$ open --post hello-worl…
SOC
Hello, World: Why The Fuzz Exists
Starting a defensive-security blog because notes get lost in vaults, in Teams chats, in chat logs. This is where mine live now.
Apr 25, 20264 min
4 posts · filtered by *
Starting a defensive-security blog because notes get lost in vaults, in Teams chats, in chat logs. This is where mine live now.
Hunting fileless WMI persistence on a dead-disk Windows 11 image. From ASEP-sweep through XOR'd C2 to the flag.
Reverse engineering the new Emotet loader stage. We cover the unpacking routine, anti-analysis tricks, and pull a clean payload for YARA authoring.
A clean walkthrough of HackTheBox's Resolute box. Enumeration, AS-REP roast, lateral movement via password reuse, and DLL injection through DnsAdmins.