expy

281 posts

expy banner
expy

expy

@expend20

Katılım Şubat 2018
907 Takip Edilen721 Takipçiler
expy
expy@expend20·
Ported Polaris-Obfuscator from C++/LLVM 16 to Python on LLVM 21. 9 passes: encrypted flattening, modular-arithmetic predicates, pointer mazes, function merging, and an X86 MIR pass that makes IDA's decompiler hallucinate variables that never existed. shifting.codes/blog/polaris-o…
English
0
13
78
6.2K
expy
expy@expend20·
Shifting Codes — open-source LLVM obfuscation passes ported from Pluto/Polaris/riscy-business to Python via llvm-nanobind. 17 passes, PyQt6 UI, works with modern LLVM 21. Blog post walking through Pluto obfuscations: shifting.codes/blog/llvm-obfu… GitHub: github.com/expend20/shift…
English
0
6
25
2.4K
expy
expy@expend20·
@ifsecure are there any info about Big Sleep itself?
English
1
0
0
173
Walied Assar
Walied Assar@waleedassar·
nt!RtlpCopyXStateChunk Denial Of Service
Walied Assar tweet media
English
2
12
56
0
expy
expy@expend20·
@Razvieu a weekend project, will release it in a couple of weeks I guess
English
0
0
0
37
expy
expy@expend20·
which feature of a debugger (or RE tool based on it) you were always missing in WinDBG/x64dbg or CheatEngine?
English
2
0
17
1.3K
expy
expy@expend20·
@CyberGhost13337 on x64 I think it's generally unavailable information, first 4 parameters are passed via registers, so as soon as you enter the function, optimizing compiler will do it's thing and then, in the middle of the function, you no longer have access to parameters
English
0
0
1
41
Cyber Ghost
Cyber Ghost@CyberGhost13337·
@expend20 I think debuggers often don't display arguments properly. I used to rely on IDA's debugger for this, but its UI is terrible. So I often end up using two debuggers at the same time.
English
1
0
1
80
x64dbg
x64dbg@x64dbg·
It is now super easy to build x64dbg and start contributing, give it a try!🤓
English
9
48
293
27.1K
expy
expy@expend20·
@spaceraccoon @nostarch just noticed a small error in ch1 about buffer overflow, my gcc on ubuntu shows "stack smashing detected" even without "-fstack-protector", to replicate intended behavior one would need to add "-fno-stack-protector"
English
1
0
1
105
spaceraccoon | Eugene Lim
spaceraccoon | Eugene Lim@spaceraccoon·
Writing a technical book is only a small fraction of the work. You still need: 1. Technical review 2. General editing 3. Copy editing 4. Cover designing 5. Proof reading <— I am here “From Day Zero to Zero Day” is a way better book thanks to the amazing team at @nostarch and I can’t wait till it’s in your hands. nostarch.com/zero-day
spaceraccoon | Eugene Lim tweet media
English
15
117
893
41.2K
expy
expy@expend20·
Using LLMs to play Flare-On 11. Much more fun compared to pre-LLMs era. youtu.be/w232BOBfoeA
YouTube video
YouTube
English
0
21
101
11K
expy
expy@expend20·
@x64dbg out of curiosity: what are the factors influencing that decision?
English
1
0
0
102
x64dbg
x64dbg@x64dbg·
11 years after XP's end-of-life we have decided to completely stop supporting operating systems older than Windows 10. The project will slowly transition to Visual Studio 2022 and Qt 5.15 with CMake, to make it easier for new people to contribute. Exciting updates are coming!
x64dbg tweet media
English
10
61
470
30.2K
expy
expy@expend20·
@sarperavci Great project! If I may ask: where did you get data - parsed ctftime write-up section?
English
1
0
1
493
Sarper⚡
Sarper⚡@sarperavci·
Just launched CTF Search with 24k+ CTF writeups, covering everything from web exploitation to reverse engineering. Check it out! ctfsearch.hackmap.win
Sarper⚡ tweet media
English
21
309
1.2K
66.6K