Security enthusiast, CTF player, co-founder of @ZenHackTeam he/him

Joined July 2010
6 Photos and videos
Giovanni Lagorio retweeted
(1/n) New research on Windows malware, to appear at ACM ASIA CCS 2026 [1]: "SoK: Systematization, Detection, and Hunting of Windows Malware Persistence Techniques" [2] This work is a collaboration between EURECOM and the University of Twente.
1
5
11
494
Giovanni Lagorio retweeted
The recording of my first Binary Cartography webinar is now public: Agentic Reverse Engineering: How AI Agents Are Changing Binary Analysis Topics: keygenning, cracking & anti-tamper removal Recording: youtube.com/watch?v=DZcDaXTv… Slides/code/samples: github.com/mrphrazer/binary-…
4
117
403
40,146
Giovanni Lagorio retweeted
I was watching a presentation [1] on @REverseConf 2026 and I learned an anti-emulation trick that uses x87 FPU quirks. It is used by an anti-cheat engine (as part of an MBA). Here you go, it detects Unicorn: github.com/packmad/fprem-ant… [1] youtube.com/watch?v=3LtwqJM3…
1
6
263
Giovanni Lagorio retweeted
RE//verse 2026 talks are live on YouTube! Want to revisit a talk or catch the ones you missed? The full playlist is now available: youtube.com/playlist?list=PL…
4
57
312
23,631
Giovanni Lagorio retweeted
pagedout.institute/ ← we've just released Paged Out! zine Issue #7 pagedout.institute/download/… ← direct link lulu.com/search?page=1&pageS… ← prints for zine collectors pagedout.institute/download/… ← issue wallpaper Enjoy! Please please please RT to spread the news - thank you!
6
127
280
97,244
Giovanni Lagorio retweeted
So, these threat actors successfully phished an author of multiple open source NPM packages with a total of 2 billion weekly downloads – including debug, chalk, and ansi-styles. Since most companies run at least one React or Angular app, they had the opportunity to execute code on millions of systems across thousands of orgs. And they used it to drop an amateurishly obfuscated crypto stealer, got caught by basic detection rules, and the issue was remediated after 2 hours. I hope everyone understands how close this was – and can imagine what would’ve happened if someone with real skills had done it. #NPM #Compromise #SupplyChain
25
160
820
93,249
Giovanni Lagorio retweeted
New #TinyTracer (v3.0) is out - with many cool features: github.com/hasherezade/tiny_… - check them!
5
71
250
21,641
Giovanni Lagorio retweeted
Big news: Windows Subsystem for Linux is now Open Source! 🎉 Download WSL, build from source, contribute fixes & features, and join its active development. Learn more: msft.it/6018SjYoE
146
1,151
7,209
472,022
Giovanni Lagorio retweeted
Hello hackers! Another @pwncollege semester ends, continuing @ASU's @ace_inst's never-ending quest to revolutionize the way hackers learn to become productive members of the cybersecurity community. Read on to learn what this means for students and Capture the Flag! 🧵
1
23
112
13,454
Giovanni Lagorio retweeted
My new article, "Writing a Full Windows ARM64 Debugger for Reverse Engineering," covers the topic in detail, including its internals and the core differences between Windows on Intel and ARM64: keowu.re/posts/Writing-a-Win…
4
83
263
23,058
Giovanni Lagorio retweeted
"dos-like" is a mini-engine/framework I made a couple of years ago. It makes it easy to make games and other things with a 90s MS-DOS look and feel, but using a modern C compiler and running on Windows, Linux, macOS and in the browser using WebAssembler.
38
131
1,367
3,752,968
Giovanni Lagorio retweeted
"A calculator app? Anyone could make that." Not true. A calculator should show you the result of the mathematical expression you entered. That's much, much harder than it sounds. What I'm about to tell you is the greatest calculator app development story ever told.
567
4,000
33,074
4,524,223
Giovanni Lagorio retweeted
Last Thursday, I gave a webinar on anti-reverse engineering techniques like obfuscation, anti-debug, anti-tamper etc, including practical examples. Recording, slides and examples are now available. youtube.com/watch?v=Ie1eZSiM… github.com/emproof-com/webin…
Our Head of Engineering & Co-founder, @mr_phrazer , gave a webinar "Software Protection – Safeguarding Code Against Reverse Engineering". Recording, slides etc are now online: youtube.com/watch?v=Ie1eZSiM… github.com/emproof-com/webin…
51
200
17,790
Giovanni Lagorio retweeted
DataExplorer is a plugin for @x64dbg that integrates the pattern language from @WerWolv's ImHex. You can quickly visualize data structures in memory!
4
79
369
20,240
Giovanni Lagorio retweeted
The last release of #TinyTracer for this year: v2.9.5 : github.com/hasherezade/tiny_… . Added ability to follow child processes (thanks to @red5heep). Improved tracing of #VMProtect - protected executables.
2
73
250
11,926
Giovanni Lagorio retweeted
New #HollowsHunter (v0.4.0) is out: github.com/hasherezade/hollo…. Now you can use it in the classic mode, as well as in ETW mode - as a multi-threaded listener. The watched events can be defined by a simple profile - but it is just a beginning...
2
81
316
40,739
Giovanni Lagorio retweeted
Releasing full 2 hr video of my browser exploitation workshop from VXCON 2024: youtube.com/live/b9OhamkAY2I In which I show what goes inside the mind of a skilled hacker while exploiting a highly non-trivial vulnerability in v8, from zero to exploit concept. Especially this workflow requires advanced abstract thinking, thereby emphasize the role of theoretical modeling in attacking hard zeroday research targets, which is a part of why it's fun. @zerodaytraining
8
242
703
40,966