We have announced the winners of the 2025 @volatility#PluginContest! And the First Place is:
Daniel Baier for XFRM Inspector
Read the full Contest Results in our blog post:
https://t.co/D5lwMbOJV0
Congrats to all winners & thank you to all participants!
#DFIR#memoryforensics
We are excited to announce the 2025 @volatility#PluginContest First Place winner is:
Daniel Baier for XRFM Inspector
See the full Contest Results: https://t.co/D5lwMbOJV0
Congrats to all winners & thank you to all participants!
#DFIR#memoryforensics
New blog post: How to use BoringSecretHunter to automate byte-pattern extraction for hooking BoringSSL with friTap on Android for TLS key extraction. Read more: https://t.co/AG26TXqnQV
We just released SOCBED (Self-contained Open-source Cyberattack experimentation testBED) v1.2.0, featuring a couple of usability tweaks, bug fixes, and attack improvements:
https://t.co/Hj07yjTFrT
Malware analysts, feel free to use Androscope (beta). It helps you search for Android malware that implement a given malicious feature. Example: "find sample using native packer", or "find sample which turns off ringer mode" etc.
Research tool: https://t.co/bvTioRIN4e
We released version 0.6 of the cwe_checker today! Highlights: Bare-metal analysis mode and improved checks for buffer overflows and use-after-free CWEs. Go check it out! https://t.co/JfMldFVLhB
Puzzled why a yara rule did or didn't match?
Let me introduce https://t.co/cY3G5MeOk6, a web-based #yara#debugger!
With #YaraDbg, you can see the:
1⃣ evaluation steps
2⃣ matched strings
3⃣ relationship among the rules
Exploiting the notoriously unsafe gets() on a PAC-protected ARM64 binary, how hard could it be? Check out our latest blogpost to find out: https://t.co/BN3KLKNXol
Requesting help: All folks that fiddle with disassemblers/decompilers a lot, please participate in this short survey (~30 min): https://t.co/cIoYm8QjJ5. Retweets are much appreciated. This would help us out a lot :). Thanks in advance!
[BLOG] Interested in rooting Google Android emulators? Here is a quick introduction to the Android Emuroot project. It describes the enhancements made by Eric to support Android 10 & 11 based on the initial work of @AirbusSecLab: https://t.co/IxgifFtmLb
Milestone reached: We have just added the 2000th malware family to @malpedia! 🥳
We would like to express sincere gratitude to everyone who has contributed to or otherwise helped the project!