Up until just recently, some metrics of Microsoft Azure Attestation were completely vulnerable to spoofing in some circumstances, and would accept attacker controlled measurements. SecureBoot in this case, spoofed as ON from a malicious bootkit. see CVE-2026-45642
For years, Rust binaries made reversing a nightmare. Modern decompilers only support C, lacking meaningful types, constructs, and language-specific functions. Led by @34r7hm4n, we're releasing our S&P work Oxidizer, the first deep Rust decompiler, built on angr!
Interested? 🧵👇
Static Devirtualization of Themida/CodeVirtualizer. The techniques in this article apply to pretty much every virtual machine obfuscator with minor modifications.
https://t.co/RMvPKcv3KB
Original Program & Devirtualized Output
https://t.co/R8hLk9ISRZ
When practicing on a VM crackme recently, I created a devirtualizer which lifts the virtual machine to LLVM to defeat the protection. LLVM-based devirtualisation is a lot of fun and I wrote down my experience and lessons learned on my blog:
https://t.co/LiWNIj31uK
You grab the blackbox pattern matching machine and give it the correct things to pattern match on.
mythos is a bigger blackbox pattern matching machine, it now pattern matches (better) on where it should look for these correct things.
This is an obvious emergent property of scale.
No your harness isn't mythos level, and you have no (and will never have a) moat.
We’re releasing our analysis of https://t.co/cAmTrO7mvx, a major game cheat targeted by multiple studios in recent legal actions. We partially deobfuscated several Themida-protected components and document how it hijacks Hyper-V to inject and manipulate game code.
https://t.co/ykGrHdl6ty
https://t.co/LhEXxeIcnF
May I present to you; a full copy of doom, running inside of a Rollercoaster Tycoon 1 save game exploit ✨
Thanks for everyone that came to check out our @DistrictCon Junkyard talk! We had a lot of fun putting it together. (check the thread for slides / exploit)
Happy new year! Our 2024 Recap is here:
- 6 CTFs won, including 2 DEFCON Prequalifiers
- 1st meetup of ~80 members @ DEFCON
- 19.5k mvms sent on Discord
- Rank #2 global on CTFtime
We're incredibly proud of all of our members and look forward to seeing everyone again next year!