Jim Stevens 's Avatar

Jim Stevens

@jimstevens2001.bsky.social

Co-founder of DTRSEC and co-creator of REnigma working on malware analysis and reverse engineering. dtrsec.com

21 Followers  |  75 Following  |  22 Posts  |  Joined: 01.12.2024  |  1.7626

Latest posts by jimstevens2001.bsky.social on Bluesky

Editing and Viewing the Recording Note in REnigma
YouTube video by DTRSEC Editing and Viewing the Recording Note in REnigma

Here's the next Reversing in REnigma Training Video! This video shows how to use the recording note feature to track ticket numbers, CVE numbers, and other useful labels during your analysis work! Enjoy!

www.youtube.com/watch?v=iChO...

19.06.2025 17:54 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Decrypting TLS Traffic with REnigma and Tshark Command Line Interface
YouTube video by DTRSEC Decrypting TLS Traffic with REnigma and Tshark Command Line Interface

Here's the next Reversing in REnigma Training Video! This video shows how to use the Tshark command line interface with REnigma's ability to export the PCAP and TLS Keys to view decrypted TLS traffic! Enjoy!

www.youtube.com/watch?v=mQI1...

04.06.2025 16:38 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Decrypting TLS Traffic with REnigma and Wireshark
YouTube video by DTRSEC Decrypting TLS Traffic with REnigma and Wireshark

Here's the next Reversing in REnigma Training Video! This video shows how to use REnigma to download the PCAP and TLS Session Keys file for a recording and how to use Wireshark to view decrypted TLS traffic! Enjoy!

www.youtube.com/watch?v=jmyV...

22.05.2025 16:06 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Single Stepping a System Call With the REnigma Debugger
YouTube video by DTRSEC Single Stepping a System Call With the REnigma Debugger

Here's the next Reversing in REnigma Training Video! This video shows how to use REnigma's single stepping debugger to step into the Windows kernel during the NtCreateFile system call and examine CPU register state and key memory data structures! Enjoy!

www.youtube.com/watch?v=MdKh...

02.05.2025 15:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Process Registry Details Analysis in REnigma
YouTube video by DTRSEC Process Registry Details Analysis in REnigma

Here's the next Reversing in REnigma Training Video! This video shows how to analyze the Windows registry activity of a malware executable!

www.youtube.com/watch?v=9Xrn...

25.04.2025 17:56 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Viewing the contents of created files in REnigma
YouTube video by DTRSEC Viewing the contents of created files in REnigma

Here's the next Reversing in REnigma Training Video! This video shows how to view the metadata and content of a file created by malware!

www.youtube.com/watch?v=n4mT...

15.04.2025 14:09 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
How to see files created and opened by malware in REnigma
YouTube video by DTRSEC How to see files created and opened by malware in REnigma

Here's the next Reversing in REnigma Training Video! This video shows how to see the files created and opened by a malware executable! Enjoy!

www.youtube.com/watch?v=3Cof...

11.04.2025 17:08 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Overview of Process Network Details in REnigma
YouTube video by DTRSEC Overview of Process Network Details in REnigma

Here's the next Reversing in REnigma video! This covers how to drill down into the network event details in the process tree! Enjoy!

www.youtube.com/watch?v=Yu4v...

04.04.2025 22:41 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
REnigma Recording Details Overview
YouTube video by DTRSEC REnigma Recording Details Overview

Here's the next REnigma Youtube Short on the Recording Details page!

www.youtube.com/shorts/6hgrq...

01.04.2025 22:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Overview of Memory Dump Analysis in REnigma
YouTube video by DTRSEC Overview of Memory Dump Analysis in REnigma

Here's the next Reversing in REnigma training video! This video shows how REnigma can go back in time during a recording to do memory dump analysis at any instruction commit or system event you choose! Enjoy!

www.youtube.com/watch?v=giEs...

27.03.2025 18:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Navigating Replays with Execution Breakpoints and Rsnaps
YouTube video by DTRSEC Navigating Replays with Execution Breakpoints and Rsnaps

Here's the next Reversing in REnigma training video! This video gives a demonstration of how to quickly navigate through a replay using execution breakpoints and replay snapshots (Rsnaps). Enjoy!

www.youtube.com/watch?v=44Ne...

20.03.2025 17:42 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Introduction to Execution Points for Advanced REnigma Analysis
YouTube video by DTRSEC Introduction to Execution Points for Advanced REnigma Analysis

This Reversing in REnigma video introduces the concept of execution points, which is how REnigma represents time during a recording, and the various ways they are used in the tool to enable replay analysis workflows. Enjoy!

www.youtube.com/watch?v=QxEn...

11.03.2025 17:07 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
LimaCharlie Python Playbooks: Security Automation Discover LimaCharlie's Python playbooks for SecOps Cloud Platform automation. These scripts offer granular control, flexible triggering options, and seamless API integration to enhance security operat...

Don't let the "play" in our new Python playbooks fool you, they do serious work for your business.

Now you can run Python-based playbooks to automate security operations, enhance detections, and streamline workflows!

Check out what's possible: limacharlie.io/blog/playboo...

10.03.2025 20:09 β€” πŸ‘ 3    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Process Details Analysis Overview in REnigma
YouTube video by DTRSEC Process Details Analysis Overview in REnigma

Here's the next Reversing in REnigma training video! Enjoy!

This video is an overview of process details, including command line arguments, network activity, file system activity (including downloading/viewing created files), and registry activity.

www.youtube.com/watch?v=6M2o...

27.02.2025 18:59 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Record a URL in REnigma #malware #phishing #cybersecurity #browser  #reverseengineering #sandbox
YouTube video by DTRSEC Record a URL in REnigma #malware #phishing #cybersecurity #browser #reverseengineering #sandbox

Youtube Short showing how to record a URL in REnigma! Enjoy!

youtube.com/shorts/Y5K1T...

#malware #phishing #cybersecurity #browser #reverseengineering #sandbox

25.02.2025 04:39 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Record a URL in REnigma #malware #phishing #cybersecurity #browser  #reverseengineering #sandbox
YouTube video by DTRSEC Record a URL in REnigma #malware #phishing #cybersecurity #browser #reverseengineering #sandbox

Youtube Short showing how to record a URL in REnigma! Enjoy!

www.youtube.com/shorts/Y5K1T...

#malware #phishing #cybersecurity #browser #reverseengineering #sandbox

25.02.2025 04:36 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Process Tree Analysis in REnigma
YouTube video by DTRSEC Process Tree Analysis in REnigma

Here's the next Reversing in REnigma training video on analyzing the Process Tree over the recording! Hope you enjoy!

www.youtube.com/watch?v=cKtF...

17.02.2025 20:03 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
GitHub - st0pp3r/awesome-detection-engineer: Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools, logging configura... Online resources related to Detection Engineering. Detection rules, detection logic, attack samples, detection tests and emulation tools, logging configuration and best practices, event log refere...

Cool GitHub that collects lots of resources for detection engineering including rule sets, best practices, tools, reference materials, etc.

github.com/st0pp3r/awes...

12.02.2025 16:12 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

🚨 🚨 🚨 This is a warm welcome to a first-time Gold Sponsor: Deterministic Security!🚨 🚨 🚨

Check them out over at dtrsec.com

Here's a cool breakdown of their tool, REnigma: https://buff.ly/4jTzsO4

12.02.2025 08:47 β€” πŸ‘ 3    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

Here's the next training video in the Reversing in REnigma series on Network Analysis and PCAP Download! Enjoy!

www.youtube.com/watch?v=Nw5o...

28.01.2025 15:39 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

Tune in Friday as @jimstevens2001.bsky.social from Deterministic Security breaks down Sandbox Workflows with REnigma. Live at 10:30am PT.

limacharlie.io/defender-fri...

#infosec

22.01.2025 18:34 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

Here's the new Reversing in REnigma training video on the recording details page, including recording summary, alerts, and static/network/process/memory analysis. Enjoy!

www.youtube.com/watch?v=7iIo...

22.01.2025 19:14 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Recording and Replaying a Malware Executable with REnigma
YouTube video by DTRSEC Recording and Replaying a Malware Executable with REnigma

Here's the next training video in the Reversing in REnigma series. It describes how to record and replay a malicious executable in REnigma. Enjoy!

www.youtube.com/watch?v=TGr8...

15.01.2025 18:02 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Record and replay a URL with REnigma
YouTube video by DTRSEC Record and replay a URL with REnigma

Reversing in REnigma: How to record and replay a URL in REnigma.

youtu.be/TA8TGOsURjk?...

21.12.2024 02:13 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
The SecOps Cloud Platform


MSSN CTRL 2024 talk we did on how to analyze malware with a programmable sandbox. It includes a demo of REnigma's backtracker going backwards in time to find TLS plaintext from encrypted bytes sent to network interface memory mapped IO writes.

limacharlie.io/events/mssn-...

07.12.2024 23:20 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@jimstevens2001 is following 20 prominent accounts