Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @sculabs
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @sculabs
-
Sascha Curylo proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Sascha Curylo proslijedio/la je Tweet
1\ I've written a little compiler to ship ML models as standalone Yara rules, and done proof of concept detectors for Macho-O, RTF files, and powershell scripts. So far I have decision trees, random forests, and logistic regression (LR) working. https://github.com/inv-ds-research/yaraml_rules …pic.twitter.com/sfuXEkHeNO
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
I came to know that the
#PEbear's hex editor is unbearable in the dark mode, so I fixed it. New release: 0.4.0.1 is out: https://github.com/hasherezade/pe-bear-releases/releases/tag/0.4.0.1 …pic.twitter.com/5RxTTxfLBU
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Is
#phorpiex malware going out of buissness? Our feeds show that the malware started removing itself from infected clients leaving this messagepic.twitter.com/amC3gfYrQE
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Adware is just malware with a legal department.https://twitter.com/campuscodi/status/1219998138087374855 …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
My preliminary YARA rule for CVE-2020-0601 brought up some interesting samples WUT.exe https://www.virustotal.com/gui/file/b2ef6d2d005b9442447e2f07a0a0e5f9d4b32a4e066a94015fd9930f752a7477/details … Logger.dll (submitter: KR) https://www.virustotal.com/gui/file/584886c3382d66b77f1123f6ce02cbbf88ccc35b402fc7a8f497d581be0d17ad/detection …pic.twitter.com/Y3ALJUXljB
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Just published a blog explaining the root cause of the recent
#win10 crypto vulnerability (CVE-2020-0601 /#curveball ?) using some "Load Bearing Analogies" to make it more accessible. CC:@tqbf@grittygrease@dakamihttps://medium.com/zengo/win10-crypto-vulnerability-cheating-in-elliptic-curve-billiards-2-69b45f2dcab6 …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
CVE-2020-0601 - PoC for code signing PE files using a Certificate Authority using ECC https://github.com/ollypwn/cve-2020-0601 …pic.twitter.com/QKIaWrRQFL
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Shout-out to
@hasherezade for making#hollows_hunter! Working with this tool inspired me to write a quick tutorial on it: https://securityliterate.com/extracting-malware-from-memory-with-hollows-hunter/ … Anyone know of other good malcode extraction tools like hollows_hunter?Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
I was able to reproduce the Citrix ADC Remote Command Execution in one day. Guess you need to patch ASAP.
#CVE-2019-19781#Citrixpic.twitter.com/KjsUOJQsLt
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
We have just released a new tool for exploiting CVE-2019-19781. Our goal was to keep private as long as possible to have a longer window to fix. Other researchers have published the exploit code in the wild already. Cats out of the bag. https://github.com/trustedsec/cve-2019-19781 …
#TrustedSecHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
DM: You find a large beast Player: OH MY GOD CAN I TAME IT AND USE IT AS A MOUNT!? DM: ...you know what, go ahead and roll for it.
#dnd#dungeonsanddragons#dnd5epic.twitter.com/Uf2PYxsPipPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
The Basics of Packed Malware: Manually Unpacking UPX Executableshttps://kindredsec.com/2020/01/07/the-basics-of-packed-malware-manually-unpacking-upx-executables/amp/?__twitter_impression=true …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Research Brain-Dump
Join us for a deep dive into the how’s and why’s of automated malware unpacking.
In this video we discuss how we built UnpacMe!https://youtu.be/FctDptnYukQ Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Launch Day
It’s official this project that @seanmw and I have been a part of for 5 years is now available as a free public Beta! Automated malware unpacking! https://www.unpac.me/#malware#ReverseEngineering#automation#toolsHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Backdooring PE (featuring
#PEbear) - by@c_midnight1337 : https://r0ttenbeef.github.io/backdooring-pe-file/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
a nice talk from
#DefCon26, about using PE relocations for the purpose of obfuscation: Nick Cano - "Relocation Bonus - Attacking the Windows Loader Makes Analysts Switch Careers" :https://www.youtube.com/watch?v=8_kfyKVk32c …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
The last
#PEsieve (https://github.com/hasherezade/pe-sieve/releases/tag/v0.2.4 …) and#HollowsHunter (https://github.com/hasherezade/hollows_hunter/releases/tag/v0.2.4 …) this year! (v0.2.4) - some improvements & many important fixes, so please don't miss it.pic.twitter.com/Xyoqp7n0IM
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
Peep this work I've been doing for the last 6 months. I' sure there are errors, but it's at the point where I think it's ready for the world. Enjoy my work on
#shamoonhttps://malwareindepth.com/shamoon-2012/Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Sascha Curylo proslijedio/la je Tweet
We are releasing a free decryption tool for the
#Mapo#ransomware (a GarrantyDecrypt/Outsider variant). Detailed instructions are available on our blog: https://www.cert.pl/en/news/single/free-decryption-tool-for-mapo-ransomware/ … Special thanks to@maciekkotowicz for collaboration#NoMoreRansomHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.