New Blog Post: "Defeating VMProtect's Latest Tricks"
We took a deep dive into the VMProtect packer and figured out how to defeat its debugger checks and VM detection.
#vmprotect#unpacking#scyllahide#systembc
https://t.co/qkxpQmf8EA
We published the code used for our analysis on Github: https://t.co/LxpAQwN94K
The repository contains the Golang parser sources generated by Kaitai. There is also pre-built tool which can dump and parse all of the BLOBs we dissected in the blog post.
New Blog Post: "Windows Registry Analysis - Today's Episode: Tasks"
We dug into the Windows Task Scheduler and the Registry to find out how the Task Scheduler stores it's data in the Registry.
These are our results: https://t.co/TNqSPHun60
#windows#tasks#registry
New blog post: What the Pack(er)?
We had a look at how the #cobaltstrike drops were delivered by #emotet during the last weeks and found something we think is worth a share.
https://t.co/bhrgcES2B8
Neu in der reuschlaw #BusinessBrunch Reihe: #Cybersecurity! Treffen Sie am 25.6. @realJZwerschke, Dr. Tilman Frosch von @gdata_adan und @stefan_hessel und erfahren Sie mehr zu aktuellen Herausforderungen bei IT-Sicherheitsvorfällen https://t.co/KWZ0YtX65P
Do you know your way around Active Directory and like the challenges and the fast learning opportunities that come with incident response? Enjoy working with a great team? Join us! https://t.co/SzNUAoiq9a #infosecjobs
Im Rahmen einer Schwachstellen-Analyse können oft schon ohne tiefes Eintauchen in die IT-Infrastruktur erhebliche Mängel festgestellt werden. Wie sich das Sicherheitslevel Ihres Unternehmens prüfen und verbessern lässt, erfahren Sie im morgigen #Webinar: https://t.co/Lq66bvKUVa
Bei #Incidents gilt es, schnell und zielgerichtet zu reagieren, um den #Schaden so gering wie möglich zu halten. In unserem kostenfreien #Webinar erfahren Sie mehr über sinnvolle Schutzmaßnahmen und das richtige Verhalten im #Ernstfall: https://t.co/dNVnO5uArO 📝
Für die aktuelle Ausgabe des @playboy_d haben unsere Kollegen von @gdata_adan (wortwörtlich) ausgepackt. Egal ob Penetration-Testing, Phishing oder Crime as a service – wer den #Playboy vor allem aufgrund der Artikel bezieht, kommt diesen Monat voll auf seine Kosten #Cyberkrieger
Wenn es brennt, ruft man die Feuerwehr, das weiß jedes Kind. Aber was, wenn die IT still steht oder es zu einem Cyber-Angriff gekommen ist? BSI und @DIHK_News stellen IT-Notfallkarte für #KMU vor - mehr dazu unter https://t.co/9UEFZBblZH
#ecsm2019#digitalundsicher#cst29
Quite sad yesterday was my last day @gdata_adan/@GDataSoftwareAG 😢
Lot's of nice folks, great spirit, much knowledge-sharing, hard to beat food and an amazing team I got to work with. If anyone's looking for a great employer, I can recommend them 😉
Today is my last workday at @gdata_adan. I'm very grateful for the last 4 years with my colleagues from ADAN and @GDataSoftwareAG and will fondly remember it as a place where we could prove, that Extreme Programming is a great methodology and engineering quality pays off. 😇
"I am convinced that MIT-Sicherheit can make an important contribution to a safe and reliably available health infrastructure in NRW and in Germany."
- Dr. Tilman Frosch, @gdata_adan
Read more here: https://t.co/nHqjO76gGa:
@Pinas_ Most of the results will be public eventually, as the project is publicly funded. We’ll post a link to the website once it is up. Also expect some conference publications by and with our partners @HGI_Bochum and @fh_muenster. We are also committed to opensource tooling.
News from the research front: we‘ve acquired funding with MITSicherheit, where we will dive into fuzzing DICOM and HL7 for the greater good, build vuln assessment tools that are safe to use in hospital environments, and assess the security posture of a large number of hospitals.
Before you ask: yes, this account is in English and yes, our job postings are in German. We have colleagues from 28 nations working at @GDataSoftwareAG, but many of ADAN‘s customers expect German at least as reporting language.
We‘re also looking to hire two Security Engineers, who enjoy to tackle interesting problems as part of an excellent team: https://t.co/xfnOAbZZei #infosecjobs