This blog post continues the FLARE script series with a discussion of patching IDA Pro database files (IDBs) to interactively emulate code. While the fastest way to...
Read moreThis blog post continues the FLARE script series with a discussion of patching IDA Pro database files (IDBs) to interactively emulate code. While the fastest way to...
Read moreThis blog post continues the FLARE script series with a discussion of patching IDA Pro database files (IDBs) to interactively emulate code. While the fastest way to...
Read moreCmd and Conquer: De-DOSfuscation with flare-qdb
November 20 2018When Daniel Bohannon released his excellent DOSfuscation paper, I was fascinated to see how tricks I used as a systems engineer could help attackers evade detection....
Read moreCmd and Conquer: De-DOSfuscation with flare-qdb
November 20 2018When Daniel Bohannon released his excellent DOSfuscation paper, I was fascinated to see how tricks I used as a systems engineer could help attackers evade detection....
Read moreCmd and Conquer: De-DOSfuscation with flare-qdb
November 20 2018When Daniel Bohannon released his excellent DOSfuscation paper, I was fascinated to see how tricks I used as a systems engineer could help attackers evade detection....
Read moreCmd and Conquer: De-DOSfuscation with flare-qdb
November 20 2018When Daniel Bohannon released his excellent DOSfuscation paper, I was fascinated to see how tricks I used as a systems engineer could help attackers evade detection....
Read moreLoading Kernel Shellcode
April 23 2018In the wake of recent hacking tool dumps, the FLARE team saw a spike in malware samples detonating kernel shellcode. Although most samples can be analyzed statically,...
Read moreLoading Kernel Shellcode
April 23 2018In the wake of recent hacking tool dumps, the FLARE team saw a spike in malware samples detonating kernel shellcode. Although most samples can be analyzed statically,...
Read moreLoading Kernel Shellcode
April 23 2018In the wake of recent hacking tool dumps, the FLARE team saw a spike in malware samples detonating kernel shellcode. Although most samples can be analyzed statically,...
Read more
Recent Comments