I've only spent a hot 5 min, but the level of obfuscation in the September version of Lockbit for Linux is marvelous
@buherator @cfgbot @pinkflawd That'd be quite cool, yes!
Especially with such massive graphs...
@buherator @cfgbot @pinkflawd I should probably make it easier to add datasets... I'm guessing a readme or template would do the trick.
@pinkflawd what genenerated that chart? I love it. looks like flow logic related?
@synlogic4242 @pinkflawd Looks like IDA pro graph mode to me. Pretty much the defacto disassembler that reverse engineers use for analyzing binaries.
@FarmerDenzel @synlogic4242 Indeed, IDAPro, sorry for late reply
@tmr232 @buherator @cfgbot Need samples? I got the hashes from here https://www.trendmicro.com/en_us/research/25/i/lockbit-5-targets-windows-linux-esxi.html link in the very bottom, and samples available on mwdb.cert.pl