You can do it, little kitty!!
:ablobcatbongo:
Reverse Engineering Dragon VTuber!
I am currently streaming Ghidra development and GameBoy things on Twitch!
https://www.twitch.tv/cyberkaida
Model art by Tako and rigging by Viicccii!
https://vgen.co/Takuntakoyaki
https://vgen.co/viicccii1
Profile picture by EliseWong - https://www.twitch.tv/elisewongcreations
I toot about #ReverseEngineering #Ghidra #VTuber things!
EN/日本語: OK
You can do it, little kitty!!
:ablobcatbongo:
all malware left unattended will be disassembled and decompiled
For over one year I've been harassed, threatened, doxxed, misgendered and abused by Luna the Foxgirl, author of Inochi2D.
Due to her attacks and manipulation of others, I no longer feel safe contributing to Linux GPU drivers, and I will be retiring my current model.
Another malware campaign targeting streamers to steal their Discord and credentials.
Please be careful downloading games from Discord messages, especially if they are "beta" and need a password to access!
https://urlscan.io/result/0196196e-3874-703c-96eb-d146b26d214b/related/
https://bazaar.abuse.ch/sample/d75cf24a30202d36d98f7201d9a6d3df4a8a49577b15153e00a46ebab8ae9ea3/
https://app.any.run/tasks/5c272c58-1c4b-4d9e-ac21-30421d6818d4
Another malware campaign targeting streamers to steal their Discord and credentials.
Please be careful downloading games from Discord messages, especially if they are "beta" and need a password to access!
https://urlscan.io/result/0196196e-3874-703c-96eb-d146b26d214b/related/
https://bazaar.abuse.ch/sample/d75cf24a30202d36d98f7201d9a6d3df4a8a49577b15153e00a46ebab8ae9ea3/
https://app.any.run/tasks/5c272c58-1c4b-4d9e-ac21-30421d6818d4
Live now investigating malware targeting VTubers!
Quick fix for Ghidra's rust detection, if you are analyzing rust and your strings are not extracted correctly please try my patch!
https://github.com/NationalSecurityAgency/ghidra/pull/7885/files
Live now improving Ghidra's RustLang support and maybe working on a AssemblyLine4 plugin! 💜🐉👩💻
I don't know anyone at Discord and I can't find a way to report a malware hosted on their CDN to them.
There is a group doing account takeover in the VTuber and Streamer space and using the Discord CDN.
Password is `sparkbeta` for the RAR, they send you the password in a message.
VTubers please be careful, your friends can be infected and their account can send you messages! Don't click things that look like this screenshot!
I uploaded the malware:
https://bazaar.abuse.ch/sample/73b47149af8a048750833f65d3d95039f06d54fcd74f856bd1bce04dbb7ceb3c/
https://www.virustotal.com/gui/file/73b47149af8a048750833f65d3d95039f06d54fcd74f856bd1bce04dbb7ceb3c
The site on URLScan that links to the Discord CDN:
https://urlscan.io/result/e5b4ffd1-1c12-484d-b745-f01fc70ba91b/#summary
More sites (they steal a picture from Steam):
https://urlscan.io/search/#hash%3A1e4025cf814744692375cbc5767bc3ad6e8da5460c9f7ac3086d04b21217b2b8
Almost typed radare2 as yandere2 :woozy_baa:
I spent an hour building type hints for #Ghidra 's python3 support. Looked in the `docs/` directory to see if there were extra `.rst` files to include and found they already generated nice type stubs in the build! 💜🐉🐍
I should have checked first! 🙇♀️🥲
@TheHerpaDerpaSherpa The eclipse integration was great but I always had problems with class paths and debugging... with this it was much easier to debug my extension and it supports PyGhidra for debugging python3 too!
You can create a virtual environment and install the pyghidra package from `${GHIDRA_INSTALL_DIR}/Ghidra/Features/PyGhidra/pypkg` so the python3 debugger works too.
The Ghidra team have made some great changes for 11.3! It is going to be a great release!
#VSCode support for writing #Ghidra plugins! And it includes debugging from VSCode!
I am SO EXCITED! Thank you Ghidra team! 💜💜💜
https://github.com/NationalSecurityAgency/ghidra/commit/478d3e6331803ee3c4adda98a9a97e0acab7e242
$ do_work --ignore-burnout --force
Apple did the research; LLMs cannot do formal reasoning. Results change by as much as 10% if something as basic as the names change.
https://garymarcus.substack.com/p/llms-dont-do-formal-reasoning-and
BinSync has been updated to support IDA 9! If your teammates are staying on 8.4, no worries—we have backward compatibility! You can still collaborate. This also means all binsync-based plugins, like DAILA, have been updated for 9.
Happy hacking:
https://github.com/binsync/binsync/releases/tag/v5.0.0
Here are the slides of my "Simple Machine Learning Techniques for Binary Diffing (with Diaphora)" talk given at the @44CON conference last week:
https://github.com/joxeankoret/diaphora-ml/blob/main/docs/diaphora-ml-techniques-44con-final.pdf
#44con #Diaphora #MachineLearning #ReverseEngineering #BinaryDiffing
Thank you for the accurate height... 😅
Thank you for the hard work BankaiZoneBr, look who has a new dimension!
Please if you are looking for a cute retro chibi model, commission BankaiZone, they were amazing to work with!
More to come this week!