I am currently looking for cool & interesting university or college course. If you have any information, feel free to contact me..


Archive for March, 2008

18Mar

New attack released - Windows has been vulnerable for 8 years.

Articles, SandMan, Security, Windows

In November 2007 at PacSec'07, Tokyo, Japan, Nicolas Ruff and I (Matthieu Suiche) presented how to create a readable physical memory dump from the undocumented Microsoft hibernation file.

Last month, I published an open-source public version of this project called SandMan Framework. This framework allows manipulating the hibernation file for offensics (malicious) or forensics uses.

Today, I […]

04Mar

Physical memory access is fashion…

Blogging, Windows

These last weeks several proof of concept were published about physical memory access.
The first one (21 February 2008) was from Princeton university who published a very buzzed proof of concept in video.. This one allows to read the physical memory in a limited time.
The second one was SandMan which is hosted by myself. This one […]