Did you know you could write entire #csharp programs just by using the "await" keyword?
OK, well not really, but I spent some weekends developing AwaitFuscator: A (dumb) #obfuscator that turns your #dotnet program into nothing but "await" expressions!
👉blog.washi.dev/posts/awaitfu…
If you are doing #FlareOn this year and want to rank yourself against other 𝗵𝘂𝗺𝗮𝗻𝘀 we made an unofficial leaderboard. Honour system only, but it's something.
I gave Opus one prompt and all nine Flare-On 12 challenges. It solved them all in 4h 28m. No IDA, no decompiler, no debugger, and it never ran a single binary. Python with capstone, unicorn and z3.
More info 👇
#FlareOn#ReverseEngineering#CTF
The timer for #flareon13 started on flare-on.com
I will likely participate, but not sure I will try to speed-solve it like previous years.
Last year was already somewhat pay-to-win. I expect this year to be worse. I don't see any fun in competing against unlimited AI
🧩 Video 2 in the .NET obfuscation series is now public!
piped.video/6rcUxmRGhlg
In this video we'll explore the Global Module Constructor (.cctor) to analyze the impact of anti-debugging and anti-tamper protections.
#AsmResolver 6.0.0 is finally here!
- Support for more PE architectures
- Supercharged .NET multi-assembly processing
- Compatible with NixOS and legacy .NET FX 3.5
- Many API improvements
- Massive performance boosts
👉github.com/Washi1337/AsmReso…#pe#dotnet#reversing#malware
The PC port of Twilight Princess is near, its being shown playable, and was showcased on stream. It might just be days away from its final release.
Twilight Princes Dusk is a native port for PC/Android/Linux/Mac and iOS. We are so close!
You can call me a "nerd" that's fine. Making a mistake is also fine!
Unnecessary sensationalism is not fine. You have a big following. I'm asking you to be responsible with it.
ILSpy does not and never has owned a WordPress. See github.com/icsharpcode/ILSpy…
Maybe consider verifying your "news" before spreading false information and fear mongering.
UPDATE: our work won a best paper award 🏆 @NDSSSymposium! Check out our work on establishing the first measurements for understanding how LLMs are changing reverse engineering.
Shout out to the whole team from @SCAI_ASU, @EURECOM, and @UniPadova
Do LLMs actually help hackers reverse engineer and understand the software they want to exploit?
We ran the first fine-grained human study of LLMs + reverse engineering.
To appear at NDSS 2026.
Interested? Some quick findings in 🧵👇
Paper: zionbasque.com/files/papers/…
Over the past couple years, I have come to know the #dotnet platform pretty well, from a developer's and a #reversing standpoint.
I can’t always say the same the #infosec community.
Today, I decided to rant a little (or maybe a lot 🙃)
👉 blog.washi.dev/posts/misconc…
Pwndbg 2026.02.18 is out!
We visualize branches in nearpc, sync ur decompiler (IDA/Binja/Ghidra) via decomp2dbg, annotate stack vars from dbgsyms/decomp, added new cmds for tracing kernel allocs/frees, dump task info: github.com/pwndbg/pwndbg/rel…
Sponsor us: github.com/sponsors/pwndbg/
Maybe noob question. Why do we care whether malware was created with help of AI?
I see people talking about it like it matters a lot, but for us defenders, it's still just code that you can reverse/write rules for, no? Besides, it's not as if most malware wasn't slop already..🙃
Do LLMs actually help hackers reverse engineer and understand the software they want to exploit?
We ran the first fine-grained human study of LLMs + reverse engineering.
To appear at NDSS 2026.
Interested? Some quick findings in 🧵👇
Paper: zionbasque.com/files/papers/…