<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>TheShadowBrokers - malgregator</title>
    <link>https://malgregator.com/tags/theshadowbrokers/</link>
    <description>Recent content in TheShadowBrokers on malgregator</description>
    <generator>Hugo -- gohugo.io</generator>
    <language>en</language>
    <managingEditor>you@example.com</managingEditor>
    <webMaster>you@example.com</webMaster>
    <lastBuildDate>Fri, 09 Feb 2018 19:20:00 +0000</lastBuildDate>
    
        <atom:link href="https://malgregator.com/tags/theshadowbrokers/index.xml" rel="self" type="application/rss+xml" />
    
    <item>
      <title>InfoSec Week 6, 2018</title>
      <link>https://malgregator.com/post/week-06-2018/</link>
      <pubDate>Fri, 09 Feb 2018 19:20:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-06-2018/</guid>
      <description>A buffer overflow vulnerability in older Starcraft version enabled modders to create new maps, so Blizzard tasked reverse engineer to safely emulate the bug in the newer, fixed version.   The author says it all: &#39;This is a tale about what dedication to backward compatibility implies.&#39;</description>
    </item><item>
      <title>InfoSec Week 19, 2017</title>
      <link>https://malgregator.com/post/week-19-2017/</link>
      <pubDate>Tue, 16 May 2017 22:50:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-19-2017/</guid>
      <description>You have probably heard about the WannaCry/WannaCrypt/WannaWhatever worm spreading ransomware, because of the sensation created by parties profiting from the scare tactics. But also because it is using really good spreading technique - exploiting MS17-010 SMB vulnerability leaked from the NSA.   Some post-mortem analysis of the first version (with the killswich) and TheShadowBrokers blog are listed below. Crypto is working, so no trivial decrypter is probable, except if the keys are published.</description>
    </item><item>
      <title>InfoSec Week 15, 2017</title>
      <link>https://malgregator.com/post/week-15-2017/</link>
      <pubDate>Sun, 16 Apr 2017 23:40:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-15-2017/</guid>
      <description>Interesting blog about the generic unpacking of the Locky malware using Radare r2pipe, python and the Windows 7 VM.</description>
    </item><item>
      <title>InfoSec Week 14, 2017</title>
      <link>https://malgregator.com/post/week-14-2017/</link>
      <pubDate>Sun, 09 Apr 2017 19:15:00 +0000</pubDate>
      <author>you@example.com</author>
      <guid>https://malgregator.com/post/week-14-2017/</guid>
      <description>The Cisco Talos team has analyzed ROKRAT remote administration tool targeting South Koreans by spear phishing campaign.</description>
    </item>
  </channel>
</rss>