@InvokeReversing

Empowering you to take on today's toughest threats.

Joined January 2022
Join us at 1PM EST today for a special Friday stream on detection engineering! twitch.tv/InvokeReversing
1
3
293
Invoke RE retweeted
If you are doing #FlareOn this year and want to rank yourself against other 𝗵𝘂𝗺𝗮𝗻𝘀 we made an unofficial leaderboard. Honour system only, but it's something.
3
25
1
152
9,775
We've uploaded our stream from last Tuesday where we analyzed a Golang loader that uses vulnerable drivers to terminate EDR and antivirus processes before dropping Formbook. Enjoy!
2
10
52
1,955
Join us at 2PM EST today to look at a mystery Golang sample pulling a BYOVD driver from GitHub 🕵️‍♂️ twitch.tv/invokereversing
1
4
11
556
Invoke RE retweeted
Part of Recon 2026 video have been released recon.cx/2027/en/index.html on our youtube channel youtube.com/@reconmtl we are still waiting for confirmation from our speakers to release the rest.
1
27
73
7,675
We've uploaded our live stream from August 18th where we broke Pyarmor with Frida to recover JavaScript malware payloads, enjoy!
1
18
89
3,351
Had some fun with DeepSeek-V4-Flash-0731 while at the airport!
16
59
6
398
50,524
We've uploaded the materials from our 3 hour workshop presented at REcon 2026 titled "C++ Symbol and Type Recovery in Binary Ninja", you can find them here: github.com/Invoke-RE/worksho… If you're interested in learning advanced malware analysis techniques, check out our new Advanced Malware Binary Triage course here: training.invokere.com/course…
39
152
6,220
Invoke RE retweeted
Today I am releasing the Binary Ninja Diffing plugin. It features Control flow graph, disassembly, LLIL, MLIL and HLIL diffing views. You can Save and restore diffs from the BNDB or json file. Supports porting function names from one binary to the other
9
40
3
436
18,240
We've uploaded our live stream from last Tuesday, where we analyzed a Rust loader sample with IDA Pro and RIFT that executes a Python loader, Donut loader shellcode and a Golang RAT. Enjoy!
2
18
167
6,455
Interested in virtual machine hardening? Invoke RE's intern Adam Krogsøe has been working on hardening techniques for the CAPEv2 sandbox, starting with the spoofing the PCI vendor ID that can be easily fingerprinted in QEMU. Check out his contribution here: github.com/kevoreilly/CAPEv2…
7
47
3,030
I have been seeing reverse engineering / malware analysis courses that cost thousands of dollars. Do you know you can actually learn that for free, right? There are also a bunch of other courses out there that are way cheaper or even free: - courses.0ffset.net/ - malwareanalysis-for-hedgehog… - invokere.com/ - github.com/RPISEC/MBE - guyinatuxedo.github.io/index… - openanalysis.net/ - p.ost2.fyi/ - taomm.org/
22
173
9
835
142,091