Make Malware Analysis FASTER with Binary Emulation

Поделиться
HTML-код
  • Опубликовано: 13 янв 2025

Комментарии • 62

  • @d3c0deFPV
    @d3c0deFPV 11 месяцев назад +11

    Instant subscribe to @sonianuj. Shame about the audio issues but they're fairly brief and you don't lose too much.John, I appreciate that you just let people talk rather than constantly interrupting. Good content.

    • @sonianuj
      @sonianuj 11 месяцев назад +4

      Thanks for subscribing! Sorry for those audio issues on my end, my rode NTG mic doesn't seem to be performing as expected. Working on a fix!

    • @nazishbatool1304
      @nazishbatool1304 11 месяцев назад +1

      ​@@sonianuj😊

  • @qilingandfriends
    @qilingandfriends 11 месяцев назад +27

    I am the dude created Qiling. This is a good video! Kudos.

    • @sonianuj
      @sonianuj 11 месяцев назад +10

      Thanks for watching, that means a lot to me. And, of course, thanks for creating Qiling!

  • @gat2871
    @gat2871 11 месяцев назад +8

    I remember watching his "Malware Evasion Techniques: API Unhooking" video. Really good. A good cyber badass, definitely

    • @sonianuj
      @sonianuj 11 месяцев назад

      Thank you so much!

  • @sage2099
    @sage2099 11 месяцев назад +18

    Link to his RUclips channel?

    • @rationalbushcraft
      @rationalbushcraft 11 месяцев назад +4

      I found it searching for Anuj Soni.

    • @MrDrgdf
      @MrDrgdf 11 месяцев назад +3

      @sonianuj

  • @PanhandleSlug
    @PanhandleSlug 11 месяцев назад +1

    You know this guy knows his stuff when john is just silently listening just like us 🤣

  • @Cd6A0B
    @Cd6A0B 11 месяцев назад

    This is really awesome! I didn't know we are able to run a specific function without run the whole binary. I want to learn more! Thanks!

  • @jonnylacey7263
    @jonnylacey7263 11 месяцев назад

    Best thing about two RUclipsrs getting together for a demo/interview...A/V is always on point. Great video gentlemen!

  • @brettlaw4346
    @brettlaw4346 11 месяцев назад

    How would you analyze spam emails to determine what the spammers are sending you? What point of receiving an email would you no longer be comfortable opening an email on a production system?

  • @Trueblood506
    @Trueblood506 11 месяцев назад

    Unfortunately webcams are blocking a lot of screen during x64db steps on exporting the binary from memory. It becomes hard to follow what is being referenced in the video on arguments passed to virtualprotect

  • @dukejonathan493
    @dukejonathan493 11 месяцев назад

    Please do a full course video on beginner to advanced penetration testing. You appear more experienced than most other youtubers I've seen. 🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏🙏

  • @ihacksi
    @ihacksi 11 месяцев назад

    Wonderful resource and guest!

  • @KenPryor
    @KenPryor 11 месяцев назад

    Great video! I love Anuj'sYT channel too. He has some great content.

  • @volks8426
    @volks8426 11 месяцев назад

    is it possible to emulate keygens? Can i combine the emulation of the algorithm and supply the input at the same time onto the stack where the input would live to produce keys? (crackme keygens to be specific)

  • @abdirahmanburyar
    @abdirahmanburyar 11 месяцев назад

    Great as always sir.

  • @tommyhuffman7499
    @tommyhuffman7499 11 месяцев назад

    Such an amazing video!

  • @KL-og8gg
    @KL-og8gg 11 месяцев назад +2

    This is awesome John, anyway to make the camera windows smaller?

  • @fashionnova9839
    @fashionnova9839 11 месяцев назад

    wow john great watch the classic so happy to see someone wearing it in 2024 got mine in 2008 or before.

  • @malisancube01
    @malisancube01 11 месяцев назад

    I like Anuj. Awesome videos on his channel and clarity in explanation.

    • @sonianuj
      @sonianuj 10 месяцев назад +1

      Thank you so much!

    • @malisancube01
      @malisancube01 10 месяцев назад

      @@sonianuj I'd be happy to learn if you decide to make a paid course

  • @xCheddarB0b42x
    @xCheddarB0b42x 11 месяцев назад

    This detailed de-obfuscation video is incredible. What's more incredible is that I mostly followed along! 😅

    • @boogieman97
      @boogieman97 11 месяцев назад +1

      If you have the opportunity, you should consider taking the SANS courses he authored. This quality he is given, is what you will get in a 5 day long lecture.

    • @xCheddarB0b42x
      @xCheddarB0b42x 11 месяцев назад +1

      @@boogieman97 Even in my current role, I can't afford it, but I have my eye on them for sure. Thanks for the heads up!

    • @boogieman97
      @boogieman97 11 месяцев назад +1

      @@xCheddarB0b42x please note there is a chance to do "work-study" you will be a facilitator of SANS, which really helps them. But because you volunteer for them, the price is reduced. Please know that there is a selection, so not a guarantee. (footnote, the price is heavily reduced). I would not talk about the details, as this is not up to me. I am not working for SANS, just a guy with a very happy experience.

    • @xCheddarB0b42x
      @xCheddarB0b42x 11 месяцев назад

      @@boogieman97 I did not know that. Thank you!

  • @cristophersoto1244
    @cristophersoto1244 11 месяцев назад

    What a such a crack that guy, lot to learn out there. Malware analysis is that skill that I want to master either I used it or not in my day to day job

  • @replikvltyoutube3727
    @replikvltyoutube3727 11 месяцев назад

    Could you do this with rust binaries? I heard Rust compiles to some hard to analyze form.

    • @sonianuj
      @sonianuj 10 месяцев назад

      Good question! Honestly haven't tried...

  • @christophertharp7763
    @christophertharp7763 11 месяцев назад

    is there anyway we can get a link ti that vm he is using?

  • @hazelora
    @hazelora 11 месяцев назад

    get yourself someone who smiles like john at anuj

  • @axelrod_is_tired
    @axelrod_is_tired 11 месяцев назад +3

    this video have audio issue

  • @eyephpmyadmin6988
    @eyephpmyadmin6988 11 месяцев назад

    Great video

  • @logiciananimal
    @logiciananimal 11 месяцев назад

    Proving that a monster can be powerful, even without a head! neat!

  • @squid13579
    @squid13579 11 месяцев назад

    hey john make video on gui version of radare2 ( iaito ) amazing framewok and it similar to cutter as well.
    nice video 👍

  • @arseniy.k8895
    @arseniy.k8895 10 месяцев назад

    thank you💸💸💸

  • @raihanrafi3665
    @raihanrafi3665 10 месяцев назад

    VSCode for malware analysis pro🙏

  • @embeeror
    @embeeror 11 месяцев назад

    John the videos when you are not shouting or cranking the microphone volume to 11, like this one are much easier to watch. Most of the videos as of late are very loud and causing frustration.

    • @_JohnHammond
      @_JohnHammond  11 месяцев назад

      Super appreciate the constructive criticism -- so just for my own clarification and understanding, the feedback is to be quieter, less enthusiasm and not talk with my hands?

    • @nordgaren2358
      @nordgaren2358 11 месяцев назад

      You shouldn't have your volume up so loud.

  • @clarkesuperman
    @clarkesuperman 10 месяцев назад

    Did I just get mogged

  • @boogieman97
    @boogieman97 11 месяцев назад +1

    Anuj Soni, this guy is truly amazing. He wrote the SANS FOR710 course, really liked doing that one

    • @sonianuj
      @sonianuj 11 месяцев назад

      Thank you, so kind of you to say. Very happy to hear you enjoyed 710!

    • @boogieman97
      @boogieman97 11 месяцев назад +1

      ​@@sonianuj yes I enjoyed the course a lot, last year january 2023 in Amsterdam with Michael Murr. The way that this course is thought through is especially good (didactic) perspective. Not touching very specific topics like steganography only, but from all the way of identifying certain API's, to understanding both assembly as pseudo C. I have recently rewrote that decryption routine based on assembly and Pseudo C to Python.

  • @BeCoolIT
    @BeCoolIT 11 месяцев назад

    Good!!!

  • @TheHacker404
    @TheHacker404 11 месяцев назад

    The Voices are a little bit not Going Normally the voices are stopping at some points

  • @hackwithprogramming7849
    @hackwithprogramming7849 11 месяцев назад +2

    Exploit development for windows plz ❤

  • @ravisp2998
    @ravisp2998 10 месяцев назад

    really cool video..informative

  • @boostenmkiv
    @boostenmkiv 11 месяцев назад

    As a FOR610 alum, love this content and of course Anujs channel!

  • @lootclan5842
    @lootclan5842 11 месяцев назад +1

    1 milion

  • @vanillarodent
    @vanillarodent 3 месяца назад

    awesome thanks for the video and isntant subscribe to him too

  • @meooow5996
    @meooow5996 11 месяцев назад +2

    🎉

  • @JackofTradeApps
    @JackofTradeApps 11 месяцев назад

    😎