Reverse Engineering 2
- Fake recruitment, remote JSON payloads, and function-inliner malware (analysis) May 19, 2026 Clone-and-run recruitment lures that pull obfuscated Node.js from jsonkeeper-style hosts: IOCs, SHA-256 hashes, a small fetch script, function-inliner teardown, MITRE mappings with links, and what to do if you already ran the artifact.
- Unlocking the Vault: A Deep Dive into macOS ARM64 Trial Enforcement and Binary Patching Feb 1, 2026 Introduction In the course of analyzing a decompiled macOS productivity application—a calendar and meeting alert utility with a time-limited …