0xabc0 Profile Banner
Ahmet Bilal Can 🦔 Profile
Ahmet Bilal Can 🦔

@0xabc0

Followers
4K
Following
5K
Media
357
Statuses
1K

reverse everything

İstanbul, Türkiye
Joined January 2018
Don't wanna be here? Send us removal request.
@0xabc0
Ahmet Bilal Can 🦔
3 years
Ever wanted to get payload from packed android malware without running android emulator/device? Me neither. But I wrote a tool for that anyway😄.
3
35
129
@0xabc0
Ahmet Bilal Can 🦔
4 days
Sunumlar her zamanki gibi kaliteli ve güzeldi. Etkinliğe gelen (çok) genç arkadaşlarla tanışmak ayrı bir keyifti. Yeni nesil gümbür gümbür geliyor.
@__TTMO__
Tersine Mühendisler Odası
6 days
TTMO Meetup 6'dan kareler. Sunumları için Celil Ünüver(@celilunuver), Utku Çorbacı(@rhotav), Yusuf İşlek(@_nnaci) ve Ahsen Tekdemir'e(@ahsentekd); güzel katılım için TTMO üyelerine çok teşekkürler. Sponsorlarımız: Forestall, Secrove ve Hexflow
Tweet media one
Tweet media two
Tweet media three
Tweet media four
0
0
20
@grok
Grok
3 days
What do you want to know?.
164
116
688
@0xabc0
Ahmet Bilal Can 🦔
8 days
Here we go again. Ready to deploy 😄
Tweet media one
1
0
15
@0xabc0
Ahmet Bilal Can 🦔
12 days
RT @__TTMO__: 🔥 Tersine mühendisler, 6. toplantıya koşun!. Yusuf İşlek, Ahsen Tekdemir, Celil Ünüver ve Utku Çorbacı ile,. 16 Ağustos, İzmi….
0
9
0
@0xabc0
Ahmet Bilal Can 🦔
16 days
RT @__TTMO__: Tersine mühendisler, 6. toplantıya koşun!.16 Ağustos, İzmir'de. Kayıt: (Toplantı akışı daha sonra….
Tweet card summary image
docs.google.com
Etkinlik Zamanı: 16 Ağustos 2025 / 13.00 - 18.00 Etkinlik Adresi: Withco, Çınarlı Mah. 1572 Sok. No:33 Konak/İZMİR Bize [email protected] e-posta adresinden ulaşabilirsiniz.
0
5
0
@0xabc0
Ahmet Bilal Can 🦔
1 month
Bu sefer İzmirdeyiz. O bitirmediğin projeni bitirip sunmak için mükemmel fırsat. Mailler 👉👉 noreply@ttmo.re.
@__TTMO__
Tersine Mühendisler Odası
1 month
6. toplantı için dikkat dikkat! O karmakarışık klasörlerde birikmiş bilgi yığınlarını sunuma dökme zamanı. Son CFP başvurusu 5 Ağustos. Etkinlik 16 Ağustos. Konum İzmir. Detaylar:
Tweet media one
0
0
10
@0xabc0
Ahmet Bilal Can 🦔
2 months
RT @egeblc: As a fun little weekend project, I have weaponized OpenReplay for exploiting XSS on "HttpOnly" websites. It allows you to remot….
Tweet card summary image
github.com
Seamless remote browser session control. Contribute to EgeBalci/evilreplay development by creating an account on GitHub.
0
16
0
@0xabc0
Ahmet Bilal Can 🦔
2 months
😭😭😭 "APKLabIo will sunset on 2025-07-30"
Tweet media one
3
0
12
@0xabc0
Ahmet Bilal Can 🦔
3 months
Do you know there's an official BLE service for cycling sensors? I didn't, so here's my DIY ESP32 with a reed sensor and a Samsung Health connection! New blog post: "Emulating a Bike Sensor" 👇
Tweet media one
1
2
14
@0xabc0
Ahmet Bilal Can 🦔
3 months
@mrexodia ps: I'm aware this doesnt handle shuffled opcodes right now. I have a plan to also analyze interpreter executable and prepare opcode mapping. and olugin uses hardcoded key (0xdeadbeef) instead of taking it from found header (idk how to pass it to architecture class).
2
0
4
@0xabc0
Ahmet Bilal Can 🦔
3 months
Hi @mrexodia 🫣.
1
0
2
@0xabc0
Ahmet Bilal Can 🦔
3 months
here is the riscy-business vm repo : here is the binary ninja plugin :
Tweet card summary image
github.com
Binary Ninja Plugin for Riscy Business. Contribute to eybisi/bn-riscy-business development by creating an account on GitHub.
1
0
12
@0xabc0
Ahmet Bilal Can 🦔
3 months
I’ve developed a Binary Ninja plugin to load encrypted riscy-business bytecode. It locates the encryption key, decrypts the bytecode, auto-renames initial functions, resolves import table entries, and annotates VM-specific syscalls. An example binary is included in the repository
Tweet media one
3
43
307
@0xabc0
Ahmet Bilal Can 🦔
3 months
Btw love the fact that lockedshield had sample from romcom case (custom proxy tool) which is targeting NATO. I've analyzed almost identical sample just before the event 😄 .
@PRODAFT
PRODAFT
4 months
🚨Nebulous Mantis (also known as Cuba), a Russian-speaking cyber espionage group behind the 2023 NATO Summit campaign, has escalated operations in 2025. Their recent campaigns target sectors like tech, healthcare, and engineering, while still focusing on geopolitical interests.
Tweet media one
0
0
4
@0xabc0
Ahmet Bilal Can 🦔
4 months
new annually event for me: #lockedshields. got 2nd place on DFIR category with team 🇹🇷/🇭🇺.
2
0
37
@0xabc0
Ahmet Bilal Can 🦔
4 months
RT @__TTMO__: Türkiye'nin en küçük siber güvenlik etkinliği TTMO Meetup #6. Detaylar yakında.
Tweet media one
0
8
0
@0xabc0
Ahmet Bilal Can 🦔
5 months
I've also added test apks with git lfs. You can pull test cases with `git lfs pull` after cloning the repo.
0
0
0
@0xabc0
Ahmet Bilal Can 🦔
5 months
Added crocodilus unpacker to kavanoz at version 0.0.6 thx for the report @cryptax.
Tweet card summary image
github.com
Statically unpacking common android banker malware. - eybisi/kavanoz
@ThreatFabric
ThreatFabric
5 months
A new mobile banking Trojan has emerged—#Crocodilus. Discovered during regular threat hunting, it’s already showing capabilities that rival top malware families, including device takeover and advanced credential theft. #BankingTrojan #ThreatFabric
Tweet media one
1
1
20
@0xabc0
Ahmet Bilal Can 🦔
7 months
RT @DebugPrivilege: For the hardcore reverse engineers and malware analysts out there, my ex-colleague just dropped a deep dive into 'Scatt….
Tweet card summary image
cloud.google.com
We been tracking multiple espionage operations conducted by China-nexus actors utilizing POISONPLUG.SHADOW malware.
0
77
0
@0xabc0
Ahmet Bilal Can 🦔
10 months
what about MBA ? 😎
Tweet media one
Tweet media two
1
0
6