WithSecureLabs/Kanvas: A simple-to-use IR (incident response) case management tool for tracking and documenting investigations.
https://github.com/WithSecureLabs/Kanvas
🎖@malwr
Yet Another ZIP Trick Writeup
A detailed walkthrough of the 'Yet Another ZIP Trick' challenge from HackArcana, covering schizophrenic ZIP file creation and binary exploitation techniques.
https://husseinmuhaisen.com/blog/yet-another-zip-trick-writeup/
🎖@malwr
Dor00tkit/BamExtensionTableHook: Proof-of-concept kernel driver that hijacks the Windows kernel extension table mechanism to preserve process notify callbacks even when attackers disable standard process notify callbacks.
https://github.com/Dor00tkit/BamExtensionTableHook
🎖@malwr
Microsoft Security Response Center
RedirectionGuard: Mitigating unsafe junction traversal in Windows
https://msrc.microsoft.com/blog/2025/06/redirectionguard-mitigating-unsafe-junction-traversal-in-windows/
🎖@malwr