[UD2] Undifined but simple anti-decompiling instruction

TL;DR UD2 is an x86 assembly instruction that simulates an invalid opcode and mostly used for testing purposes, but not only. Indeed it can be used by malware authors for example to disturbe and slow down the reverse engineering process of it’s malware. UD2 instruction UD2 is an x86 assembly mnemonic and stands for Undefined instruction. Only used for testing purposes, this instruction simulates the presence of an invalid opcode in the code and when executed raises an Invalid opcode exception.
Read full post gblog_arrow_right

Le quiproquo NTLM

TL;DR LM-hash : Ancien moyen de stocker le mot de passe utilisateur en local utilisé par LAN Manager Hash NTLM NT-Hash : Utilisé par NT LAN Manager qui remplace LAN Manager pour stocker le mot de passe utilisateur en local NTLM (a.k.a Net-NTLM) : Protocol d’authentification unique (SSO), basé sur le principe de défi-réponse. NTLMv1 (a.k.a Net-NTLMv1) : Désigne la première version du protocol d’authentification NTLM.
Read full post gblog_arrow_right