31. How malware authors play with the LNK file format research | 2024-05-29 22:00 | CVE-2010-2568 | blog.quarkslab.com | original ↗ | #malware | #windows | #threat-analysis
32. Reversing Windows Container, episode II: Silo to Server Silo research | 2024-03-25 23:00 | blog.quarkslab.com | original ↗ | #windows | #reverse-engineering | #virtualization
33. Why Windows can’t follow WSL symlinks blog | 2024-02-12 14:30 | blog.trailofbits.com | original ↗ | #linux | #windows | #reverse-engineering
34. AI In Windows: Investigating Windows Copilot blog | 2023-12-27 14:00 | blog.trailofbits.com | original ↗ | #ai-security | #microsoft | #windows
35. ETW internals for security research and forensics research | 2023-11-22 12:00 | blog.trailofbits.com | original ↗ | #threat-intelligence | #malware | #windows
36. Reversing Windows Container, episode I: Silo research | 2023-09-20 22:00 | blog.quarkslab.com | original ↗ | #windows | #reverse-engineering | #containers
37. Debugging Windows Isolated User Mode (IUM) Processes research | 2023-09-06 22:00 | blog.quarkslab.com | original ↗ | #windows | #reverse-engineering | #hyper-v
38. Advanced Module Stomping & Heap/Stack Encryption blog | 2023-07-25 04:40 | labs.cognisys.group | original ↗ | #windows | #red-team | #memory-encryption
39. Combining Indirect Dynamic Syscalls and API Hashing blog | 2023-07-13 03:40 | labs.cognisys.group | original ↗ | #windows | #red-team | #evasion
40. Introducing Windows Notification Facility’s (WNF) Code Integrity blog | 2023-05-15 11:00 | blog.trailofbits.com | original ↗ | #windows | #reverse-engineering | #offensive-security
41. Windows Task Scheduler Application, Version 19044.1706 Advisory vulnerability | 2023-04-04 00:00 | CVE-2023-21541 | bishopfox.com | original ↗ | #microsoft | #privilege-escalation | #windows
42. Post-Exploitation: Abusing the KeePass Plugin Cache research | 2023-02-06 23:00 | blog.quarkslab.com | original ↗ | #windows | #exploitation | #post-exploitation
43. Injecting Code using Imported Functions into Native PE Files blog | 2023-02-07 00:00 | blog.washi.dev | original ↗ | #windows | #reverse-engineering | #code-injection
44. Introducing RPC Investigator blog | 2023-01-17 13:00 | blog.trailofbits.com | original ↗ | #windows | #security-tools | #research
45. What child is this? blog | 2022-12-20 13:00 | blog.trailofbits.com | original ↗ | #windows | #security-research | #program-analysis
46. A virtual journey: From hardware virtualization to Hyper-V's Virtual Trust Levels research | 2021-07-28 22:00 | blog.quarkslab.com | original ↗ | #windows | #reverse-engineering | #virtualization
47. PrintNightmare: What You Need to Know vulnerability | 2021-07-23 00:00 | bugcrowd.com | original ↗ | #rce | #microsoft | #ransomware
48. What You Need to Know about PrintNightmare, the Critical Windows Print Spooler Vulnerability vulnerability | 2021-07-06 17:08 | semperis.com | original ↗ | #rce | #windows | #vulnerability
49. RetroArch for Windows, Versions 1.9.0 - 1.9.4 Advisory vulnerability | 2021-06-15 00:00 | bishopfox.com | original ↗ | #windows | #powershell | #vulnerability
50. Analysis of a Windows IPv6 Fragmentation Vulnerability: CVE-2021-24086 vulnerability | 2021-04-06 22:00 | CVE-2021-24086 | blog.quarkslab.com | original ↗ | #denial-of-service | #windows | #vulnerability
51. Malware development part 7 - Secure Desktop keylogger blog | 2021-01-29 00:00 | 0xpat.github.io | original ↗ | #privilege-escalation | #windows | #red-team
52. How the MSVC Compiler Generates XFG Function Prototype Hashes research | 2020-11-11 23:00 | blog.quarkslab.com | original ↗ | #windows | #reverse-engineering | #compiler
53. Remote Desktop Services Shadowing – Beyond the Shadowed Session research | 2020-10-29 14:07 | swarm.ptsecurity.com | original ↗ | #pentesting | #windows | #rdp
54. Beware the Bad Neighbor: Analysis and PoC of the Windows IPv6 Router Advertisement Vulnerability (CVE-2020-16898) vulnerability | 2020-10-15 22:00 | CVE-2020-16898 | blog.quarkslab.com | original ↗ | #rce | #windows | #exploitation
55. More Important Than a TPS Report: Designing a Realistic CTF for DEF CON Safe Mode blog | 2020-09-22 00:00 | bishopfox.com | original ↗ | #attack-surface | #ctf | #security-training
56. Win-KeX Version 2.0 blog | 2020-09-18 00:00 | kali.org | original ↗ | #windows | #kali-linux | #wsl
57. Verifying Windows binaries, without Windows blog | 2020-05-27 11:50 | blog.trailofbits.com | original ↗ | #open-source | #windows | #cryptography
58. Malware development part 3 - anti-debugging blog | 2020-04-06 00:00 | 0xpat.github.io | original ↗ | #windows | #red-team | #anti-debugging
59. Real-time file monitoring on Windows with osquery blog | 2020-03-16 11:12 | blog.trailofbits.com | original ↗ | #endpoint-security | #windows | #detection
60. Abusing COM objects blog | 2020-03-10 00:00 | 0xpat.github.io | original ↗ | #windows | #red-team | #enumeration