Jonathan Peters's Picture

Hey, I’m Jonathan!

Or cod3nym. I am a detection engineer and threat researcher with a passion for reverse engineering. I specialize in .NET malware analysis and tooling for static analysis and deobfuscation.

Detecting Stealthy ConfuserEx with Yara

How to analyze ConfuserEx and write a Yara rule to detect obfuscated binaries that don't have the prominent watermark. #100DaysOfYARA