Skip to content
Novus Examples
zip539 B

ZIP - Spanning Signature Marker

A complete ZIP prefixed with the 0x08074B50 spanning signature. That value is also the data descriptor signature, so a reader scanning the byte stream for descriptors finds one before the first local header — a genuine ambiguity in the format, reproduced here in a file that is otherwise entirely ordinary.

Archive contents — 2 entrieszip
  • README.txt
  • notes.md

Specifications

Seed
20260807
Leading Signature
0x08074B50 (spanning marker)
Segments
1
Members
2
Ambiguity
the same signature also introduces a data descriptor
Extractable
yes, by any reader that skips the marker

Testing contract

Expected to pass
Scenario
Extract both members using the central directory rather than by scanning for signatures.
Expected result
Both members extract intact; a scan-based reader mistakes the leading 0x08074B50 for a data descriptor, which is the failure this fixture is meant to surface.

What is a .zip file?

ZIP is a widely supported archive format that bundles multiple files and directories into one container, typically with per-file DEFLATE compression and a central directory index. It supports random access to individual entries without decompressing the whole archive. It underlies many document formats such as DOCX and EPUB.

How to use this file

Use an example ZIP to test archive extraction, central-directory parsing, per-entry decompression, and protection against path-traversal (zip-slip) during unpacking.

How to use this file for testing

“ZIP - Spanning Signature Marker” is a deterministic Novus Examples fixture for Conversion testing, Error handling. The same content exported across many formats and linked as a group, so you can convert one and diff against the expected twin.

Documented properties for this file: seed 20260807. Compare results against paired or grouped companions on this page when present (clean↔damaged, searchable↔scanned, or format twins) so scores stay reproducible across runs.

Download the file once, keep the path stable in CI or local scripts, and treat the spec table as the contract: dimensions, seeds, field lists, and roles are intentional. Corrupt or invalid samples are labelled as such — expect parsers to fail loudly rather than silently accept them.

Archive fixtures are documented down to their member list (shown on this page) and are deliberately safe — no zip bombs, executables, or hidden payloads. Test extractors against nested, unicode, empty, and encrypted variants.

Code examples

unzip -l spanning-signature.zip     # list members
unzip spanning-signature.zip -d out/  # extract

Generated by generation/archives_p7.py. Free for any use, no attribution required — license.