Recently my RE workflow moved into sandboxed VMs where agents have full control over the environment. I needed an MCP server that runs headless in the same sandbox and exposes way more of the #BinaryNinja API than others.
Here's the release: https://t.co/HU2Vf8Uj6T
🛡️ Deep dive into ClickFix attack protection!
Just demoed the ClickFix Security extension - created by https://t.co/NVJRcnXqmB / @ExploitedSite .
🔗 Extension: https://t.co/GiB90Bcbxm
📖 Analysis: https://t.co/4YYLf3DBtE
In this demo, we:
✅ Walk through its multi-layer defense system
✅ Break down dual-world execution (ISOLATED + MAIN)
✅ Show 5 layers of clipboard protection catching attacks live
✅ Analyze live ClickFix sites blocking malicious payloads instantly
🔍 Detects 100+ attack patterns:
• Base64 PowerShell
• curl | bash payloads
• WSH exploitation
• Fake CAPTCHA tricks
• Clipboard hijacking
💡 How ClickGrab fits in: https://t.co/7EGGVCrkl1
ClickGrab hunts campaigns + extracts IOCs
https://t.co/9azgoDKRUm blocks them in-browser
Huge shout-out to @ExploitedSite for the amazing work and the time spent building and sharing this with the community. 👏
Together = full ClickFix defense pipeline 🔄
📺 https://t.co/rHytELXyH1
@M_haggis Thank you for the kind words!
I’m currently working on fixes, updates, and enhancements to address various browser-based threats. The support from everyone so far has been amazing. The plan is to keep it community-driven with a focus on helping everyone stay safer online.
@Protoge420@RussianPanda9xx Yeah, the API key is used to tell the server -
“Hey I’m Chrome, please do the key exchange with me” or “Hey I’m Firefox, please do the key exchange with me”.
Its not a key-key in the grand scheme of things, more like an identifier of browser type 😃
@Protoge420@RussianPanda9xx Yeah, the API key is used to tell the server -
“Hey I’m Chrome, please do the key exchange with me” or “Hey I’m Firefox, please do the key exchange with me”.
Its not a key-key in the grand scheme of things, more like an identifier of browser type 😃
@RussianPanda9xx After 2025 years and millions more of evolution, humans finally realized that buzzwords like EDR, XDR, and zero trust actually have real powers. Mind blown.
Unlock forbidden Windows knowledge! 🤫💻
Find the PEB through truly undetected means and pop calculator 💥
The non-golf form will be available below 👇
#redteamtips#windowsinternals#rust
My new article, "Writing a Full Windows ARM64 Debugger for Reverse Engineering," covers the topic in detail, including its internals and the core differences between Windows on Intel and ARM64:
https://t.co/5xASMMNAEk