Quantcast
Channel: BOT24
Viewing all articles
Browse latest Browse all 8064

PE Trick #1: A Codeless PE Binary File That Runs

$
0
0
One of the annoying things of my Windows Internals/Security research is when every single component and mechanism I’ve looked at in the last six months has ultimately resulted in me finding very interesting design bugs, which I must now wait on Microsoft to fix before being able to talk further about them. As such, I have to take a smaller break from kernel-specific research (although I hope to lift the veil over at least one issue at the No Such Conference in Paris this year). And so, in the next following few blog posts, probably inspired by having spent too much time talking with my friend Ange Albertini, I’ll be going over some neat PE tricks.


more here.........http://www.alex-ionescu.com/?p=211

Viewing all articles
Browse latest Browse all 8064

Trending Articles