Blue DeviL
bluedevil.bsky.social
Blue DeviL
@bluedevil.bsky.social
Binary Grinder
Finally some quality paper:
Brand new paper with Roxane Cohen, Robin David (both from @quarkslab.bsky.social ) and Florian Yger on obfuscation detection in binary code doi.org/10.1007/s411... We show that carefully selected features can be leveraged by graph neural networks to outperform classical solutions.
Identifying obfuscated code through graph-based semantic analysis of binary code - Applied Network Science
Protecting sensitive program content is a critical concern in various situations, ranging from legitimate use cases to unethical contexts. Obfuscation is one of the most used techniques to ensure such a protection. Consequently, attackers must first detect and characterize obfuscation before launching any attack against it. This paper investigates the problem of function-level obfuscation detection using graph-based approaches, comparing algorithms, from classical baselines to advanced techniques like Graph Neural Networks (GNN), on different feature choices. We consider various obfuscation types and obfuscators, resulting in two complex datasets. Our findings demonstrate that GNNs need meaningful features that capture aspects of function semantics to outperform baselines. Our approach shows satisfactory results, especially in a challenging 11-class classification task and in two practical binary analysis examples. It highlights how much obfuscation and optimization are intertwined in binary code and that a better comprehension of these two principles are fundamental in order to obtain better detection results.
doi.org
October 4, 2025 at 11:05 AM
IDA Pro v9.2 finally released after 6 beta versions.

Some Highlights

* Major improvements on golang
* Expanded TriCore chipset coverage
* More macro instructions for v850/rh850, better handling of relocatable objects for creating FLIRT signatures
* UI: Migration to Qt6.8 from 5.15
IDA 9.2 | Hex-Rays Docs
docs.hex-rays.com
September 9, 2025 at 8:48 AM
September 5, 2025 at 9:38 PM
A Blog Post from 2003: Opera releases “Bork” edition. Once upon a time Micro$oft's MSN portal behaves differently to Opera users and show them a broken page. Monopolization on the internet might have been passed from Micro$oft to Google, but one thing didn't change: our #privacy and our #freedom
Opera releases "Bork" edition
The Swedish Chef Goes After Microsoft Oslo, Norway – Feb 14, 2003 Two weeks ago it was revealed that Microsoft’s MSN portal targeted Opera users, by purposely providing them with a broken page. As a r...
press.opera.com
August 27, 2025 at 10:58 AM
A lightweight mac status bar development port monitor

github.com/kagehq/port-...

CC: dantelex @ bird site

#foss #rust #macos #tool
GitHub - kagehq/port-kill: A lightweight mac status bar development port monitor
A lightweight mac status bar development port monitor - kagehq/port-kill
github.com
August 27, 2025 at 10:44 AM
InnoExtractor 2026 has been released.

Some highlights:
* Added full support to open and extract files of installers compiled with new Inno Setup version 6.5.0 and 6.5.1

www.havysoft.cl/innoextracto...

#inno #innosetup #innoextractor #reverseengineering #decompiler
Havysoft » InnoExtractor
www.havysoft.cl
August 26, 2025 at 6:19 AM
Apple released a security update. According to Apple Support an out-of-bounds write issue is exploiting for individuals. Update and stay safe.

support.apple.com/en-us/124925

#CVE-2025-43300 #apple #vulnerability #exploitation #cve
About the security content of iOS 18.6.2 and iPadOS 18.6.2 - Apple Support
This document describes the security content of iOS 18.6.2 and iPadOS 18.6.2.
support.apple.com
August 20, 2025 at 7:26 PM
SweetScape released a new version of notorious 010Editor with the version 16.0

www.sweetscape.com/010editor/la...

* ARM64 Support for MacOS
* Still no ARM64 Support for Linux :/

#hexeditor #editor #forensics #linux #macos
010 Editor - Latest Version Download
www.sweetscape.com
August 6, 2025 at 5:53 AM
To bypass United Kingdom Online Safety Act, you can use this awesome app:

use-their-id.com

Here is the API
use-their-id.com/postcode/SW1...

CC: Tim Je

#usetheirid #privacy #privacymatters
Use Their ID
use-their-id.com
August 3, 2025 at 5:37 PM
Never thought exponents as time:

Understanding Exponents (Why does 0^0 = 1?)

betterexplained.com/articles/und...

#math #arithmetic #exponentiation #mathematics #betterexplained
Understanding Exponents (Why does 0^0 = 1?) – BetterExplained
betterexplained.com
July 16, 2025 at 4:49 PM
Why should I code with #Malbolge when we have #JavaScript?

#devhumor #phun
July 8, 2025 at 7:48 PM
Notorious debugger #x64dbg made a new release. The blog post about this release includes very good details:

* Bitfield support
* Anon types
* Half-float support
* AVX-512 support
July 1, 2025 at 11:07 AM
"Witch Club Satan" has dropped a new single with an official video; EPIC! Not for the fainted hearts; but actually for everyone.

Witch Club Satan - You Wildflower

www.youtube.com/watch?v=Wvgi...

#black #blackmetal #FemaleVocal #NorwegianMetal #single #music
Witch Club Satan - You Wildflower (Official Music Video)
YouTube video by Witch Club Satan
www.youtube.com
June 25, 2025 at 11:45 AM
New #Single from #Katatonia is dropped:

KATATONIA - Wind of no Change
www.youtube.com/watch?v=Z87l...

#metal #death #doom
KATATONIA - Wind of no Change (Official Video) | Napalm Records
YouTube video by Napalm Records
www.youtube.com
June 9, 2025 at 2:36 PM
[CVE-2025-37752] Two Bytes Of Madness: Pwning The Linux Kernel With A 0x0000 Written 262636 Bytes Out-Of-Bounds

syst3mfailure.io/two-bytes-of...

#pwn #linux #kernel #cve
[CVE-2025-37752] Two Bytes Of Madness: Pwning The Linux Kernel With A 0x0000 Written 262636 Bytes Out-Of-Bounds
CVE-2025-37752 is an Array-Out-Of-Bounds vulnerability in the Linux network packet scheduler, specifically in the SFQ queuing discipline. An invalid SFQ limit and a series of interactions between SFQ ...
syst3mfailure.io
June 2, 2025 at 2:18 PM
#TSRh is down...

Every warez scene forum meets this end eventually.

#warez #forum #down #keygen
June 2, 2025 at 7:24 AM