Fine-tuned Windows scenarios: debugger-assisted recording with WinDbg

16 Jun 2022 by Mathieu - Tutorial - Reverse Engineering REVEN Scenario recording WinDbg VMI Malware

In this article we present a new way to leverage WinDbg to interactively control the VM during the recording of a scenario: this enables the user to more intuitively get to the point of interest and check conditions to control the execution, resulting in a more precise recording. You can...