Live Stream VOD: Night Sky Ransomware mbedtls Library Reversing (Patreon)
Published:
2022-01-15 23:17:42
Imported:
2022-12
Flagged
Content
Twitch live stream VOD. We begin reverse engineering NightSky ransomware and identify a statically compiled mbedtls library. We build mbedtls and use the .pdb file to quickly import the library structs.
Sample available on Malshare:
8c1a72991fb04dc3a8cf89605fb85150ef0e742472a0c58b8fa942a1f04877b0
Lab Notes: