Go to Support Home Page
Go to Online Knowledgebase

  #1  
Old 08-31-2007, 06:18 PM
djames's Avatar
djames djames is offline
Moderator
Subscriber
Moderator
 
Join Date: Jun 2007
Posts: 1,553
Lightbulb ThreatFire Blog

A new blog where some of our experts will post.

Kurt Baumgartner, our resident threat expert, kicked off the first post and there will be much more interesting information on its way, some techie, some not so low level.

This blog might give you some insight about the malicious behaviors ThreatFire is looking to detect on your system.
Other security-related issues and information that interest the team will be posted too.

Enjoy!

http://threatfire.blogspot.com/

Last edited by kbaumgartner; 12-14-2007 at 11:13 PM.
Reply With Quote
  #2  
Old 09-04-2007, 08:09 PM
djames's Avatar
djames djames is offline
Moderator
Subscriber
Moderator
 
Join Date: Jun 2007
Posts: 1,553
Default Buffer Overflow exploit prevention jpg

Threatfire is preventing exploitation of the yahoo webcam viewer vulnerability in this shot. .
Attached Images
File Type: jpg BoF_prevent.JPG (62.9 KB, 107 views)

Last edited by djames; 11-27-2007 at 11:24 PM.
Reply With Quote
  #3  
Old 02-13-2008, 09:22 PM
djames's Avatar
djames djames is offline
Moderator
Subscriber
Moderator
 
Join Date: Jun 2007
Posts: 1,553
Thumbs up

http://blog.threatfire.com/

Preventing the RealPlayer 0 day for RealPlayer 11.x vulnerability
Reply With Quote
  #4  
Old 03-04-2008, 05:44 PM
djames's Avatar
djames djames is offline
Moderator
Subscriber
Moderator
 
Join Date: Jun 2007
Posts: 1,553
Thumbs up MonaRonaDona Mystery Solved

Nice post!

http://blog.threatfire.com/
Reply With Quote
  #5  
Old 03-27-2008, 07:13 AM
Alao25 Alao25 is offline
Junior Member
 
Join Date: Mar 2008
Posts: 5
Default

Quote:
Originally Posted by djames View Post
Really nice post,
Reply With Quote
  #6  
Old 05-20-2008, 04:47 PM
kbaumgartner's Avatar
kbaumgartner kbaumgartner is offline
Super Moderator
Subscriber
 
Join Date: Oct 2007
Location: Boulder, CO
Posts: 19
Default IDC decrypt script

Our new and highly talented malware analyst Matt Boney presents an example idc script that he recently wrote when digging through encrypted strings in a protected PE file. It decrypts the strings and reveals data the malware authors intended to be hidden. The script is attached.

Check out the related blog post at Keeping strings real - Part II.
Attached Files
File Type: zip 186plus2_decipher.zip (704 Bytes, 8 views)
__________________
Check out the ThreatFire Research Blog...
http://blog.threatfire.com

Last edited by kbaumgartner; 05-20-2008 at 05:20 PM.
Reply With Quote
  #7  
Old 05-20-2008, 05:00 PM
RavenMacDaddy's Avatar
RavenMacDaddy RavenMacDaddy is offline
Advisor
Subscriber
 
Join Date: Feb 2007
Posts: 297
Default

Sounds great! Good to see this takes us even further with the effectivity of your products.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT. The time now is 08:42 PM.