Windows Internals
-
Ferrox: Dissecting a Modern Rust-Based Infostealer
A deep technical analysis of Ferrox — a Windows stealer written in Rust featuring Hell's Gate syscalls, polymorphic builds, Chrome App-Bound Encryption bypass, and advanced anti-analysis techniques. Research conducted in isolated VM environment.
-
Building the First Open-Source DMA HWID Spoofer
How I reverse engineered Windows 11 kernel drivers with IDA Pro to build a DMA-based hardware ID spoofer in Rust — covering PatchGuard, DSE, SMBIOS, and 12 spoofing modules.