I hadn't noticed that @HexRaysSA's IDA 9.2 introduced new feature similar to "dereferencing" plugin. Well, the plugin is still better (for instance, in dereferencing in stack view) and the good news is that the plugin is compatible with IDA 9.2 with qt6 shim enabled
New research 👉 Exception Oriented Programming, Part 2: Weaponizing Fundamental Weaknesses in Exception Unwinding to Gain Code Execution https://t.co/4jZJM8u3Ir
https://t.co/MV8r9Kxlk5 => „BugChecker is a SoftICE-like kernel and user mode debugger, supporting Windows versions from XP to 11, both x86 and x64)“ #SoftIce#Debugging#Oldschool
I wrote an IDA plugin that queries #ChatGPT and explains decompiled functions. It's still very bleeding edge, but you can find the code here and try it out:
https://t.co/lEelTimzvt
(Yes, the video was performed on a very basic case for simplicity's sake.)
My write-up for the Blue Frost Security Windows Exploitation Challenge released during Ekoparty:
https://t.co/jwQDD9U6pE
Thanks @bluefrostsec for the challenge, I've enjoyed it very much
#flareon9
https://t.co/XSB5n8dBXI
A bit late, but my write-up on how I solved Flare-On 9's last challenge and getting the original code back, even without debugging.
Hello everyone !
Come see our new IDA plugin !
AutoResolv is a free IDA plugin, which resolves functions imported from external libraries. Moreover, it can import the right signature of those functions and refactor your code accordingly.
https://t.co/hcWvCD6xD7
What can I say? A beautiful day talking about HVCI & kernel exploitation at BSides in Kansas City, Missouri, meeting people passionate about security, and (most importantly) hanging with my fiancé.
Slides: https://t.co/pk7rK53Wl0
Supporting blog: https://t.co/xOWhQxkpz6
Helper script for Windows kernel debugging with IDA Pro on native Bochs debugger (including PDB symbols). Ported from IDA-VMware-GDB by @d_olex. So, Yes you can use your own bochs instrumentation + symbols :-D @ilfak https://t.co/CKxoByJpZi
As promised, I wrote about my Windows 11 post exploitation technique to go from an arbitrary write/increment to a full read/write through I/O rings: https://t.co/z7ZDs9UTMC
Offensive Windows IPC Internals, by @0xcsandker
Part 1: Named Pipes https://t.co/Ug3gPKHrza
Part 2: RPC https://t.co/cfgY8eaOVa
Part 3: ALPC https://t.co/avXPjh8d6W
I am ecstatic to announce that Winsider Seminars & Solutions, Inc. (the training company that @yarden_shafir and I co-own) has finalized the transfer of the venerable Process Hacker project into a new System Informer project (https://t.co/Okx8TRoLND). We are still migrating.. 1/2
We published the first ever blog post about HyperDbg Debugger. In this post, we explain the principles and methodologies of @HyperDbg
https://t.co/A1MQXpSUjx