felixm_pw Profile Banner
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ Profile
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ

@felixm_pw

Followers
1K
Following
4K
Media
59
Statuses
1K

Senior Researcher @Sophos | https://t.co/rAj5k8LMif

πŸ‡¬πŸ‡§ United Kingdom
Joined May 2018
Don't wanna be here? Send us removal request.
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
2 months
With some guidance from @DebugPrivilege I've found a way to easily dump clear text implants even while they sleep. Bad day for sleep obfuscation πŸ’€.
15
102
316
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
2 months
RT @DebugPrivilege: Ever tried VSS tracing? I’ve been using it to troubleshoot Volume Shadow Copy issues. It’s super useful but not widely….
0
12
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
2 months
RT @Octoberfest73: Really cool work in this blog. My answer to the Time Travel Debugging problem attached. Using timers (Ekko) for sleep, a….
0
15
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
2 months
This evening @DebugPrivilege walked me through some case studies from the WinDBG section of his debugging fundamentals repo. Defiantly check it out and bookmark it! .
7
19
57
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
3 months
How it feels opening IDA
1
0
11
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
5 months
RT @eversinc33: I just finished writing the final part of my anti-anti-rootkit series, where I do a slight twist on the .data ptr hijacking….
0
73
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
7 months
RT @eversinc33: It doesnt have to be RISC-V :) Wrote a little MIPS I VM (based on a playstation emulator I started writing years ago) that….
0
11
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
7 months
WatchMojo Presents: Top 5 APT 🀑 Moments of 2024. All that effort for initial access just to use sam save and vssadmin πŸ’€.
Tweet media one
0
0
7
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
9 months
RT @S0ufi4n3: The (Anti-)EDR Compendium.EDR functionality and bypasses in 2024, with focus on undetected shellcode loader. .
0
69
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
10 months
RT @eversinc33: Yesterday I finally finished part II of my anti rootkit evasion series, where I showcase some detections for driver "stompi….
0
112
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
10 months
Top 1% red teamer POV.
@eversinc33
eversinc33 🀍πŸ”ͺβ‹†ο½‘Λš ⋆
10 months
Allright, post your BRC4 skins if you got them
Tweet media one
0
0
14
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
11 months
How many of you are down the bottom?πŸ’€
Tweet media one
14
115
602
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
11 months
Havoc potentially implementing a marketplace! Massive opertunities for indipendant maldevs incoming?πŸ‘€.
@C5pider
5pider
11 months
test/demo? store added for a centralized way of installing plugins and scripts to extend the agent and client features.
1
2
18
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
11 months
Really cool write-up about North Korean actors abusing malicious NPM packages by my friend @0xpoppaea .
1
0
1
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
POV: You pushed C-00000291*.sys on Friday and see a meeting with HR and Legal on Monday
0
1
4
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
CrowdStrike legal team are gonna be pulling out all the tricks to dodge the incoming lawsuits
0
0
8
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
Great talk about MacOS logic bugs by my friend Max!.
@x33fcon
/ˈziːf-kΙ’n/
1 year
#x33fcon 2024 talks: Max K >
Tweet media one
0
0
3
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
RT @x33fcon: #Maldev - Packer Development is going strong in a #workshop at #x33fcon being taught by @ShitSecure and @eversinc33 - #redteam….
0
3
0
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
Just got linked this really awesome blog by @_vanvleet about Detection Data Models. This should be a valuable read for my Detection Engineering friends out there:.
0
0
10
@felixm_pw
𝙁 𝙀 𝙇 𝙄 𝙓 π™ˆ
1 year
@eversinc33 @C5pider Side note: Unlike Trevor, 5pider is actually a very pretty boy in real life fr 😳.
0
0
0