TL;DR: Analysis of malspam potentially targeting an organization. C#/.NET binary using KoiVM, process hollowing, and abusing vulnerable procexp152.sys driver.
TL;DR: Analysis of malspam potentially targeting an organization. C#/.NET binary using KoiVM, process hollowing, and abusing vulnerable procexp152.sys driver.
Work. Music. Jazz. Systems. Security research. Obsession. Liminal space. Near-isolation. Improvisation. Pattern recognition. Spaced repetiti...