Nice blog post on using Qiling framework for automatically unpack ELF executables
https://kernemporium.github.io/posts/unpacking/
#qiling #infosec #reverseengineering #learning
π£0xor0ne
π@malwr
https://kernemporium.github.io/posts/unpacking/
#qiling #infosec #reverseengineering #learning
π£0xor0ne
π@malwr
β€1π1
Reverse Engineering a Windows 95 Game - Part II: Reversing (Undocumented) Settings : https://sidneys1.com/reverse-engineering/2023/03/16/reverse-engineering-a-win95-game-II.html
Part 1 : https://sidneys1.com/reverse-engineering/2023/02/23/reverse-engineering-a-win95-game-I.html
π£binitamshah
π@malwr
Part 1 : https://sidneys1.com/reverse-engineering/2023/02/23/reverse-engineering-a-win95-game-I.html
π£binitamshah
π@malwr
Sidneys1.com
Reverse Engineering a Windows 95 Game
I recently rediscovered an obscure 1997 Simon & Schuster / Marshall Media edutainment game for Windows 95 that I played as a kid: Math Invaders. In this part, weβll investigate disassembling and reverse engineering the binary to identify an undocumented settingsβ¦
π2
Weβve just published a short #IDAPro tutorial about the #Disassembly window. Watch it now π https://youtu.be/cgELfAUg8C4
#IDAProTutorials #IDAPro #hexrays #LearningIDA
π£HexRaysSA
π@malwr
#IDAProTutorials #IDAPro #hexrays #LearningIDA
π£HexRaysSA
π@malwr
Android Attack: Reversing React Native Applications
https://securityqueens.co.uk/android-attack-reversing-react-native-applications/
π£pentest_swissky
π@malwr
https://securityqueens.co.uk/android-attack-reversing-react-native-applications/
π£pentest_swissky
π@malwr
Python and Malware: Writing a simple wiper malware - Malware - 0x00sec - The Home of the Hacker https://0x00sec.org/t/python-and-malware-writing-a-simple-wiper-malware/31652
π£akaclandestine
π@malwr
π£akaclandestine
π@malwr
0x00sec - The Home of the Hacker
Python and Malware: Writing a simple wiper malware
Introduction In this article, Iβll describe how to write a malware, Please notice this is not a βtrueβ malware this is only has to show you the basics and even how easy to be written, Probably python is not the best choice at all, Itβs an interpreted languageβ¦
π1
Happy to announce the release of my JADX dynamic scripting plugin, JADXecute. Now you write and share scripts to automate your Android APK analysis! #ReverseEngineering
https://github.com/LaurieWired/JADXecute
π£lauriewired
π@malwr
https://github.com/LaurieWired/JADXecute
π£lauriewired
π@malwr
Here's a short blog on using Frida to write and bypass detections for your TTPs. We can use good ol' userland hooking + JavaScript bindings to avoid writing complex kernel code, which lets us quickly develop test cases and improve our techniques.
https://passthehashbrowns.github.io/using-frida-for-rapid-detection-testing
π£passthehashbrwn
π@malwr
https://passthehashbrowns.github.io/using-frida-for-rapid-detection-testing
π£passthehashbrwn
π@malwr
PassTheHashBrowns
Using Frida for rapid detection testing
Using Frida for rapid detection testing When Iβm developing payloads or doing research, I frequently want to test code that Iβve written against common defensive capabilities. Unfortunately, most defensive capabilities are implemented in C/C++ and run inβ¦
Icicle is a multi architecture emulation framework designed for firmware fuzzing.
Very interesting research work
Paper: https://arxiv.org/pdf/2301.13346.pdf
github repo (pre-release): https://github.com/icicle-emu/icicle
#fuzzing #firmware #infosec #cybersecurity
π£0xor0ne
π@malwr
Very interesting research work
Paper: https://arxiv.org/pdf/2301.13346.pdf
github repo (pre-release): https://github.com/icicle-emu/icicle
#fuzzing #firmware #infosec #cybersecurity
π£0xor0ne
π@malwr
β€1
travisgoodspeed/gbrom-tutorial: Tutorial for extracting the GameBoy ROM from photographs of the die.
π£tnavda
Fascinating read, thanks for sharing.
π€cea1990
I don't know if I'll ever personally need this info but it was a great read nonetheless!
π€Browsing_From_Work
π@malwr
π£tnavda
Fascinating read, thanks for sharing.
π€cea1990
I don't know if I'll ever personally need this info but it was a great read nonetheless!
π€Browsing_From_Work
π@malwr
GitHub
GitHub - travisgoodspeed/gbrom-tutorial: Tutorial for extracting the GameBoy ROM from photographs of the die.
Tutorial for extracting the GameBoy ROM from photographs of the die. - travisgoodspeed/gbrom-tutorial
How to Create a Virtual Hacking Lab: The Ultimate Hacker Setup
π£flacao9
Nice article and how I did my approach to learning. Gotta love VirtualBox.
Another approach too for specific service testing is creating a vuln testbed service using docker. It's a lot lighter than a full VM.
π€FolsgaardSE
This is all manual work, which is fine, but you could use the Red Team Attack Lab or the game of thrones lab
π€Proud-Tap6586
π@malwr
π£flacao9
Nice article and how I did my approach to learning. Gotta love VirtualBox.
Another approach too for specific service testing is creating a vuln testbed service using docker. It's a lot lighter than a full VM.
π€FolsgaardSE
This is all manual work, which is fine, but you could use the Red Team Attack Lab or the game of thrones lab
π€Proud-Tap6586
π@malwr
StationX
How to Create a Virtual Hacking Lab: Ultimate 2026 Setup
We will show you how to create a virtual hacking lab for pentesting at home, from beginner level to advanced.
Analysis of a Redline Based Malware
π£serhack
Why does he look like heβs on team rocket about to lose to pikachu
π€canofspam2020
π@malwr
π£serhack
Why does he look like heβs on team rocket about to lose to pikachu
π€canofspam2020
π@malwr
SerHack β Security Research
Analysis of a Redline Based Malware β SerHack Blog
In this article, we explain how we were able to identify a Redline-style malware and how we found out how it worked
New YouTube channel with IDAPython tutorial series [wip](https://www.youtube.com/@allthingsida)
π£0xeb
π@malwr
π£0xeb
π@malwr
π2
ZeusCloud - an open-source cloud security platform
Sharing something we're in the early innings of developing: https://github.com/Zeus-Labs/ZeusCloud
Have heard from many devops friends that they often get charged w/ managing security. Hope to get your feedback on if this would be helpful!
ZeusCloud is an open-source cloud security platform that thinks like an attacker! ZeusCloud works by:
1. Identifying risks across your cloud environments (e.g. misconfigurations, identity weakness, vulnerabilities, etc.)
2. Prioritizing those risks based on toxic risk combinations an attacker may exploit.
3. Remediating by giving step by step instructions on how to fix the risk findings.
4. Monitoring compliance - track your PCI DSS, SOC 2, GDPR, CIS goals.
So far, weβve added misconfiguration checks and common identity-based attack paths for AWS. Up next on our roadmap are network/access graph visualizations of your entire cloud environment, vulnerability scanning, and secret scanning!
Check out our GitHub (Licensed Apache 2.0): https://github.com/Zeus-Labs/ZeusCloud
Play around with our Sandbox environment: https://demo.zeuscloud.io
Get Started (free/self-hosted): https://docs.zeuscloud.io/introduction/get-started
π£VariousAd5147
This looks very cool! Is there a way to add exclusions to rules?
π€thescrambler1979
This is quite interesting. I've had something a bit similar in mind but instead I will take a better look and check if I could just contribute here.
π€puputtiap
This product is similar to Selefra, https://github.com/selefra/selefra
π€Disastrous_Pie7425
π@malwr
Sharing something we're in the early innings of developing: https://github.com/Zeus-Labs/ZeusCloud
Have heard from many devops friends that they often get charged w/ managing security. Hope to get your feedback on if this would be helpful!
ZeusCloud is an open-source cloud security platform that thinks like an attacker! ZeusCloud works by:
1. Identifying risks across your cloud environments (e.g. misconfigurations, identity weakness, vulnerabilities, etc.)
2. Prioritizing those risks based on toxic risk combinations an attacker may exploit.
3. Remediating by giving step by step instructions on how to fix the risk findings.
4. Monitoring compliance - track your PCI DSS, SOC 2, GDPR, CIS goals.
So far, weβve added misconfiguration checks and common identity-based attack paths for AWS. Up next on our roadmap are network/access graph visualizations of your entire cloud environment, vulnerability scanning, and secret scanning!
Check out our GitHub (Licensed Apache 2.0): https://github.com/Zeus-Labs/ZeusCloud
Play around with our Sandbox environment: https://demo.zeuscloud.io
Get Started (free/self-hosted): https://docs.zeuscloud.io/introduction/get-started
π£VariousAd5147
This looks very cool! Is there a way to add exclusions to rules?
π€thescrambler1979
This is quite interesting. I've had something a bit similar in mind but instead I will take a better look and check if I could just contribute here.
π€puputtiap
This product is similar to Selefra, https://github.com/selefra/selefra
π€Disastrous_Pie7425
π@malwr
GitHub
GitHub - Zeus-Labs/ZeusCloud: Open Source Cloud Security
Open Source Cloud Security. Contribute to Zeus-Labs/ZeusCloud development by creating an account on GitHub.
What could these mysterious βalignβ items in the disassembly mean? Igor is here to clarify π https://hex-rays.com/blog/igors-tip-of-the-week-133-alignment-items/?utm_source=Social-Media-Post&utm_medium=Twitter&utm_campaign=Igor-Tip-133
#IgorsTipOfTheWeek #IDAtips #IDAPro
π£HexRaysSA
π@malwr
#IgorsTipOfTheWeek #IDAtips #IDAPro
π£HexRaysSA
π@malwr
BREAD: BIOS Reverse Engineering & Advanced Debugging - an 'injectable' real-mode x86 debugger that can debug arbitrary real-mode code (on real HW) from another PC via serial cable.
π£digicat
This is pretty awesome!
π€DiabloHorn
π@malwr
π£digicat
This is pretty awesome!
π€DiabloHorn
π@malwr
GitHub
GitHub - Theldus/bread: π BREAD: BIOS Reverse Engineering & Advanced Debugger
π BREAD: BIOS Reverse Engineering & Advanced Debugger - Theldus/bread
VMware-player-14.1.3-9474260 how can I extract filesystem data from the stored files?
Hi,
So I installed the above version of VMware and it would not run on either my laptop or computer as a result of both not having some features it apparently requires in the hardware/BIOS (virtualisation was enabled however it complained about using an Intel CPU on the laptop. Curiously VirtualBox works fine on both devices. Anyway, is there a means of which I can merely extract all the contents of the saved .vmx machine without manually running the machine? Thanks in advance.
π£Man_in_the_uk
This is now resolved, for some reason virtual box was able to run it on
my laptop but when posting this whilst trying to do this on a computer
it did not work.
π€Man_in_the_uk
OvfTool would do the conversion to *.ovf
https://developer.vmware.com/web/tool/4.5.0/ovf-tool
Personally prefer the VMware products and wish for return of VMware Server for Linux :-)
π€tgbauer
OK so having taken the original vmdk files to my brothers computer he can't access via the virtual office box either. So I have to see if there's a way to save the windows seven vm in such a way I can get it to boot up in virtual box. I have read you can transfer a installation from one computer to another but I don't know if the fact a hdd has things like a bootloader will be an issue, any ideas? Thanks for your help.
π€Man_in_the_uk
π@malwr
Hi,
So I installed the above version of VMware and it would not run on either my laptop or computer as a result of both not having some features it apparently requires in the hardware/BIOS (virtualisation was enabled however it complained about using an Intel CPU on the laptop. Curiously VirtualBox works fine on both devices. Anyway, is there a means of which I can merely extract all the contents of the saved .vmx machine without manually running the machine? Thanks in advance.
π£Man_in_the_uk
This is now resolved, for some reason virtual box was able to run it on
my laptop but when posting this whilst trying to do this on a computer
it did not work.
π€Man_in_the_uk
OvfTool would do the conversion to *.ovf
https://developer.vmware.com/web/tool/4.5.0/ovf-tool
Personally prefer the VMware products and wish for return of VMware Server for Linux :-)
π€tgbauer
OK so having taken the original vmdk files to my brothers computer he can't access via the virtual office box either. So I have to see if there's a way to save the windows seven vm in such a way I can get it to boot up in virtual box. I have read you can transfer a installation from one computer to another but I don't know if the fact a hdd has things like a bootloader will be an issue, any ideas? Thanks for your help.
π€Man_in_the_uk
π@malwr
Reddit
r/vmware on Reddit: VMware-player-14.1.3-9474260 how can I extract filesystem data from the stored files?
Posted by u/Man_in_the_uk - 9 votes and 14 comments