Nice read. Assuming from good readable code that it comes from a LLM is quite... weird to me, tho.
Читать полностью…7 LLM Projects to Boost Your Machine Learning Portfolio - MachineLearningMastery.com
https://machinelearningmastery.com/7-llm-projects-to-boost-your-machine-learning-portfolio/
well shoot that is all the info i have on this sample, its ok, i appreciate the help from everyone!
Читать полностью…Hello Nhat, welcome to the Malware Research group! Please read the pinned message before you post!
Читать полностью…Hello ., welcome to the Malware Research group! Please read the pinned message before you post!
Читать полностью…does anyone have any sample of this rootkit? (snapekit)
https://x.com/GenThreatLabs/status/1841482299558215698
Has anyone seen or heard about threat actor targetting a security researcher because they published a piece about their activities?
Читать полностью…Anyone know Is it possible to download this sample?
https://www.virustotal.com/gui/file/c8c5d2e0d2a29417c4a89c55c4a0e452b948b1429418eda84be725774504a35c/detection
Hello Rakesh, welcome to the Malware Research group! Please read the pinned message before you post!
Читать полностью…Blog post alert!
This one is about the Emansrepo infostealer. The primary focus is to extract the Python code from the PyInstaller-based sample and then deobfuscate it to reveal the actual malware code. Emansrepo Python code is so clean, easy to follow, with great variable names and function names, that I believe the developer may have used an LLM to write it.
People getting into malware analysis can use this information to learn how to handle PyInstaller-packaged malware.
Blog link: https://nikhilh-20.github.io/blog/emansrepo_deobfuscation/
Everybody knows Metasploit. Theres are lot of resources in the internet if you search.
Читать полностью…Yes, no i am saying what you said was very formal.
"Patience is a virtue " my grandpa used to say this to me
fdee2e34212170af59a95701317f220e9bdedfd8ee579bc485e0534410da42e7
2600eb7673dddacda0e780bf3b163b0b89b41f9925eebbd2a2b3dfa234bc1a22
Follow-up do you think that it would be better to publish research under a pseudonym or just initials to avoid such situations?
Читать полностью…Hello JARVIS, welcome to the Malware Research group! Please read the pinned message before you post!
Читать полностью…