Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
neko_koneko
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
neko_koneko
8y ago
FAR Manager is really great, you should give it a try: https://www.farmanager.com/screenshots.php?l=en
2.
▲
by
neko_koneko
8y ago
By the way, is there a list of things that Windows collects about computer/user activity?
3.
▲
by
neko_koneko
8y ago
Yep. Malware is constantly repacked/encrypted. It is impractical/impossible to write static unpacking engines for every type of malware packing technique, so behavioral analysis engine is a must (btw, behavioral engines still dete
4.
▲
by
neko_koneko
8y ago
Malware authors often incorporate legitimate software into their malware - e.g. Nir Sofer's Mail PassView and Web PassView are used in Emotet spam bot to harvest user credentials. Usually such files are marked as "Potentially unsa
5.
▲
by
neko_koneko
9y ago
When I was in similar situation (bought an old SGI O2 box and didn’t had any other SGI machines to plug HDD into to get /etc/passwd), I used telnet RCE/privilege escalation exploit: https://www.exploit-db.com/
6.
▲
by
neko_koneko
10y ago
Sorry, my bad. I meant files in OOXML format.
7.
▲
by
neko_koneko
10y ago
.docx files could contain macros just fine.
8.
▲
by
neko_koneko
10y ago
What do you mean, exactly? All I want so say that while targeted attacks are the most difficult to defend against (well, by definition), it is the medium-sophistication-level attacks that cause the most damage (in my experience), just becau
9.
▲
by
neko_koneko
10y ago
Well, I agree that AV most likely wouldn't protect you against targeted attacks - but most of the attacks that we investigated were targeted quite broadly - phishing email campaigns targeting financial organizations (with address lists
10.
▲
by
neko_koneko
10y ago
There are many criminal groups that develop malware - it's a multi-million dollar business.
11.
▲
by
neko_koneko
10y ago
Ok, disclaimer first: I've previously worked at Kaspersky Lab (incident response division). Now, I want to say that many of the incidents that we have investigated, would have been prevented by anti-virus software (in many cases AV sof
12.
▲
by
neko_koneko
10y ago
> It looks like it's pretty easy to create a spaghetti-code mess Can confirm. I currently work as a malware analyst, and I frequently have to analyze (somewhat) obfuscated malware NSIS installers. Older version of the 7-zip software