slipstream/RoL (@thewack0lian) 's Twitter Profile
slipstream/RoL

@thewack0lian

slipstream / raylee / Rye / Rai-chan [of Ring of Lightning] Reverser, coder, beta collector, security researcher. Mastodon: mastodon.social/@slipstream

ID: 55802959

linkhttp://rol.im/chat/ calendar_today11-07-2009 10:11:10

5,5K Tweet

6,6K Followers

289 Following

Jake Williams (@malwarejake) 's Twitter Profile Photo

Dear $website, When you say "I see you're using an ad blocker, whitelist our site" you're missing the point. It's a safety issue first and foremost. If you infect me, I'll be stuck with the cleanup, not you. Control your ad network and I'll think about whitelisting. #Kthxbye

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

even if it means *patching* ntoskrnl/winload/bootmgr so you can debug that pesky protected process :) x.com/matalaz/status…

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

Chinese skids seem equal to Western skids at coding shitty malware. Haven't laughed this hard in a long time. mastodon.social/@slipstream/98…

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

More Chinese malware, and a case of perhaps implementing a crypto specification *too* well? mastodon.social/@slipstream/98…

Mastodon (@Mastodon@mastodon.social) (@joinmastodon) 's Twitter Profile Photo

#TwitterEvacuationDay is already tomorrow, 12/31. Join a decentralized, non-profit social network: joinMastodon.org Better anti-harassment tools, approachable moderators who care, custom emojis, animated avatars, no ads, this list is too long to fit.

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

Getting the PEB pointer for every architecture NT was ported to and where a build was leaked/released for that port: mastodon.social/@slipstream/99…

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

"system-unique tracking identifiers that persist across reinstalls by storing them in the TPM or UEFI firmware variables" mastodon.social/@slipstream/99…

slipstream/RoL (@thewack0lian) 's Twitter Profile Photo

Technical analysis of FSLabs' Chrome stealer thing. Spoiler alert: C2 comms used plain HTTP. Hope you're not being MITM'd! mastodon.social/@slipstream/99…