GrapheneOS bails on OVHcloud over France's privacy stance
28.11.2025 15:50 β π 52 π 21 π¬ 4 π 6@ergrelet.bsky.social
Fond of reverse engineering and software development. Doing security engineering at some company.
GrapheneOS bails on OVHcloud over France's privacy stance
28.11.2025 15:50 β π 52 π 21 π¬ 4 π 6Binary Ninja 5.2, Io, is live and it's out of this world! binary.ninja/2025/11/13/b...
With some of our most requested features of all time including bitfield support, containers, hexagon, Ghidra import, and a huge upgrade to TTD capabilities, plus a ton more, make sure to check out the changelog!
A screenshot of DiaSymbolView inspecting combase.pdb
I wanted to understand what information is available in .pdb files, so I made a tool for it ππ
Welcome DiaSymbolView - a debug symbol hierarchy and properties viewer based on MSDIA: github.com/diversenok/D...
New Blog Post: Seth Jenkins broke kASLR by doing β¦ nothing π©
googleprojectzero.blogspot.com/2025/11/defe...
Thank you for your interest in Decoder Loop & #rustlang reverse engineering training so far!
This Friday, November 7th, join us at Ringzer0 COUNTERMEASURE, in Ottawa, Canada, where @cxiao.net will present the workshop "Reversing a (not-so-) Simple Rust Loader": ringzer0.training/countermeasu...
Must-read for fuzzing folks (read: tooling/algorithms/academia) by Addison Crump
addisoncrump.info/research/wha...
if u want a high quality curated source of news relevant to defenders, LOOK AT THIS SITE
25.10.2025 05:11 β π 6 π 2 π¬ 0 π 0Impressive reverse engineering kung fu against widevine L3 by Felipe (x.com/_localo_) ! #hacklu
Cc @mrphrazer.bsky.social
NEW: The U.S. govt accused Peter Williams, ex general manager of hacking tool maker L3Harris Trenchant, of stealing trade secrets and selling them to buyer in Russia.
As we reported earlier, Trenchant investigated a leak of internal tools this year. It's unclear if that investigation is related.
SCOOP: A man who worked on developing hacking and surveillance tools for defense contractor L3Harris Trenchant was notified by Apple that his iPhone was targeted with mercenary spyware.
The developer believes he was targeted after he was wrongly accused of leaking zero-days developed by Trenchant.
I held a talk about reverse engineering and bypassing Denuvo in Hogwarts Legacy at Navaja Negra
The recording and the slides are now online :D
momo5502.com/posts/2025-1...
BGGP6 flyer, a collage featuring old media formats arranged over a backdrop of a golf course
Binary Golf Grand Prix 6 begins now!
#BGGP6 theme: "Recycle"
Challenge Announcement: binary.golf/6
π¦ I am starting a training firm, @decoderloop.com, focused on providing Rust Reverse Engineering training! decoderloop.com
We hope to come to a conference near you next year. Stay notified on training dates: Follow us at @decoderloop.com, or join our mailing list: decoderloop.com/contact/#tra...
The recording of our (CC @nicolo.dev ) talk "Breaking Mixed Boolean-Arithmetic Obfuscation in Real-World Applications" at @reconmtl.bsky.social is now online!
Recording: www.youtube.com/watch?v=QxSG...
Slides: synthesis.to/presentation...
#BinaryNinja Plugin: github.com/mrphrazer/ob...
The new version of my #BinaryNinja plugin Obfuscation Analysis (v1.2) adds recursive function inlining in the decompiler.
It collapses call-heavy code into a single function; analysis, constant propagation, DCE and other analyses work across boundaries.
github.com/mrphrazer/ob...
RE//verse 2026 CFP is open! Got research? Prove it: sessionize.com/reverse-2026
09.10.2025 17:05 β π 3 π 3 π¬ 0 π 1It turns out this analysis was incorrect, and someone pointed it out to me. I've redone the analysis, and it's now much improved. For Part 2, where I cover the true cause of the crash, please take a look here: medium.com/@Debugger/un...
08.10.2025 01:27 β π 2 π 1 π¬ 1 π 1Close your eyes and β¨imagine:
From a low-integrity process (from LPAC even), you can inject your data anywhere you want:
privileged tasks, PPL/protected processes, the OS kernel itself, and VTL1 trustlets.
Now open your eyes. It is not hypothetical.
It is the reality. Read it on page 33.
#FTSCon Speaker Spotlight: Aleksandra Doniec (@hasherezade.bsky.social) is presenting βUncovering Malware's Secrets with TinyTracerβ in the MAKER track.
See the full list of speakers + event info, including how to register, here: volatilityfoundation.org/from-the-sou...
We are alarmed by reports that Germany is on the verge of a catastrophic about-face, reversing its longstanding and principled opposition to the EUβs Chat Control proposal which, if passed, could spell the end of the right to privacy in Europe. signal.org/blog/pdfs/ge...
03.10.2025 16:14 β π 4007 π 2428 π¬ 40 π 144Brand new paper with Roxane Cohen, Robin David (both from @quarkslab.bsky.social ) and Florian Yger on obfuscation detection in binary code doi.org/10.1007/s411... We show that carefully selected features can be leveraged by graph neural networks to outperform classical solutions.
30.09.2025 17:03 β π 12 π 7 π¬ 1 π 1lmao, apparently this guy managed to give two different talks at two of the the biggest hacking conferences using AI generated slop that doesn't even make any sense. Welcome to infosec in 2025.
30.09.2025 18:29 β π 107 π 31 π¬ 3 π 0Attacking Assumptions Behind the Image Load Callback :: RomHack 2025
Here are my RomHack slides about low-privileged attack vectors against PsSetLoadImageNotifyRoutine and drivers that rely on it. Enjoy!
diversenok.github.io/slides/RomHa...
Super cool potential ASLR leak involving dictionary hashes! googleprojectzero.blogspot.com/2025/09/poin...
26.09.2025 17:07 β π 10 π 6 π¬ 0 π 0GUIFuzz++ is the first general-purpose fuzzer for desktop GUI software! Fuzzing by translating AFL++ random input into user interaction with GUIs, leading to the discovery of 23 new bugs!
Paper: futures.cs.utah.edu/papers/25ASE.pdf
Source: github.com/FuturesLab/GUIFuzzPlusPlus
Go test some GUIs!
I'm happy to share that LIEF 0.17.0 is out: lief.re/blog/2025-09...
15.09.2025 03:49 β π 12 π 5 π¬ 0 π 0Want to learn reverse engineering? There'll be a free, women*-only BlackHoodie workshop from October 6th to 9th in Paris!
Topics:
β’ Linux memory forensics π΅οΈββοΈ (by Sonia)
β’ Web app and mobile app pentesting πΈοΈπ± (by Paula)
β’ iOS reversing π (by me)
π£ IDA 9.2 is here!
β₯ Smarter Go decompilation
β₯ New Dynamic Xref Graph & Xref Tree
β₯ Debugger & UI upgrades
β₯ Expanded processor support (ARM, RISC-V)
β₯ And more...
Explore the full release here: hex-rays.com/blog/ida-9.2...
HyperDbg v0.16 is released! ππ«β¨
This version adds a new event command '!xsetbv', along with bug fixes, performance improvements, and progress on the user-mode debugger in VMI mode.
Check it out:
github.com/HyperDbg/Hyp...