Bojan Zdrnja Diaries
- Triaging suspicious files with pestudio
- Introduction to KAPE
- OWASP Top 10 Internet of Things 2018"
- Live memory analysis using Rekall
- Using AutorunsToWinEventLog
- [Wireshark-announce] Wireshark 2.5.1 is now available
- VMWARE Security Advisory: VMSA-2018-0008
- Using Yara rules with Volatility
- VMware Security Advisories -VMSA-2017-0014
- An Introduction to VolUtility
- PowerShell 5.1 for Windows 7 and later
- Back in Time Memory Forensics
- Windows Events log for IR/Forensics ,Part 2
- Windows Events log for IR/Forensics ,Part 1
- An Introduction to Mac memory forensics
- Honeyports, powershell script
- Kippo and dshield
- Extracting pcap from memory
- Some useful volatility plugins
- Mozilla Foundation Security Advisory 2015-112
- Using testssl.sh
- Nmap 6.49BETA1 released
- Blue Coat: SSL Visibility Appliance web based vulnerabilities
- Quantum Insert Attack
- Fileless Malware
- Malware targets home networks
- Microsoft EMET 5.2 is available
- Cryptowall ,again!
- Some Memory Forensic with Forensic Suite (Volatility plugins)
- VMware new and updated security advisories
- Cisco Security Advisory: SSL Padding Oracle On Downgraded Legacy Encryption (POODLE) Vulnerability
- Multiple Vulnerabilities in Cisco TelePresence Video Communication Server and Cisco Expressway Software
- October 2014 Critical Patch Update Released
- Microsoft Security Bulletin Advance Notification for October 2014
- PHP 5.3.29 is available, PHP 5.3 reaching end of life
- Threats to virtual environments
- Incident Response with Triage-ir
- An Introduction to RSA Netwitness Investigator
- "Power Worm" PowerShell based Malware
- Call for packets udp/137 broadcast
- Upgrading Your Android, Elevating My Malware
- Introduction to Memory Analysis with Mandiant Redline
- Apple iOS 7.1
- Sysinternals Process Explorer v16.02, Process Monitor v3.1, PSExec v2.1 and Sigcheck v2.03 update
- Mandiant Highlighter 2
- Log Parsing with Mandiant Highlighter (1)
- Cisco Small Business Devices backdoor fix
- Windows Autorun-3
- OpenSSL version 1.0.0l released
- Windows Autorun Part-2
- NTP reflection attack
- Windows Autorun Part-1
- Acquiring Memory Images with Dumpit