<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Sealk is the new Klaes</title><description>Research notes on malware analysis, reverse engineering, DFIR and offensive security.</description><link>https://sealkisnotklaes.fr/</link><language>en</language><item><title>User consent bypass by browser extension : an adware case study</title><link>https://sealkisnotklaes.fr/articles/web-extension-abusing-chrome/</link><guid isPermaLink="true">https://sealkisnotklaes.fr/articles/web-extension-abusing-chrome/</guid><description>This article provides a comprehensive analysis of a little-documented threat, which is a Chrome extension distributed by a powershell script. Its objective is not to compromise the workstation, but to monetize user traffic...</description><pubDate>Mon, 01 Dec 2025 00:00:00 GMT</pubDate></item><item><title>WinAPI Hooking</title><link>https://sealkisnotklaes.fr/articles/winapi-hooking-used-by-malware/</link><guid isPermaLink="true">https://sealkisnotklaes.fr/articles/winapi-hooking-used-by-malware/</guid><description>This article focuses on the study of injection for hooking Windows API functions. We&apos;ll explore what hooking is, how it works and how it&apos;s implemented...</description><pubDate>Mon, 09 Sep 2024 00:00:00 GMT</pubDate></item><item><title>Brute Ratel BRC4</title><link>https://sealkisnotklaes.fr/articles/brute-ratel-brc4/</link><guid isPermaLink="true">https://sealkisnotklaes.fr/articles/brute-ratel-brc4/</guid><description>This article will not be a detailed malware analysis report on the features of Brute Ratel (BRC4), but rather a study focusing on several samples of the same version...</description><pubDate>Tue, 10 Oct 2023 00:00:00 GMT</pubDate></item><item><title>PEB Parsing &amp; API Hashing</title><link>https://sealkisnotklaes.fr/articles/technique-API-hashing/</link><guid isPermaLink="true">https://sealkisnotklaes.fr/articles/technique-API-hashing/</guid><description>In this article we will look at how the API hashing technique works and how to defeat it...</description><pubDate>Fri, 06 Jan 2023 00:00:00 GMT</pubDate></item><item><title>Kardon</title><link>https://sealkisnotklaes.fr/articles/analysis-kardon/</link><guid isPermaLink="true">https://sealkisnotklaes.fr/articles/analysis-kardon/</guid><description>This is my first article on malware analysis. The sample analyzed is Kardon...</description><pubDate>Mon, 22 Nov 2021 00:00:00 GMT</pubDate></item></channel></rss>