Have you noticed that those deep-dive stories about complex Windows malware have pretty much vanished, especially in recent years? It feels like the era of "blockbuster" Windows malware has just gone silent, and this blog post tries to give some answers why.
https://t.co/sFsf3uPm5o
Dear Network,
I'm hiring a Cloud Security Researcher that wants to work at the forefront of investigating new cloud intrusions. You will bring a solid understanding of IAM. Using this knowledge you will dig through cloud activity logs (AWS CloudTrail, Azure Activity Logs) to find
Your BIOS is out of sight, out of mind: and that's exactly where attackers hide. Learn firmware security, SPI flash, SMM & how to RTFM like a pro. Architecture 4001: x86-64 Intel Firmware Attack & Defense by @XenoKovah is at https://t.co/ciPFUasY1c
@HackingLZ I’ve been using this across a number of projects with a lot of success - https://t.co/BMUhWKXFAF
Latest release mentions an issue with the underlying MCP SDK, wonder if that’s related to your issues?
The latest instalment of our VR Development Programme training material is available on GitHub now – learn the basics of reverse engineering!
https://t.co/JFqNI3R74z
BITS & BOPS IS OUT NOW! 🎶
🎮 Over 20 original rhythm mini-games!
🎵 Catchy music!
⚡ Snappy gameplay!
✨ Gorgeous 2D animation!
PLAY IT NOW ON STEAM! 💕
12 months ago I presented a 3 hour course on attacking and defending Microsoft IIS servers to a packed room at BSides Canberra, today the 30+ hour version went live on @XintraOrg !
A while back I was curious about the access check that occurs when someone tries to consume from the Threat-Intelligence ETW provider. I decided to write a short blog on the topic.
https://t.co/6cpUDSMNF5
🎉 RooCon25 is coming! 🎉
Join us on 5-6 November for our 3rd edition! As one of Australia's key cyber threat intelligence conferences, we're building on past success to make this our best event yet.
Our Call for Papers opens in just one week! [1/3]
Normalize Conference Talks To Also Include Talks About Failed Projects and Failed Research
Tell us stories of the journey and the struggles. None of us are perfect and We should stop admitting that we all haven't completely screwed up research.
Some personal news: I will be joining @Meta's security team (focusing on WhatsApp) starting next week. This is a big life change, I'm also moving to London permanently.
I took this opportunity to reflect on the state of threat intel: https://t.co/HzVefVCLPj
LMK if it resonates!
Heading to #OBTS v7? There are still spots open in iVerify researcher @Helthydriver's workshop on iOS threat hunting.
Special Bonus: On day 3 of this training you will analyze an actual Pegasus case & learn the skills to dissect the Malware on your own.
https://t.co/9sVayc8sTS
It’s wonderful to see what @XenoKovah and his collaborators have built for the community. I always recommend OST2 for my new hires and other juniors, or just anyone trying to get started on a new topic. The courses are excellent. It’s an honor to sponsor the Windows Security Path
Extremely grateful to everyone who shared the knowledge I needed to bootstrap this research, including @Helthydriver, @citizenlab, and others without twitter handles. I've only just started, but I hope sharing what I've done so far encourages others to also investigate further /4
Getting back into research and blogging after a long break, I decided to learn something new and investigate how to create realtime malware detections on iOS using Unified Logging and Lockdown Services: https://t.co/JNiFNlRiUP
As discussed in the blog, while I don't think logs could serve as the only basis for a security system, I've discovered enough logging events about small, disparate parts of an attack that might serve as an early-warning system to encourage a more forensic investigation. 3/4
I'll be running a free 3 hour training session at @BSidesCbr teaching people how to defend IIS servers by learning how to attack them.
I'll be posting recommended host setups closer to the event so be sure to give me a follow.
https://t.co/ljEpNTX3BK
Thanks @Bsides_BNE for letting me talk about why “Kernel ETW is the best ETW”.
It’s not everyday that you get to talk about scripting a decompiler after watching a keynote from the mother of decompilers…