DEV Community

Pastukhov Aleksey profile picture

Pastukhov Aleksey

Threat intelligence in Windows OS Windows internals & security mechanism researcher

Deep inside the COM: Reading Windows ROT Without Asking Permission. Detective story

Deep inside the COM: Reading Windows ROT Without Asking Permission. Detective story

Comments
4 min read
Reverse Engineering rpcss.dll: Hunting for the ROT's Hidden Structure

Reverse Engineering rpcss.dll: Hunting for the ROT's Hidden Structure

Comments
4 min read
KESTREL: AD enumeration that doesn't announce itself

KESTREL: AD enumeration that doesn't announce itself

Comments
3 min read
NetEnum: legitimate API scanning tool

NetEnum: legitimate API scanning tool

Comments
3 min read
Part 3: putting it al l together

Part 3: putting it al l together

Comments
1 min read
Part 2: How It Works Under the Hood

Part 2: How It Works Under the Hood

Comments
2 min read
Inside the Running Object Table: COM's Hidden Registry of Live Objects

Inside the Running Object Table: COM's Hidden Registry of Live Objects

Comments
2 min read
loading...