
The 4043 - Part 1: Days 1 to 4, How do Computers Work?
If you’ve been following me on Twitter, you must’ve been seeing some insane dude who is putting some chips on a breadboard and is using a lot of wiring.This may or may not be be giving you college electronics lab PTSD… Anywho, It seems like he’s up to something.

Utilising EDR Tests to Enhance Threat Detection
Adversary emulation has been a really popular activity in organisations lately. It detects security holes in the organisation’s network and is generally a fun activity to do. In this post, we will look at a blend of EDR tests, adversary emulation, and enhancing threat detection.

Formatting your Hard Drive isn't Enough
We’ve all been there, you want to sell your laptop, old PC, or even your hard drive. Then, you recall reading somewhere that data can be recovered from drives even after they’ve been formatted… and, well, of course it can! You look it up on the internet and find not less than seven local businesses and over a hundred global ones that claim to re...

Tracking Changed My Life!
First, the backstory. Growing up, I had quite a bit of difficulty understanding what made me happy and what did not. My definition of “happiness” changed over the years, however the mystery always remained: What are the things that actually makes me happy? Is it achieving things? Is it sitting back and playing videogames all day? Is it going out...

Sysmon EID 27 Bypass
Sysmon version 14.0 was released on the 16th of August 2022. The new version introduces a new Event ID: 27 FileBlockExecutable. It is kind of new for sysmon to block something from happening completely. So, it was interesting to think of a way to bypass it!
I came across this post by Olaf Hartong. In this post, Olaf was previewing the new event...

There is No Single Roadmap
Here’s a very common misconception for beginners in the fields of technology: There is a single roadmap that you should follow in order to become successful or get a good job and not become the average Joe. This “single” roadmap differs so widely between people and subfields of the tech industry, that you can’t even find THE roadmap everyone is ...

Variadic Functions & stdarg.h
If you’ve ever programmed using C or C++, you’ve probably come across the function printf(). It’s a very popular function and all of C/C++ coders have seen it before.
printf (short for print formatted) basically prints formatted data to standard output (STDOUT). The function does so by using its format parameter, and the variables you want to p...

Catch the IEX if You Can: PowerShell Deobfuscation
A lot of the time when working with malware or when investigating an incident, you may encounter PowerShell executing obfuscated commands which may look like gibberish.
33 post articles, 5 pages.