Posts
Delving into BlueNorOff malware
        
        
  
  
  2381 words·12 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    MacMalware
  
  
  
  
    
  
    ARMRE
  
  
  
  
    
  
    ReverseEngineering
  
  
  
  
    
  
    Ghidra
  
  
  
  
    
  
    Bluenoroff
  
  
  
  
    
  
    APT
  
  
  
  
    
  
    DPRK
  
  
  
  
    
  
    MacOS
  
  
  
  
  
  
        
          In this article, we examine a newer strand of Bluenoroff malware from late 2023 on MacOS systems. It’s our first look at a strand of malware from an APT.
        
        
      Analysis of PureLand Info Stealer
        
        
  
  
  2614 words·13 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    MacOS
  
  
  
  
    
  
    ARM
  
  
  
  
    
  
    MacMalware
  
  
  
  
    
  
    ReverseEngineering
  
  
  
  
    
  
    eCrime
  
  
  
  
    
  
    infostealer
  
  
  
  
  
  
        
          Analysis of an information stealer application designed for MacOS systems alongside a detailed breakdown of the structure of iOS applications to aid in future analysis of mac malware.
        
        
      [Part 2] Creating a safe (and functional) RE environment on Apple Silicon - UTM
        
        
  
  
  1998 words·10 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    UTM
  
  
  
  
    
  
    ARM
  
  
  
  
    
  
    Virtualisation
  
  
  
  
    
  
    AppleSilicon
  
  
  
  
    
  
    MacMalware
  
  
  
  
    
  
    ARM-basedWindows
  
  
  
  
    
  
    ARM-basedLinux
  
  
  
  
    
  
    FlareVM
  
  
  
  
  
  
        
          This blog post will guide you through the key programs and downloads required to successfully set up a functional and safe malware environment on M series MacBooks using UTM.
        
        
      [Part 1] Creating a safe (and functional) RE environment on Apple Silicon - VMWare Fusion
        
        
  
  
  3281 words·16 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    Virtualisation
  
  
  
  
    
  
    ReverseEngineering
  
  
  
  
    
  
    FlareVM
  
  
  
  
    
  
    ARM
  
  
  
  
    
  
    inetsim
  
  
  
  
    
  
    AppleSilicon
  
  
  
  
    
  
    ARM-basedLinux
  
  
  
  
    
  
    ARM-basedWindows
  
  
  
  
    
  
    VMWareFusion
  
  
  
  
  
  
        
          This blog post will guide you through the key programs and downloads required to successfully set up a functional and safe malware environment on M series MacBooks using VMWare Fusion.
        
        
      You make me WannaSmile
        
        
  
  
  1931 words·10 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    WannaSmile
  
  
  
  
    
  
    Ransomware
  
  
  
  
    
  
    eCrime
  
  
  
  
    
  
    dnSpy
  
  
  
  
    
  
    ReverseEngineering
  
  
  
  
    
  
    dotNet
  
  
  
  
  
  
        
          Analysis of ‘WannaSmile’ ransomware using dnSpy to pull apart and understand the behaviour and crypto functions used by this binary to encrypt machines.
        
        
      Starting Small: Analysis of recent vjw0rm variant
        
        
  
  
  3669 words·18 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    vjw0rm
  
  
  
  
    
  
    Reverse
  
  
  
  
    
  
    Engineering
  
  
  
  
    
  
    JavaScript
  
  
  
  
    
  
    eCrime
  
  
  
  
  
  
        
          Analysis of a recent variant of vjw0rm. I walk through my approach to analysing the sample, the challenges I faced in completing the task, resources I leveraged to overcome these and finally the lessons I learned along the way.
        
        
      An Introduction
        
        
  
  
  355 words·2 mins·
    
    loading 
    
  
    
  
·
    
    loading 
    
  
    
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
  
    
  
    Introduction
  
  
  
  
    
  
    Blog
  
  
  
  
  
  
        
          An introductory post outlining the purpose of this blog, my background and a small dedication to those who inspired me.