Search Criteria
Search Results
Found 16 blog topic(s) in 2ms. The latest articles will appear on top:
Page 1 of 2
- Things You Thought You Knew - Getting Windows VersionHow to tell the "real" version of Windows your app is running on?October 20, 2022
- Crazy APIs & Silly Documentation - Part 1Microsoft's MSDN faux pas & weird sh*t you can find while reverse engineering Windows.July 31, 2022
- Incorrect COM initialization and sporadic crashesThe perilous results of incorrect sequence of calls to CoInitialize and CoUninitialize functions.July 29, 2022
- When Developers Give Up - DeleteSecurityPackage FunctionWhy it pays off to look into some Win32 functions with a disassembler.October 13, 2021
- Coding Windows Kernel Driver - InjectAllMaking the Visual Studio solution for DLL injection into all running processes.May 29, 2021
- Controlling Windows 10 UpdatesHow to enable installation of updates or to prevent it during a reboot or shutdown.January 21, 2021
- Patching Bugs - Windows Update Service - Part 2Second custom patch for the DLL hijack bug in the Windows Update Service.January 12, 2021
- Patching Bugs - Windows Update ServiceCustom patch for the DLL hijack bug in the Windows Update Service.January 8, 2021
- Windows Authentication & Smart CardsA primer on the Windows authentication process, Kerberos, smart cards and password-less entry.December 22, 2020
- Depths of Windows APCAspects of internals of the Asynchronous Procedure Calls from the kernel mode.November 27, 2020
- Windows Security LegacyDLL Hijacking - Why running executables from a user-writable location is a bad idea.November 13, 2020
- Intricacies of Windows APCDeep dive into user-mode Asynchronous Procedure Calls in Windows.November 11, 2020
- Deep Dive Into Windows PE Format - GetProcAddress SpoofingMalware researchers - Beware of GetProcAddress spoofing via manipulation of PE format in memory.October 1, 2020
- Deep Dive Into Assembly Language - Windows Shellcode - GetProcAddressHow to implement GetProcAddress in shellcode using x86-64 and x86 assembly language.September 14, 2020
- Pwning Windows Updates - DLL Hijacking Through Orphaned DLLExploiting bug in Windows Update Service to gain local privilege escalation through DLL hijacking.September 12, 2020