<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
        <title>MalwareTech</title>
        <description>A mix of in-depth nuanced takes on current events and highly technical original research by Marcus Hutchins. I cover a wide array of topics such as vulnerability research, threat intelligence, national security, reverse engineering, and Windows internals.</description>
        <link>https://malwaretech.com/</link>
        <atom:link href="https://malwaretech.com/feed.xml" rel="self" type="application/rss+xml"/>
        <pubDate>Fri, 05 Jun 2026 22:12:51 +0000</pubDate>
        <lastBuildDate>Fri, 05 Jun 2026 22:12:51 +0000</lastBuildDate>
        
        <item>
            <title>ComoDoS - Exploiting a Remote Kernel Vulnerability in Comodo Internet Security</title>
            <description>Sometimes firewall stops attackers, sometimes attackers stop firewall. analyzing a zero-day vulnerability in Comodo Internet Security's Firewall driver.</description>
            <pubDate>Wed, 03 Jun 2026 10:13:00 +0000</pubDate>
            <link>https://malwaretech.com/2026/06/exploiting-a-remote-kernel-vulnerability-in-comodo-internet-security.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2026/06/exploiting-a-remote-kernel-vulnerability-in-comodo-internet-security.html</guid>
            
            <category>Offensive Security</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
            
            <category>Offensive Security</category>
            
            <category>Vulnerability Research</category>
            
            <category>Malware</category>
            
        </item>
        
        <item>
            <title>Passively Downloading Malware Payloads Via Image Caching</title>
            <description>Detailing an improved Cache Smuggling technique to turn 3rd party software into passive malware downloader.</description>
            <pubDate>Fri, 24 Oct 2025 19:45:00 +0000</pubDate>
            <link>https://malwaretech.com/2025/10/exif-smuggling.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2025/10/exif-smuggling.html</guid>
            
            <category>Offensive Security</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
            
            <category>Offensive Security</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
        </item>
        
        <item>
            <title>Every Reason Why I Hate AI and You Should Too</title>
            <description>maybe it's anti-innovation, maybe it's just avoiding hype. But one thing is clear, I'm completely done with hearing about AI.</description>
            <pubDate>Mon, 04 Aug 2025 08:12:00 +0000</pubDate>
            <link>https://malwaretech.com/2025/08/every-reason-why-i-hate-ai.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2025/08/every-reason-why-i-hate-ai.html</guid>
            
            <category>Opinions</category>
            
            <category>Artificial Intelligence</category>
            
            <category>Technology</category>
            
            
            <category>Opinions</category>
            
            <category>Artificial Intelligence</category>
            
            <category>Technology</category>
            
        </item>
        
        <item>
            <title>The US Needs A New Cybersecurity Strategy: More Offensive Cyber Operations Isn't It</title>
            <description>For a long time Chinese hackers have been operating in the grey area between espionage and warfare. The US has been struggling to defend its networks, but increasing offensive cyber operations in unlikely to help.</description>
            <pubDate>Fri, 28 Mar 2025 05:23:00 +0000</pubDate>
            <link>https://malwaretech.com/2025/03/the-us-needs-a-new-cybersecurity-strategy.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2025/03/the-us-needs-a-new-cybersecurity-strategy.html</guid>
            
            <category>Opinions</category>
            
            <category>Hacking</category>
            
            
            <category>Opinions</category>
            
            <category>Hacking</category>
            
        </item>
        
        <item>
            <title>CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6</title>
            <description>Performing a root cause analysis &amp; building proof-of-concept for CVE-2024-38063, a CVSS 9.8 Vulnerability In the Windows Kernel IPv6 Parser</description>
            <pubDate>Tue, 27 Aug 2024 06:46:00 +0000</pubDate>
            <link>https://malwaretech.com/2024/08/exploiting-CVE-2024-38063.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2024/08/exploiting-CVE-2024-38063.html</guid>
            
            <category>Vulnerability Research</category>
            
            <category>Windows Internals</category>
            
            
            <category>Vulnerability Research</category>
            
            <category>Windows Internals</category>
            
        </item>
        
        <item>
            <title>Bypassing EDRs With EDR-Preloading</title>
            <description>Evading user mode EDR hooks by hijacking the AppVerifier layer</description>
            <pubDate>Tue, 13 Feb 2024 05:22:00 +0000</pubDate>
            <link>https://malwaretech.com/2024/02/bypassing-edrs-with-edr-preload.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2024/02/bypassing-edrs-with-edr-preload.html</guid>
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
        </item>
        
        <item>
            <title>Silly EDR Bypasses and Where To Find Them</title>
            <description>Abusing exception handlers to hook and bypass user mode EDR hooks.</description>
            <pubDate>Wed, 27 Dec 2023 01:40:00 +0000</pubDate>
            <link>https://malwaretech.com/2023/12/silly-edr-bypasses-and-where-to-find-them.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2023/12/silly-edr-bypasses-and-where-to-find-them.html</guid>
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
        </item>
        
        <item>
            <title>An Introduction to Bypassing User Mode EDR Hooks</title>
            <description>Understanding the basics of user mode EDR hooking, common bypass techniques, and their limitations.</description>
            <pubDate>Mon, 25 Dec 2023 07:00:00 +0000</pubDate>
            <link>https://malwaretech.com/2023/12/an-introduction-to-bypassing-user-mode-edr-hooks.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2023/12/an-introduction-to-bypassing-user-mode-edr-hooks.html</guid>
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
            
            <category>Programming</category>
            
            <category>Windows Internals</category>
            
            <category>Malware</category>
            
        </item>
        
        <item>
            <title>It might Be Time to Rethink Phishing Awareness</title>
            <description>Phishing awareness can be a powerful security tool, or a complete disaster. It all hinges on how you implement it.</description>
            <pubDate>Wed, 20 Sep 2023 17:57:00 +0000</pubDate>
            <link>https://malwaretech.com/2023/09/it-might-be-time-to-rethink-phishing-awareness.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2023/09/it-might-be-time-to-rethink-phishing-awareness.html</guid>
            
            <category>Opinions</category>
            
            
            <category>Opinions</category>
            
        </item>
        
        <item>
            <title>A Realistic Look at Implications of ChatGPT for Cybercrime</title>
            <description>Analyzing ChatGPT's capabilities and various claims about how it will revolutionize cybercrime. </description>
            <pubDate>Tue, 21 Feb 2023 13:15:00 +0000</pubDate>
            <link>https://malwaretech.com/2023/02/a-realistic-look-at-chatgpt-cybercrime.html</link>
            <guid isPermaLink="true">https://malwaretech.com/2023/02/a-realistic-look-at-chatgpt-cybercrime.html</guid>
            
            <category>Malware</category>
            
            <category>Hacking</category>
            
            <category>Opinions</category>
            
            
            <category>Malware</category>
            
            <category>Hacking</category>
            
            <category>Opinions</category>
            
        </item>
        
    </channel>
</rss>