Along with RECon, the single most important date in the reverse engineering / security research community is the annual Blackhat/DefCon event in Las Vegas. Most of our industry is there in one form or the other, and aside from the conference talks, parties and award ceremonies, there’s also a good amount of technical discussions (in bars or elsewhere) that takes place.
This year, a good number of researchers/developers from the zynamics Team will be present in Las Vegas — alphabetically, the list is:
- Ero Carrera
- Thomas Dullien/Halvar Flake
- Vincenzo Iozzo
- Tim Kornau
So, if you wish meet any of the team to discuss reverse engineering, our technologies, our research, or the performance of the Spanish or German football team at the last world cup, do not hesitate to drop an email to email@example.com — Vegas is always chaotic, and scheduling a meeting will minimize stress for everyone that is involved.
Specifically, the following topics are specifically worth meeting over:
- Chat with Ero over our unpacking engine (just presented at RECon) — and how it fits into the larger scheme of things (e.g. VxClass)
- Meet with Tim or Vincenzo to discuss automated gadget-finding for ROP, or anything involving the ARM/REIL translations
- Meet with Thomas/Halvar to discuss VxClass, automated malware clustering, automated generation of “smart” malware signatures etc.
Aside from this, if you are interested in …
- … boosting your reverse engineering performance by porting symbols from FOSS software into your closed-source disassemblies (BinDiff)
- … becoming faster at finding bugs by leveraging differential debugging, the REIL intermediate language and static analysis frameworks (BinNavi)
- … enhancing team-based reverse engineering by pooling accumulated knowledge and sharing information (BinCrowd)
- … automatically correlating and clustering malware and forensically obtained memory dumps, and automatically deriving detection mechanisms (VxClass)
then do not hesitate to drop us mail — we’ll gladly show/explain what our tools/technologies can do.
See you there !