TippingPoint Digital Vaccine Laboratories
DID YOU KNOW... Most phishing sites are hosted on compromised Apache + PHP + MySQL servers located in the US. Our Digital Vaccine service includes filters specifically designed to prevent potential victims from reaching many of these malicious sites.

MindshaRE: IDA 5.4

This morning, much to my delight, Hex-Rays released their highly anticipated IDA 5.4. The new update includes some incredible features that continue to push IDA into ubiquity. Today, on MindshaRE, we will take a quick look at some of the new tech, and get you over to hex-rays.com to read up on the new version.MindshaRE is our weekly look at some simple rever ...


Line Noise

Well, it's been a while and it's a brand new year so we have a new installment of Line Noise for you boys and girls out keeping the internets real.


MindshaRE: WinDbg Extensions

WinDbg may not have the same level of community developed plugins as other debuggers. But for your day to day tasks, like vulnerability analysis, reverse engineering, or exploit development, it provides a plethora of helper functions for digging deep into the happenings of a process or OS. Most of which don't exist ...


Conficker/Downadup Ups the Ante

The security community is abuzz with reports that the Conficker/Downadup worm, previously observed to propagate via exploitation of the MS08-067 vulnerability, has infected as many as 8 million machines worldwide. It would appear that this particularly nasty piece of malware is spreading throughout vulnera ...


MindshaRE: Displaying Constants

Today on MindshaRE we are going to look at a few basic commands for changing the way constants are displayed in your IDA GUI. Knowing how to change the way information appears on your screen can be useful especially when dealing with tokenizers, and parsers.MindshaRE is our weekly look at some simple reverse engineering tips and tricks. The goal is to keep things small and discuss every day aspects of reversing. You can view previous entries here by going through our blog history. ...