Finished in 1st place at the Red Team CTF @ #DEFCON 31. @RedTeamVillage_
Started off playing the event solo, but I was joined in the finals by my fellow teammates from Team Europe, @sijsu and @s3np41k1r1t0 to get the win.
Thank you ThreatSims and @hackthebox_eu for the event!
Snake Yara detections have been added to MemProcFS memory forensics! Detect snake implants and other evil (such as cobalt strike) in notime with MemProcFS FindEvil!
Thank You @msuiche 💙
github.com/ufrisk/MemProcFS
If you hadn't heard about this:
There is a debug build of some OG Xbox game that was found in an encrypted RAR. This password only took the small community less than a week to crack.
The @hashtopolis server peaked at 7517.92kh/s. That's equivalent to 75 Nvidia 3090 GPUs.
Today, I went looking for love 💕🥰
I ended up finding (what appears to be) a new macOS backdoor/updater component: 'iWebUpdate' ...which has been around, undetected for 5 years! 🍎👾👀
Read:
"Where there is love, there is ...malware?"
objective-see.org/blog/blog_…
I wrote an IDA plugin that queries #ChatGPT and explains decompiled functions. It's still very bleeding edge, but you can find the code here and try it out:
github.com/JusticeRage/Gepet…
(Yes, the video was performed on a very basic case for simplicity's sake.)
I'll be teaching this tonight. Should be fun.
Everyone will be able to walk away able to scan for this exploit in their environment and then show how it can be weaponized to help give you the ability to patch for it.
I'll be at @BSidesIdFalls this Friday & Saturday.
If anyone is there, I'd love to meet up! I am traveling on my own this time around. Anyone in the area that wants to make friends, come find me!
bsidesidahofalls.org/
What a memory that popped up! 4 years ago, I made these leather @saintcon mini-badges.
I can't wait to see all the fun badges that people bring this year.