Can Bölük (@_can1357) 's Twitter Profile
Can Bölük

@_can1357

Security researcher and reverse engineer. Interested in Windows kernel development, low-level programming, static program analysis and cryptography.

ID: 602951145

linkhttps://can.ac/ calendar_today08-06-2012 16:05:26

379 Tweet

6,6K Followers

254 Following

Daax (@daaximus) 's Twitter Profile Photo

I was given the opportunity by @ByfronTech to analyze their current work w/ Can Bölük. I could see it competing with if not overtaking some of the solutions on the market. Outstanding work by the engineers behind it, and it isn't even done yet. byfron.com

Can Bölük (@_can1357) 's Twitter Profile Photo

They literally started using the name Pluton again with no shame... It's hilarious to me what the consumers are willing to trade for a fancy (yet unusable) UI from a company that refuses to update its previous generation scheduler just to make people switch. </rant>

Justas Masiulis (@justasmasiulis) 's Twitter Profile Photo

Happy to release a neat little plugin for IDA Pro! Bitfield and bitflag accesses have been an annoyance that requires another window open and constant fiddling. You can now fix that with just a few key presses! github.com/JustasMasiulis…

Happy to release a neat little plugin for IDA Pro! Bitfield and bitflag accesses have been an annoyance that requires another window open and constant fiddling. You can now fix that with just a few key presses! github.com/JustasMasiulis…
Daax (@daaximus) 's Twitter Profile Photo

I had an inquiry about ACPI checks, and decided to run through how they work and how to mitigate them on VMware and QEMU. It's a quick and dirty write-up, so excuse the brevity. revers.engineering/evading-trivia…

Hex-Rays SA (@hexrayssa) 's Twitter Profile Photo

We’ve just published another great Plugin Focus article! Can Bölük ( Can Bölük ) introduces his NtRays plugin for automated simplification of Windows Kernel decompilation. Read more 🌐 hex-rays.com/blog/plugin-fo… #IDAPro #IDAPython #IDAPlugin #NtRays

We’ve just published another great Plugin Focus article! Can Bölük ( <a href="/_can1357/">Can Bölük</a> ) introduces his NtRays plugin for automated simplification of Windows Kernel decompilation. Read more 🌐 hex-rays.com/blog/plugin-fo…

#IDAPro #IDAPython #IDAPlugin #NtRays
Can Bölük (@_can1357) 's Twitter Profile Photo

> Want to reverse engineer notepad.exe for lulz to figure out what hotkey is toggling right-to-left reading order because I keep hitting it accidentally > MBA obfuscated imports

&gt; Want to reverse engineer notepad.exe for lulz to figure out what hotkey is toggling right-to-left reading order because I keep hitting it accidentally
&gt; MBA obfuscated imports
Matthew Green is on BlueSky (@matthew_d_green) 's Twitter Profile Photo

Europe is maybe two months from passing laws that end private communication as we know it, and folks are looking the other way (understandably.) You’re not going to get a do-over once these laws are passed.

Colton Skees (@coltonskees) 's Twitter Profile Photo

A preprint of my paper "Deobfuscation of Semi-Linear Mixed Boolean-Arithmetic Expressions" (arxiv.org/abs/2406.10016) is now available. This work extends algebraic MBA deobfuscation techniques to handle semi-linear MBAs - a class that existing techniques struggle with.

Can Bölük (@_can1357) 's Twitter Profile Photo

Excited to share my latest article: PgC - a novel approach to disable Patchguard during runtime using basic memory management principles. It has worked against every version of Patchguard for the last 7 years, without needing any updates! blog.can.ac/2024/06/28/pgc…

Joel Höner (@athre0z) 's Twitter Profile Photo

It's official: I'm co-founding zystem Inc, building a new continuous profiling platform called zymtrace. The idea is to take "whole system" one step further to also cover CUDA/GPU/ML workloads. We also see a looot of unrealized potential left in CPU profiling. [1/n]

It's official: I'm co-founding zystem Inc, building a new continuous profiling platform called zymtrace. The idea is to take "whole system" one step further to also cover CUDA/GPU/ML workloads. We also see a looot of unrealized potential left in CPU profiling. [1/n]