@mazeynl1 This was for another issue that existed before the ea servers were down. We had issues with finding an opponent and we used that fix to be able to play but the ea servers are just down right now
Honestly, if you're wanting to get into malware development and malware reverse engineering (specifically in regards to Windows), I think the most important thing you can learn is the concept of a file.
1. What is a file extension? This is pretty obvious, .exe, .pdf, .mp3, etc.
2. How are file extensions handled? This would introduce the idea of the Windows registry and how extension querying is handled vs. the Windows loader
3. Which file extensions (or file types, rather) are used for payload delivery? e.g. .exe, .dll, .xll, .vbs, .ps1, .py, .lua, .docx, .vcproj, etc. The .exe, .dll, (and other native types, like .sys) will be sort of self-explanatory, but the others would introduce different malware delivery mechanisms (malicious files) and potentially wiggle in the concept of payload smuggling.
4. Each of the previous listed file types are different. How are they different? .exe and .dll (and many others) are native to Windows and handled by the Windows loader. Why are the others still considered executable files? This is when you slowly step into interpretive languages and VM dependency (JVM, PVM, etc).
Somewhere in this you would eventually stumble into the Windows PE format, how the PE format is different for .NET binaries, how Electron .JS executables act differently, weird stuff like .docx file internals, etc.
Basically, I think understanding files and how they're handled is an excellent starting point and sets the stage for what will happen next.
pic unrelated
@jasontheween Don’t keep your keys close to your door that’s how they unlocked it. Put em in a faraday box so they can’t amplify the signal to reach your car
i am extremely infuriated. heap overflow in ultrajson sitting public with a full PoC + ASAN stacktrace for a MONTH
ultrajson has a heap overflow. PoC's been public for a month. i filed the GHSA (correctly), got it closed, got redirected to the public issue, then got lectured about responsible disclosure *on the public bug with the working exploit attached*
i wrote the fix out of spite. that's it. that's the whole story. open source security is a fucking joke
"Because of Claude, a practicing physician was able to vibe code an app to work with his patients. With AI, anyone can be a software engineer!"
Correct. Likewise, anyone can be a Doctor now. Claude, diagnosis my patient, make no mistakes.
I have a confession.
Roc Nation has been paying me to support Megan.
They also paid off all the jury members to convict Tory.
And they bribed the judge, too. Jay-Z did a verse for his grandson's new album.
They paid off Megan's doctor to lie about the bullet fragments. She was never shot.
The LA police are all on Jay's payroll. And it doesn't stop with LA, but you're not ready to hear that part.
The Mexican guy who stabbed Tory - who do you think paid him to do that? You already know the answer to that.
The 3 supreme court judges who denied Tory's appeal - all paid off by the Roc Mafia.
Jay also paid Trump NOT to pardon Tory. Even though it's a state case, Trump can only pardon federal cases. But knowing Trump likes to bend the rules, Jay wasn't taking any chances.
I can't keep these lies secret anymore. If this is my last tweet, you know who silenced me.