alden (@birchb0y) 's Twitter Profile
alden

@birchb0y

sr detection engineer @ huntress • re/malware enjoyer • macOS security

ID: 1159936540967153664

linkhttp://alden.io calendar_today09-08-2019 21:16:36

604 Tweet

2,2K Followers

1,1K Following

Team Cymru Threat Research (@teamcymru_s2) 's Twitter Profile Photo

BLOG POST: We are once again proud to have been involved in #OperationEndgame, this time helping to disrupt #DanaBot. We also got to collaborate closely with our buddies at Black Lotus Labs. You can read about our shared input in our co-authored blog! team-cymru.com/post/inside-da…

Tim Blazytko (@mr_phrazer) 's Twitter Profile Photo

New #BinaryNinja plugin: Obfuscation Analysis Simplifies arithmetic obfuscation (MBA) directly in the decompiler (see demo below). Also identifies functions with corrupted disassembly. Co-authored by nicolodev; available in the plugin manager. github.com/mrphrazer/obfu…

L0Psec (@l0psec) 's Twitter Profile Photo

New RE Post: kandji.io/blog/macos-app… Released before the long weekend. Was a fun one! Written in ObjC, uses AES, and able to execute arbitrary scripts. Thanks to MalwareHunterTeam for always sharing cool samples and Moonlock Lab for sharing their analysis in a thread recently. :)

bells (@bellafusari1) 's Twitter Profile Photo

this also applies to the girls, the gays, the enbys, and everyone else but maybe find a man to go in debt so u don’t have to

Peter Meerwald-Stadler (@pmeerw) 's Twitter Profile Photo

the paper "Inspecting Compiler Optimizations on Mixed Boolean Arithmetic Obfuscation" (ndss-symposium.org/wp-content/upl…), BAR'25 compares compilers' (GCC, Clang, MSVC) ability to simplify MBA expressions

alden (@birchb0y) 's Twitter Profile Photo

excited bc today Huntress is releasing our analysis of a gnarly intrusion into a web3 company by the DPRK's BlueNoroff!! 🤠 we've observed 8 new pieces of macOS malware from implants to infostealers! and they're actually good (for once)! huntress.com/blog/inside-bl…