TL;DR: Analysis of malspam potentially targeting an organization. C#/.NET binary using KoiVM, process hollowing, and abusing vulnerable procexp152.sys driver.
TL;DR: Analysis of malspam potentially targeting an organization. C#/.NET binary using KoiVM, process hollowing, and abusing vulnerable procexp152.sys driver.
One of my earlier memories with computers was as a teen, just as WiFi was becoming popular. Back then, internet service was often horrible. But I quickly picked up an Alfa antenna from Ebay and learned that with a few Debian packages, it was possible to defeat the encryption of nearby access points.
It seems like a lot of the previous software wrappers to interact with archive.today (and archive.is, archive.ph, etc) via the command-line ...