<?xml version="1.0"?>
<rss version="2.0">
    <channel>
        <title>OpenRCE: Blog</title>
        <link>http://www.openrce.org/rss/feeds/blog</link>
        <description>OpenRCE: The Open Reverse Code Engineering Community</description>
                <item>
            <title>Toorcon Decompression and Tool Releases</title>
                            <pubDate>Thu, 05 Oct 2006 04:55:03 -0500</pubDate>
                                        <link>https://www.openrce.org/blog/view/481/Toorcon_Decompression_and_Tool_Releases</link>
                                        <author>AlanBradley &lt;email-suppressed@example.com&gt;</author>
                                                    <description>I just recently gave &lt;a href=&quot;http://www.openrce.org/repositories/users/AlanBradley/Tron-TC8.pdf&quot;&gt;a talk&lt;/a&gt; at &lt;a href=&quot;http://www.toorcon.org/2006/conference.html&quot;&gt;Toorcon 8&lt;/a&gt; on a couple of tools recently posted to OpenRCE. &lt;a href=&quot;http://www.openrce.org/downloads/details/233/ADHD&quot;&gt;ADHD&lt;/a&gt; is a kernel driver that obscures some of the ways a debugger can be detected in Userland. &lt;a href=&quot;http://www.openrce.org/downloads/details/234/Tron&quot;&gt;Tron&lt;/a&gt; is a kernel driver that you can load into a WinXP system in order to create hidden views of arbitrary userland memory. &lt;a href=&quot;http://www.openrce.org/downloads/details/235/CLU&quot;&gt;CLU&lt;/a&gt; is an IDA plugin that works with Tron to allow you to set invisible software breakpoints. Finally, &lt;a href=&quot;http://www.openrce.org/repositories/users/AlanBradley/DrvrLdr.Tron.zip&quot;&gt;DrvrLdr.Tron &lt;/a&gt; is a command-line driver loader that can be used to load and unload Tron, ADHD and other kernel drivers.&lt;br /&gt;
&lt;br /&gt;
However, the catch was that this was no ordinary talk. Driven by DMCA concerns, and also a desire to do an interesting &amp;quot;proof of concept&amp;quot; on anonymity, the entire talk was &lt;a href=&quot;http://wiki.noreply.org/noreply/TheOnionRouter/AnonymousPublicSpeech&quot;&gt;given anonymously&lt;/a&gt; using Ventrilo, VNC, a voice disguiser, Tor, and EVDO.&lt;br /&gt;
&lt;br /&gt;
We had concerns over the feasibility of getting the whole thing to run over &lt;a href=&quot;http://en.wikipedia.org/wiki/EVDO&quot;&gt;EVDO&lt;/a&gt;. However, it turns out the EVDO *did* work, which means it should be possible to give this type of talk anywhere. Hey, maybe I can even go on a virtual world tour. That might be nice. Maybe we can drum up some press attention.&lt;br /&gt;
&lt;br /&gt;
Anyways, hopefully you enjoy these tools! I should be doing an article on some use cases of them in the coming weeks.</description>
                    </item>
            </channel>
</rss>
