The following is the full listing of available blog posts. The latest articles will appear on top:
Page 4 of 5
- Things You Thought You Knew - Current COM Apartment ModelHow to get the COM concurrency model for the current thread.January 12, 2021
- Patching Bugs - Windows Update Service - Part 2Second custom patch for the DLL hijack bug in the Windows Update Service.January 12, 2021
- Patching Bugs - Windows Update ServiceCustom patch for the DLL hijack bug in the Windows Update Service.January 8, 2021
- Things You Thought You Knew - The UPS StoreUPS vs The UPS Store - What you need to know before sending your packages.December 30, 2020
- Windows Authentication & Smart CardsA primer on the Windows authentication process, Kerberos, smart cards and password-less entry.December 22, 2020
- Loop Optimization in C++Testing capabilities of the Visual C++ compiler to optimize loops.December 5, 2020
- Depths of Windows APCAspects of internals of the Asynchronous Procedure Calls from the kernel mode.November 27, 2020
- Windows Security LegacyDLL Hijacking - Why running executables from a user-writable location is a bad idea.November 13, 2020
- Intricacies of Windows APCDeep dive into user-mode Asynchronous Procedure Calls in Windows.November 11, 2020
- Scams, State of Healthcare and BureaucracyM.P. Shah Hospital scam & inaccurately dangerous test results.November 1, 2020
- Deep Dive Into Windows PE Format - GetProcAddress SpoofingMalware researchers - Beware of GetProcAddress spoofing via manipulation of PE format in memory.October 1, 2020
- Deep Dive Into Assembly Language - Windows Shellcode - GetProcAddressHow to implement GetProcAddress in shellcode using x86-64 and x86 assembly language.September 14, 2020
- Pwning Windows Updates - DLL Hijacking Through Orphaned DLLExploiting bug in Windows Update Service to gain local privilege escalation through DLL hijacking.September 12, 2020
- Pwning Windows Kernel - Unkillable User-Mode Process - Part 2Technical details of the Windows 10 kernel bug - Cascade of deadlocks.September 10, 2020