Guy · @phlogiston
25 followers · 465 posts · Server mastodon.nz

How I hade code repos where it's impossible to reproduce a build.

#deadcode

Last updated 1 year ago

You can fool disassemblers like to reveal useless in its decompilation section by just returning the variables.

#ghidra #deadcode

Last updated 2 years ago

For example. We can test for six or so conditions to detect a sandbox for . Including but not limited to, vCPU threads, physical memory, uptime, whether or not it’s domain joined, unique files created on disk, etc. Since we can check for a sandbox after X amount of seconds plus random jitter, we can create a asynchronous process controlled by a or , that periodically returns control flow to the dispatcher. Then returns to main()

#sandboxevasion #junkcode #deadcode #mutex #thread #fiber #semaphore

Last updated 2 years ago