Alexandre Borges(@ale_sp_brazil) 's Twitter Profileg
Alexandre Borges

@ale_sp_brazil

Vulnerability Researcher and Exploit Developer

ID:60807822

linkhttps://linktr.ee/ale_sp_brazil calendar_today28-07-2009 04:15:36

7,9K Tweets

22,9K Followers

111 Following

Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

I have been slowly writing the next articles:

1. MAS 08: Introduction to MacOS malware analysis.
2. ER 03: macOS/iOS (part 01)
3. MAS 09: Shellcode Analysis
4. ER 04: Browsers or Hypervisors (part 01)
5. RE 05: Hypervisors or Browsers (part 01)

MAS 09 will be the last article

I have been slowly writing the next articles: 1. MAS 08: Introduction to MacOS malware analysis. 2. ER 03: macOS/iOS (part 01) 3. MAS 09: Shellcode Analysis 4. ER 04: Browsers or Hypervisors (part 01) 5. RE 05: Hypervisors or Browsers (part 01) MAS 09 will be the last article
account_circle
Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

In some situations during vulnerability research I've found functions flagged as functions of no return, so it may be useful to remember how to identify them and, eventually, fix problems. This picture is just a quick review.

In some situations during vulnerability research I've found functions flagged as functions of no return, so it may be useful to remember how to identify them and, eventually, fix problems. This picture is just a quick review. #idapro #vulnerability #reverseengineering
account_circle
Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

In some situations during vulnerability research I've found functions flagged as functions of no return, so it may be useful to remember how to identify them and, eventually, fix problems. This picture is just a quick review.

In some situations during vulnerability research I've found functions flagged as functions of no return, so it may be useful to remember how to identify them and, eventually, fix problems. This picture is just a quick review. #idapro #vulnerability #reverseengineering
account_circle
Marc-André Moreau(@awakecoding) 's Twitter Profile Photo

𝕘 𝕥 𝕨 𝕪 Jay-sun? Ru Campbell I wrote a whole blog post on the awfulness of RDP NLA + PKU2U which is one of the ways you can connect with an Entra ID account in RDP. It's possible to make it work, but it's just... ugh. awakecoding.com/posts/rdp-nla-…

account_circle
m4n0w4r(@kienbigmummy) 's Twitter Profile Photo

✍️🇻🇳 My quick note how to decrypt strings and configuration of version 5.0

kienmanowar.wordpress.com/2024/04/24/qui…

account_circle
Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

For people asking me if I will publish a new version of Malwoverview, the answer is YES, and more details will be released in the coming weeks. Even if I am forever away from malware analysis, I will maintain the project.

github.com/alexandreborge…

For people asking me if I will publish a new version of Malwoverview, the answer is YES, and more details will be released in the coming weeks. Even if I am forever away from malware analysis, I will maintain the project. github.com/alexandreborge… #malware #threathunting
account_circle
Gabriel Landau(@GabrielLandau) 's Twitter Profile Photo

I'm thrilled to announce that I'll be presenting a previously-unnamed vulnerability class at BlueHat IL.

Oh, and I'll be dropping 0day. Be sure to stop by, learn something new, pwn the kernel, and have a coffee. It should be a good time.
microsoftrnd.co.il/bluehatil/conf…

I'm thrilled to announce that I'll be presenting a previously-unnamed vulnerability class at @BlueHatIL. Oh, and I'll be dropping 0day. Be sure to stop by, learn something new, pwn the kernel, and have a coffee. It should be a good time. microsoftrnd.co.il/bluehatil/conf…
account_circle
Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

DTrace on 64-bit Windows (amd64/arm64). It was one of the most impressive features of Solaris OS, it was ported to macOS and is being improved on Windows. DTrace is useful for vulnerability research and performance/tuning.

DTrace on 64-bit Windows (amd64/arm64). It was one of the most impressive features of Solaris OS, it was ported to macOS and is being improved on Windows. DTrace is useful for vulnerability research and performance/tuning. #windows #dtrace
account_circle
Stephen Sims(@Steph3nSims) 's Twitter Profile Photo

Join me tomorrow on the Off By One Security stream with special guest Pavel Yosifovich Pavel Yosifovich for a session on Windows Device Drivers Internals, ...and Some Additional Reversing! 19-April at 11AM PT. Looking forward to this one!

youtube.com/watch?v=7Trgnw…

Join me tomorrow on the Off By One Security stream with special guest Pavel Yosifovich @zodiacon for a session on Windows Device Drivers Internals, ...and Some Additional Reversing! 19-April at 11AM PT. Looking forward to this one! youtube.com/watch?v=7Trgnw…
account_circle
Alexandre Borges(@ale_sp_brazil) 's Twitter Profile Photo

People ask why I haven't spoken at conferences in the last four years. In fact, my decision was made in 2022 for several reasons:

1. Due to the nature of my work (Windows/Hypervisors/Browsers exploitation), I cannot comment or present anything (and it isn't recommended).

2. The

People ask why I haven't spoken at conferences in the last four years. In fact, my decision was made in 2022 for several reasons: 1. Due to the nature of my work (Windows/Hypervisors/Browsers exploitation), I cannot comment or present anything (and it isn't recommended). 2. The
account_circle
Yarden Shafir(@yarden_shafir) 's Twitter Profile Photo

There is still time to register for my new hands-on debugging class next month!
I’m not likely to teach this class again soon so if you want to take it, now is your chance 😊

There is still time to register for my new hands-on debugging class next month! I’m not likely to teach this class again soon so if you want to take it, now is your chance 😊
account_circle
hasherezade(@hasherezade) 's Twitter Profile Photo

Josh Stroschein | The Cyber Yeti Thanks for using PEbear! I know it is an old video, so it makes sense that you remap it this way. Just FYI, now the same thing can be done just by one click: youtube.com/watch?v=9Cqq44…

account_circle
Philippe Lagadec(@decalage2) 's Twitter Profile Photo

Antoine Cailliau Alexandre Dulaunoy @[email protected] Florian Roth Only executable files or any file format?
There are some datasets for specific formats, for example PDF:
corp.digitalcorpora.org/corpora/files/…
For MS Office: decalage.info/fr/download_ms…
Caveat: those datasets may contain some malicious files.
I'd be interested to find datasets for other formats.

account_circle
Yarden Shafir(@yarden_shafir) 's Twitter Profile Photo

Shout out to Andrea Allievi for building SkTool. The easiest way to find out what Hypervisor / secure kernel features are enabled on a system

Shout out to @aall86 for building SkTool. The easiest way to find out what Hypervisor / secure kernel features are enabled on a system
account_circle
Hex-Rays SA(@HexRaysSA) 's Twitter Profile Photo

We’ve recently introduced IDA 8.4, but have you noticed that it comes with a built-in tool for generating FLIRT signatures from a current database? Read more about the makesig plugin 🌐 hex-rays.com/blog/an-overvi…

We’ve recently introduced IDA 8.4, but have you noticed that it comes with a built-in tool for generating FLIRT signatures from a current database? Read more about the makesig plugin 🌐 hex-rays.com/blog/an-overvi… #idapro #makesig
account_circle
m4n0w4r(@kienbigmummy) 's Twitter Profile Photo

✍️🇻🇳My quick note about techniques employed by the threat actor in the phishing email to distribute via .
kienmanowar.wordpress.com/2024/04/09/qui…

account_circle
hasherezade(@hasherezade) 's Twitter Profile Photo

I've got it today, so I can show how it looks IRL 😊. I think the print and overall quality is good. I believe some of you got it too. Are you happy from how it came out?

I've got it today, so I can show how it looks IRL 😊. I think the print and overall quality is good. I believe some of you got it too. Are you happy from how it came out?
account_circle