It has been more than 4 years since The Shadow Brokers' Lost In Translation leak. We revisit #EquationGroup's post-exploitation framework and share our insights, focusing on its DoubleFeature tool that provides a unique view to the rest of the framework.
https://t.co/WujgXwPQX5
#HexRaysCodeXplorer can now identify pointer members nested within reconstructed structures.
Check it out here: https://t.co/opZ7ixGEWj
@REhints@matrosov
It's finally ready:
Prodfiler, a continuous profiler that "just works" -- for C/C++/Rust/Go/JVM/Python/Perl/PHP -- no code change required, no symbols on the machine required, no service restart required.
Check out: https://t.co/EL2DHpoLkl or the blog post below.
Came across a pattern that looks like a jump table but IDA did not recognize it? In most cases you can give IDA a little hint to get a nice-looking control flow graph and decompilation.
https://t.co/Elmpgapgo9
#IgorsTipOfTheWeek#IDAtips#IDAPro#HexraysDecompiler
Created an Assembly x64 HalosGate direct system caller that can be implemented into C/C++ projects! Evading EDR hooks is cool :)
This work is derived from the great work of @SEKTOR7net, @smelly__vx, @am0nsec
https://t.co/GIhPahAKGN
Today (last Friday of July) is the System Administrator Appreciation Day. Don't forget your backups, and show your appreciation to your local #sysadmin :-) If you want to know more about DSA, the Debian System Administrator team, you can have a look at… https://t.co/tzELRK2RmN
The new #OpenSecurityTraining2 site has been launched at https://t.co/hxOUQyP8qm! 🎉🥳 Anyone can now sign up for the public betas of the first classes (with more to come soon!)
Ruben Santamarta, Principal Security Consultant at IOActive, takes a look at a common design of #IoT devices, the attack surface, and intra-board host interface communication #vulnerabilities in this IOActive Labs blog. Read:
https://t.co/3QZBq6Bn0K
#CyberSecurity
NEW VIDEO!
Ever wondered what these "Browser Sandbox Escapes" are about? @freddyb wrote an article about how easy it is to look for vulnerabilities in the Firefox Sandbox and I turned it into a video.
What is a Browser Security Sandbox?!
https://t.co/2iXzhJmuKz
I just released a new version of Python Object Watcher (Watching for runtime changes in Python objects and launch callbacks) with some new features and fixes. https://t.co/gmHkcCxdGL #python
Designing and Implementing PEzor, an Open-Source PE Packer
was satisfied enough with the result that I decided to open-source the design and the implementation processes that I have followed
#infosec#pentest#redteam
https://t.co/mBoXd0MlnA