Alice Climent-Pommeret(@AliceCliment) 's Twitter Profileg
Alice Climent-Pommeret

@AliceCliment

Malware and EDR stuff @harfanglab 🤓

ID:1059913433150377985

linkhttp://alice.climent-pommeret.red calendar_today06-11-2018 21:00:29

1,9K Tweets

2,8K Followers

268 Following

Helen (of Tor)(@h313n_0f_t0r) 's Twitter Profile Photo

It’s worth mentioning that at this time in my career, I had no women to turn to for support. I was the only woman in my classes, on my team at work, and was not very active in greater communities. All of my mentors, teammates, colleagues, etc were men, and it was the good ones…

account_circle
Karsten Hahn(@struppigel) 's Twitter Profile Photo

In case someone needs it: I made a shellcode to PE converter for win32 and 64

usage:
shellcode_to_pe.py win32 C:\shellcode_file

github.com/struppigel/hed…

account_circle
Binni Shah(@binitamshah) 's Twitter Profile Photo

GMER - the art of exposing Windows rootkits in kernel mode : artemonsecurity.blogspot.com/2024/04/gmer-a… credits Artem I. Baranov

EDRSandBlast : a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections : github.com/wavestone-cdt/…

GMER - the art of exposing Windows rootkits in kernel mode : artemonsecurity.blogspot.com/2024/04/gmer-a… credits @artem_i_baranov EDRSandBlast : a tool written in C that weaponize a vulnerable signed driver to bypass EDR detections : github.com/wavestone-cdt/…
account_circle
Alice Climent-Pommeret(@AliceCliment) 's Twitter Profile Photo

I just discovered Artem I. Baranov blog and OMG?! If you're into windows kernel/internals it's an AMAZING goldmine 😯🤯

artemonsecurity.blogspot.com

account_circle
Alice Climent-Pommeret(@AliceCliment) 's Twitter Profile Photo

I'm happy to announce that I recently started a new position at HarfangLab !

You can find here my very first post about Raspberry Robin and its clever anti-Defender emulator🥳

account_circle
hasherezade(@hasherezade) 's Twitter Profile Photo

Thanks to the cool contribution from Canadian Centre for Cyber Security (cyber.gc.ca/en) can be used as ETW listener. It unlocks a new potential for much more powerful detection. Stay tuned for the upcoming release... (github.com/hasherezade/ho…)

account_circle
DebugPrivilege(@DebugPrivilege) 's Twitter Profile Photo

Avast discovered an in-the-wild admin-to-kernel exploit for a previously unknown zero-day vulnerability in the appid.sys AppLocker driver being leveraged by Lazarus. decoded.avast.io/janvojtesek/la…

account_circle
eversinc33 🩸🗡️(@eversinc33) 's Twitter Profile Photo

New blogpost and small tool release: Wrote a naive anti-rootkit driver that detects mapped drivers, and talk about some bypasses for those detections in part I of my new (anti-)-anti-rootkit series.

More research on rootkit evasion coming soon : )

eversinc33.com/posts/anti-ant…

account_circle
Uriel Kosayev(@MalFuzzer) 's Twitter Profile Photo

🚀 Exciting news! 🔥🤟😎
Due to high demand and requests, I've slashed the price of my online malware analysis course by 50%!
Perfect for those facing financial challenges and aspiring to enter the cybersecurity world.
Enroll now for lifetime access: training.trainsec.net/malware-analys……

account_circle