I had a great experience at #FTSCon on Monday. Both the speakers and the audience are such high caliber that an interesting discussion can be had at any point during the day. The information presented is useful for folks in any technical aspect of cybersecurity, not just DFIR folks. If you can, you should try to attend it next year.

Here are a few of the projects I enjoyed learning about this time around:

Thorium Malware Pipeline: https://github.com/cisagov/thorium

CTADL Static Taint Analysis Tool: https://github.com/sandialabs/ctadl

MinusOne, a deobfuscation engine for scripting languages: https://github.com/airbus-cert/minusone

EPIC Erebus for PCIe and DMA attack research: https://www.crowdsupply.com/securinghw/epic-erebus

GitHub - cisagov/thorium: A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale.

A scalable file analysis and data generation platform that allows users to easily orchestrate arbitrary docker/vm/shell tools at scale. - cisagov/thorium

GitHub
We had a great day yesterday at #FTSCon 2025! FTSCon Week continues with @joegrand's Hardware Hacking Basics + @volatility Malware & Memory Forensics training with @attrc, Michael Ligh & Dave Lassalle.
Registration for #FTSCon 2025 closes tomorrow! We are really excited to see everyone on Monday, October 20th!
We would like to thank @volexity for sponsoring the #FTSCon 2025 Evening Reception, which will be at VUE Rooftop DC this year! If you haven’t registered for FTSCon yet, there’s still time! Registration closes Sunday Oct 12; learn more + register here: https://volatilityfoundation.org/from-the-source-2025/
If you plan to attend the #FTSCon 2025 conference or training sessions, make sure to register before seats sell out! Registration closes this Sunday, October 12!

Coming up the week of October 20th: #FTSCon + TWO in-person #training opportunities!

Learn more here: https://volatilityfoundation.org/from-the-source-2025/

#dfir #memoryforensics #hardwarehacking

#FTSCon Speaker Spotlight: Michael Carson is presenting “Thorium” in the MAKER track.

See the full list of speakers + event info, including how to register, here: https://volatilityfoundation.org/from-the-source-2025/

#FTSCon Speaker Spotlight: Tom Lancaster (@tlansec) & Josh Duke are presenting “Mission Auth Possible: Passwordless Phishing” in the HUNTER track.

See the full list of speakers + event info, including how to register, here: https://volatilityfoundation.org/from-the-source-2025/

#FTSCon Speaker Spotlight: Denis Bueno is presenting “CTADL: Customizable Static Taint Analysis” in the MAKER track.

See the full list of speakers + event info, including how to register, here: https://volatilityfoundation.org/from-the-source-2025/

#FTSCon Speaker Spotlight: Daniel Gordon is presenting “When the AppleJeus GitHub is Worth the Squeeze: Citrine Sleet Investigation” in the HUNTER track.

See the full list of speakers + event info, including how to register, here: https://volatilityfoundation.org/from-the-source-2025/