's Avatar

@alansguigna

14
Followers
4
Following
8
Posts
20.11.2024
Joined
Posts Following

Latest posts by @alansguigna

Post image

My upcoming webinar will demonstrate the intersection between AI, decompilation technologies, and JTAG-based dynamic analysis of Windows' internals and threats. The event is on Tuesday, July 15th at 10am Central Time. The registration page is here: attendee.gotowebinar.com/register/854...

10.06.2025 13:02 👍 0 🔁 0 💬 0 📌 0
Post image

Our VMCS Viewer/Editor visually displays all registers with bit names and tooltips that show the full descriptions. And you can modify any bit(s) you want, interactively or automated.

20.01.2025 13:20 👍 0 🔁 0 💬 0 📌 0
Preview
Debugging SMM with JTAG | ASSET InterTech With JTAG, it is possible to debug System Management Mode (SMM) in ways never before possible.

Almost magical: using JTAG to debug SMM: www.asset-intertech.com/resources/bl...

12.01.2025 19:06 👍 0 🔁 0 💬 0 📌 0
Post image

From the archives: my webinar video recording on debugging Hyper-V, the Secure Kernel, VBS, WDAC, and other Windows security features: attendee.gotowebinar.com/recording/35...

10.01.2025 18:49 👍 0 🔁 0 💬 0 📌 0
Post image

I had a blast doing the research for Part 2 of my series on using JTAG to debug Hypervisor-Managed Linear Address Translation (HLAT): www.asset-intertech.com/resources/bl.... In this blog, I used SourcePoint to pinpoint where in the boot flow HLAT is enabled on Alder Lake performance cores.

30.12.2024 20:20 👍 1 🔁 1 💬 0 📌 0
Post image

My webinar on Hyper-V, Secure Kernel, Defender, etc. debug is right around the corner: Thursday, Dec. 12th at 10:30am Central Time. Even if you can't attend the live session, registering will get you access to the recorded video; the registration link is: attendee.gotowebinar.com/register/751...

11.12.2024 22:34 👍 1 🔁 0 💬 0 📌 0
Debugging the Secure Kernel with WinDbg.

Debugging the Secure Kernel with WinDbg.

I'll be presenting a webinar on using JTAG to debug Windows Hyper-V, the Secure Kernel, WDAC, VBS Enclaves, and lots of other interesting security features. The event is on Thursday, December 12th at 10:30am USA Central Time. To attend, register here: attendee.gotowebinar.com/register/751...

21.11.2024 22:31 👍 0 🔁 0 💬 0 📌 0
Preview
JTAG debug of Windows Hyper-V / Secure Kernel with WinDbg and EXDI: Part 8 | ASSET InterTech This article uses the SourcePoint JTAG debugger to explore the very earliest part of the Windows boot flow, where the Secure Kernel is initialized in VTL 0 by the Windows and Hypervisor loaders.

If you want to break into the Secure Kernel in VTL0 versus VTL1, you should use the ENABLEJTAGBREAK bcdedit element as described here: www.asset-intertech.com/resources/bl... or via the bootmgfw.efi hack in the latest Window Canary Build as per here: www.asset-intertech.com/resources/bl....

20.11.2024 00:08 👍 0 🔁 0 💬 0 📌 0