![]() |
|
#12
|
||||
|
||||
|
Yes, releasing something (vulnerability/exploit) that can be used for malicious purposes by bad guys is always problematic, but IMHO expose a vulnerability (to the author first, then to the public after that the fix was released) can help developers and users to be better protected.
In VM detection case, EP_X0FF work around known tricks used by malware authors in real life, and malware authors also search what is new (Underground/Private forums). Do not expose these tricks lead to more victims. Collect and expose all VM detection tricks in open source project can help also all RCE Newbies to better learn and test binary analysis.
__________________
Computer Forensics |
| The Following User Gave Reputation+1 to Insid3Code For This Useful Post: | ||
user1 (04-03-2015) | ||
|
|
Similar Threads
|
||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| kernelmode.info (The End of Adventure) | Insid3Code | General Discussion | 10 | 04-01-2018 07:21 |
| DSEFix x64 (kernelmode.info) | Insid3Code | x64 OS | 1 | 05-15-2017 01:53 |
| [C/C++] UACME (kernelmode.info) | Insid3Code | Source Code | 0 | 03-29-2015 18:32 |
| [C/C++ ] VMDE (kernelmode.info) | Insid3Code | Source Code | 0 | 03-18-2015 20:47 |
| WinObjEx64 (kernelmode.info) | Insid3Code | Community Tools | 1 | 03-02-2015 00:04 |