Portable Executable (PE) File – Linking
Static Linking Dynamic Linking
DOS Header Fields Values Explanation e_magic ‘MZ’ constant signature e_lfanew 0x40 offset of the PE Header PE Header Fields Values […]
PE file? Features of the PE structure When the binary is executed
Malware that uses PowerShell, the most prevalent use is the garden-variety stager: an executable or document macro that launches PowerShell […]
Capture the Flag (CTF) in computer security is an exercise in which “flags” are secretly hidden in purposefully-vulnerable programs or […]