New Post! Providing guidance on building a #windbg extension in C++ using #visualstudio. During my own #research there was only old #documentation. I hope this adds something valuable to people's own WinDBG extension journey:
https://t.co/pNmZSfT2qf
#reversing#development
New blog post: PE Headers for Malware Analysts
I walk through the PE/COFF file structure by building PEDetect, a C++ parser for examining PE Headers, Data Directories, and Sections.
https://t.co/bikGnTkBtM
#MalwareAnalysis#ReverseEngineering#WindowsInternals#PEFormat
In Poland's largest cyberattack in recent years, #Russia#sandworm deployed #ESET dubbed #dynowiper. We have obtained the wiper and analyzed it here:
https://t.co/OyTW4P3SYA
In my latest blog post, we are reverse engineering a Go ransomware sample to uncover its evasion techniques, encryption implementation, lateral movement capabilities, and anti-forensics methods
https://t.co/HlqIDXUTja
#malops#ransomware#ctf#malware#reversing
MalOps released a new challenge and that means it is CTF time again! This time around, we are analyzing the Simda botnet malware using IDA Pro. Strap in, because we are going on a rollercoaster ride of encrypted payloads and anti-analysis techniques.
https://t.co/bTKWmceSMm
Mamona Ransomware by GLOBAL GROUP released a new strain in July. Read my technical analysis to gather insights into how this ransomware strain operates.
https://t.co/JevAuvRDlu
#ransomware#malware#secops#malops
The Flare-On Challenge is back for its 11th year! 🔥
This #CTF-style challenge for current and aspiring reverse engineers features puzzles across Windows, Linux, Web3, and even YARA.
Learn more and get ready to compete → https://t.co/qPOjkOSC2J
#Flareon11
Bad Logic: Your Ultimate Forensic Foe. Challenge Accepted, Case Closed.
See my Blue Team Labs Online writeup for Bad Logic here: https://t.co/IOcGiN6Uot
I recently discovered Blue Team Labs Online, which is the defensive variant of Hack The Box, and completed their "Countdown" investigation. See my writeup at https://t.co/4PuM5SQH3f
@MaxRogers5@HuntressLabs Hi Max,
Does one need to be physically located in the US to apply or does a willingness to work in Central Time/East Coast suffice? Thanks!
@reprise_99 Hi Matt, thanks for sharing! Is this also open to folks outside of the US. As in, would Microsoft sponsor them to obtain the required permissions for working in the US, or is it only applicable to US citizens?