and office documents can contain JavaScript and macros that present a security risk, or they could be maliciously crafted to take advantage of vulnerabilities in common apps to execute code on your computer.

But in the real world, unless the document is attached to a message that is obviously spam, it’s difficult to know whether you should be worried. If you could just look at the document, you might be able to tell, but how can you do that without opening it?

Enter Dangerzone, an open source app created by the nonprofit Freedom of the Press Foundation. The impetus for creating it came from journalists who need to review attachments from possibly untrustworthy sources while protecting themselves from hacking and retaliation from powerful corporate and government interests.

Dangerzone won’t tell you whether or not a document is safe. Instead, when you drop a document on its window, it creates a PDF image of the document that contains nothing of the original other than the visual representation of its pixels. Think of Dangerzone as a virtual photocopier—it makes a visual copy.

But Dangerzone is a highly sophisticated virtual photocopier, since it has to work with malicious documents without allowing them to cause harm. Behind the scenes, Dangerzone first creates a Linux container to keep the document away from your Mac. Within the container, it then creates a sandbox to protect the Linux kernel. Then it uses open source tools—LibreOffice and PyMuPDF—to convert the original document to a PDF, split that PDF into individual pages, and convert each page to RGB pixels—just colored dots. Then it quits the sandbox since the file has been sanitized, and if possible, it converts the RGB pixel data into a compressed, searchable PDF. Finally, it saves the PDF to the specified folder and archives the original file. You can process only one file or batch of files at a time to ensure that the entire secure conversion environment starts fresh each time.

Here are the document types that Dangerzone can convert into safe PDFs:

  • PDF (.pdf)
  • Microsoft Word (.docx, .doc)
  • Microsoft Excel (.xlsx, .xls)
  • Microsoft PowerPoint (.pptx, .ppt)
  • ODF Text (.odt)
  • ODF Spreadsheet (.ods)
  • ODF Presentation (.odp)
  • ODF Graphics (.odg)
  • EPUB (.epub)
  • JPEG (.jpg, .jpeg)
  • GIF (.gif)
  • PNG (.png)
  • SVG (.svg)
  • TIFF (.tif, .tiff)
  • Other image formats (.bmp, .pnm, .pbm, .ppm)

You won’t want to use Dangerzone on every document you receive in email. There’s no reason to fuss with it for attachments that come from people you know, in contexts where it makes sense that they’re sending you something. But if you get an attachment out of the blue that makes you think, “Why is this person sending me a document?” run the document through Dangerzone to make sure it’s safe.

(Featured image by iStock.com/shironosov)


Social Media: Got a suspicious attachment? Dangerzone converts potentially dangerous PDFs and Office docs into safe, pixel-only copies you can view without risk. Think of it as a virtual photocopier that strips any hidden malware, JavaScript, or macros.

Similar Posts

  • New Urbanears Active Headphones

    So by now, it might be clear that I am a bit of a headphone junkie. I’ve come to the conclusion that I can collect and use headphones like I do bags and purses! In my world I can never have enough, so I jumped on the opportunity this week to test our the new “**Hellas**”:http://www.smalldog.com/wag900002177 and “**Reimers**”:http://www.smalldog.com/wag900002181 from Urbanears.

    The Hellas are an over the ear bluetooth headphone. It took a few minutes to get them paired with my computer. My only complaint about these headphones is that I found the touch-less buttons to be a bit clunky to use. The sleek design means you can’t physically see the buttons, so it take some practice and time to learn where the buttons are. However, there are a ton of other features with these headphones that make them extremely appealing. They are incredibly lightweight, comfortable to wear and they have good sound to them. I think my favorite feature about these is that the fabric on the headband and the earpieces are machine washable. You can actually wash the fabric and return your headphones to new condition. As I just started to use these the other day I have not actually tried to wash the fabric, but as more and more people are working out with over the ear headphones this is a huge selling point. Another hidden feature is that there is a built in microphone, so if you are using these with your iPhone, you can take calls without having to remove your headphones.

    Also part of the active line are the Reimers. They deliver on fit and comfort while providing some great sound! I am impressed with how far ear buds have come over the years. What’s interesting about these headphones is that while they are in the active category, they are actually a wired set of headphones. However, Urbanears added several great features to ensure these headphones can stand up to the intensity of any workout. They have two clips for securing them to your clothing and they feature reflective cabling to light up during early morning or late evening runs. They use a new earlock technology that ensures they stay in during your workout, so no more fears of them falling out during sit-ups, push-ups and the like. I admit I am just a runner, so some of the more intense workouts I’ve not tried these, but judging by how well they stayed in for runs I am confident in saying they will stay put! Last but not least, they feature standard iOS controls we have all grown to expect out of headphones.