Explore tweets tagged as #Authenticode
@ericlaw
🎻 ➡️ BlueSky
3 days
Installers from @AdobeSecurity try to cheat Authenticode, which can result in additional blocks and security warnings: https://t.co/YaiJ0aFWJ7
0
1
3
@0x64616e
Daniel
1 year
Hash-based driver blocklists are insecure, because of how Authenticode signatures are computed. Nothing new, but not as well known as it should be.
2
15
112
@sabatage
SabatAge
6 months
Hackers turn ScreenConnect into malware using Authenticode stuffing
1
1
2
@blackorbird
blackorbird
4 months
Silver Fox APT Group altered a single byte in the unauthenticated timestamp field of the WatchDog Antimalware driver’s Microsoft Authenticode signature to bypassing hash-based blocklists. https://t.co/c8ztztIAIg
0
44
141
@ericlaw
🎻 ➡️ BlueSky
2 years
Authenticode shenanigans
0
0
0
@hack_videos
Hacking & PenTest Videos
3 years
Malware Analysis - 3CX SmoothOperator Authenticode Abuse #Hacking #PenTest https://t.co/h3wGLsHZyI
0
0
2
@SquiblydooBlog
Squiblydoo
3 years
To the person trying to give donations, but installs #signed #SolarMarker #infostealer: I'm sorry https://t.co/SXawGpFhst hasn't revoked the Authenticode cert I reported to them weeks ago. C2: 185.73.202.88 @JAMESWT_MHT VT: https://t.co/D2JaK9bzrN MB: https://t.co/OObU7T5kPp
1
16
35
@ESETresearch
ESET Research
3 years
@smolar_m The problem was that for these two affected binaries – shdloader.efi (CVE-2022-34302) and esdiags.efi (CVE-2022-34301) – flat SHA256 file hashes were added to the DBX update instead of their PE authenticode hashes. https://t.co/395MLtT5L6 2/5
1
4
21
@ochsenmeier
marc ochsenmeier
2 years
Next #pestudio to show the "program-name" hidden in the internal structure of the Authenticode signature #Malware #dfir #infosec https://t.co/1mTjTiZLFZ
0
4
24
@ericlaw
🎻 ➡️ BlueSky
2 years
On Authenticode Signing and EV Certificates
1
1
4
@ericlaw
🎻 ➡️ BlueSky
2 years
4096bits of shiny new security goodness. 3 year Authenticode certificate on a cute little HSM.
4
0
28
@Gotikozzy
Gotikozzy
2 years
Algumas pessoas me relataram esta mensagem do windows em AIDA POCKET: Ela pode aparecer porque o software não tem um authenticode, isso é um certificado digital emitido por uma entidade certificadora reconhecida pelo windows. Pq não temos? porque custa 200-300 dolares por ano
5
2
35
@dotnetfdn
.NET Foundation
3 years
📣.NET Foundation adopting new signing tool: Code Signing CLI tool supporting Authenticode, NuGet, VSIX, and ClickOnce 🤔Learn more https://t.co/VCJ8wF5q7j #dotnet
0
11
51
@ericlaw
🎻 ➡️ BlueSky
1 year
TIL: Microsoft Authenticode signs the JavaScript files inside the Purview Chrome extension.
1
1
16
@dotnetfdn
.NET Foundation
3 years
ICYMI 📣.NET Foundation adopting new signing tool: Code Signing CLI tool supporting Authenticode, NuGet, VSIX, and ClickOnce 🤔Learn more https://t.co/yftL1pRVJm #dotnet
0
5
35
@RecordedFuture
Recorded Future
2 years
SolarMarker malware continues to threaten sectors like education, healthcare, & SMEs. With a multi-tiered infrastructure active since 2021, it uses advanced techniques like Authenticode certificates & large zip files to evade detection. Read more: https://t.co/cW2tVk4soh
0
4
7
@CyberCakeX
HotCakeX ✡︎ סגול
2 years
Just released WDACConfig 0.3.3 ✅Create/Augment a policy by selecting Code Integrity logs using GUI ✅Calculate Authenticode and 1st page hashes of files ✅Improved CI log parsing for Xtreme visibility ✅WDAC Simulation improvements #CyberSecurity #Windows https://t.co/8rGnvxhgeN
1
13
58
@PaulomorgadoN
PauloMorgado.NET
9 months
> Authenticode in 2025 – Azure Trusted Signing https://t.co/si7MDdzLq0
0
1
0
@rh0main
Romain THOMAS
2 years
LIEF Rust bindings updates: documentation, PE authenticode, ... https://t.co/ZpzFpoBlhq
0
1
15