Debugging the undebuggable – Part 1
A lot of people nowadays ask me how, as part of my job, I debug UEFI firmware images, initial boot code and boot transitions. This happened in particular actual after…
Windows Internals Special Edition is Online
Hello all! Finding a space between work and personal life is pretty hard nowadays… This post is just to let you all know that the bid for the special “signed”…
Alder Lake and the new Intel Features
3rd January 2022 Since I returned back home in Italy, aside for dealing with the crazy Covid situation, I had some time off to read some documents and deepen some…
Windows Internals Part 2 is here
Hello there!It has been a very long time since I last updated this blog (at least 3 years or more). Since my last post a lot of things have happened,…
Trusted Boot and BSides
Hello folks! Long time no updating my blog. The work, book, and a minimum of social life are killing my free time 🙂 So, here we go… … on last…
Recon 2017 Montreal, and some News…
Hi All! It has been a long time since I have not updated this blog. As usual a lot of things are going on, and the free time is always…
BlueHat, Airplanes and Intel Pt
In this week I have flew home, after spending few weeks in Seattle for the Blue Hat and some meeting with the team (and even for some fun in the…
ZeroAccess, an innovative malware
Hi All! Recently I stumbled upon the new ZeroAccess dropper. In the “KernelMode.info” community, on the 3rd January 2016, R136a1 has posted the new sample. The dropper is quite innovative.…
The next gen OS – Windows 10
Hi All! Before starting, I would like to say that, as usual, all the thoughts and info inside this post are my opinions and don’t belong to my company. Tomorrow…
NoSuchCon 2014 – Windows 8.1 Kernel Patch Protection
Hi All! After 6 months of inactivity I found the time to update my blog. Today I would like to speak about the last NoSuchCon Conference in Paris, where I…