#GDATATechblog

2025-12-15

New blog: Browser Hijacking techniques -- when malware has different preferences than you

gdatasoftware.com/blog/2025/11

#GDATA #GDATATechblog #BrowserHijacking

2025-08-28

Our technical deep-dive about AppSuite PDF Editor backdoor is out πŸ“πŸ‘‡

gdatasoftware.com/blog/2025/08
#GDATA #GDATATechblog #AppSuite

2025-08-14

πŸ”New Blog: JustAskJacky -- AI brings back classical trojan horse malware

gdatasoftware.com/blog/2025/08

#GDATA #GDATATechblog

2025-06-23

A colleague and me wrote an article about EvilConwi -- signed ConnectWise remote access software being abused as malware
#GDATATechblog
gdatasoftware.com/blog/2025/06

2025-04-08

I wrote how to use knowledge about .NET structures and streams for writing .NET Yara signatures.

E.g. IL code patterns, method signature definitions, GUIDs, compressed length

#GDATATechblog #100DaysOfYara
gdatasoftware.com/blog/2025/04

2024-09-26

Karsten Hahn and I took a closer look at the latest #BBTok .NET loaders. In my first article on the #GDATATechblog we describe how to deobfuscate Trammy.dll and share new details about the BBTok infection chain.

gdatasoftware.com/blog/2024/09

@struppigel #GDATA

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst