Updates

I have published the article “Batch Everywhere – How to Execute Shell Commands or Open a Shell Inside a Surrogate File“.

March 05, 2023

On Friday, December 2nd, I’ll be presenting “Crawlector: A Threat Hunting Framework” again, at AVAR conference, in Singapore.

November 29, 2022

Tomorrow, October 22nd, I’ll be presenting “Crawlector: A Threat Hunting Framework“, at No Hat 2022 conference, in Bergamo, Italy.

October 21, 2022

I have published the paper “The State of SSL/TLS Certificate Usage in Malware C&C Communications”, which takes a closer look at the SSL/TLS certificates used by malware.

September 19, 2021

I have presented this research topic “A Journey into Malware HTTP Communication Channels Spectacles” at vOPCDE #9 live summit, on July 15, 2020. This talk is important for malware researchers, protocol designers and developers, network hunters, blue and red teams, and SOC analysts of all levels. Slides, paper and video presentation have been released.

July 15, 2020

I’ve release the slides, YouTube video recording, and all tools of the talk “An Exploratory Endeavor in the Reverse Engineering of a Multi-platform Compiler”. Please check the Tools and Publications pages.

May 06, 2020

Join me online next Wednesday, May 6th, on vOPCDE live summit, to talk about “An Exploratory Endeavor in the Reverse Engineering of a Multi-platform Compiler”.

Apr. 30, 2020

Released InsHelper, an IDA Pro plugin.

Nov. 11, 2019