Pavel Yosifovich Profile Banner
Pavel Yosifovich Profile
Pavel Yosifovich

@zodiacon

12,753
Followers
942
Following
101
Media
2,342
Statuses

Developer, trainer, author and (sometimes) speaker. Founder at @trainsec academy.

Ney Jersey, USA
Joined October 2008
Don't wanna be here? Send us removal request.
Pinned Tweet
@zodiacon
Pavel Yosifovich
3 months
New from trainsec! Windows Master Developer learning path. Special 20% limited-time discount for launch!
2
9
61
@zodiacon
Pavel Yosifovich
8 months
Simple x86/x64 assembler and emulator:
Tweet media one
12
152
741
@zodiacon
Pavel Yosifovich
3 years
Registry editing/viewing as it was supposed to be:
Tweet media one
Tweet media two
Tweet media three
11
195
642
@zodiacon
Pavel Yosifovich
7 years
Memory Map Viewer including protected processes and actual data:
Tweet media one
Tweet media two
2
268
447
@zodiacon
Pavel Yosifovich
2 years
My new course is live on Pluralsight! The first in a new series on Windows Internals :)
12
100
414
@zodiacon
Pavel Yosifovich
7 years
First preview of ProcMonX - a Process Monitor-like tool that uses ETW ()
Tweet media one
Tweet media two
6
218
409
@zodiacon
Pavel Yosifovich
1 year
Finally decided on my next book to write!
15
85
389
@zodiacon
Pavel Yosifovich
5 years
The book is now complete! Enjoy :)
14
153
358
@zodiacon
Pavel Yosifovich
4 years
Book 1 complete!
10
99
325
@zodiacon
Pavel Yosifovich
4 years
Some people assume that I can get any job I want in my field of expertise. Unfortunately, that's not the case. In fact, I've been rejected more than accepted, sometimes without even talking to me. The important point is not to let it affect your self esteem - it's their loss! :)
18
40
310
@zodiacon
Pavel Yosifovich
1 year
Windows Internals: Day 3 has been published!
2
57
309
@zodiacon
Pavel Yosifovich
4 years
My interesting and/or useful tools all in one zip called "PavelTools" (temporary name?):
6
86
265
@zodiacon
Pavel Yosifovich
3 years
chapter 18 is done! The book is now complete! I'll take a couple of days to check for typos and such, and then publish on Amazon as well.
15
50
256
@zodiacon
Pavel Yosifovich
7 years
Injecting a DLL without a remote thread:
Tweet media one
1
185
239
@zodiacon
Pavel Yosifovich
1 year
I'm starting to publish courses on Podia. First one is up! Special price for this week!
16
56
241
@zodiacon
Pavel Yosifovich
3 years
Released another part of chapter 20 with ETW stuff... this chapter is already 85 pages long! There is so much to say about ETW, and even that chapter is not going to cover all of it :)
1
72
241
@zodiacon
Pavel Yosifovich
3 years
Happy birthday to me. Never liked my birthdays and this one is no different. I'm 0x32. Yes, it's better to count in hex.
42
3
234
@zodiacon
Pavel Yosifovich
4 years
Just added the first part of chapter 21 (who says I have to write in order?), which is also available as a *free* sample. The chapter is about one of my favorite technologies: COM
4
70
236
@zodiacon
Pavel Yosifovich
3 years
Chapter 20 is complete!
6
46
222
@zodiacon
Pavel Yosifovich
3 months
The book is complete! (at least this first edition)
7
57
230
@zodiacon
Pavel Yosifovich
3 years
Chapter 23 is published! Just one more chapter to go!
7
38
225
@zodiacon
Pavel Yosifovich
5 years
Yet another PE Viewer (version 2.0 from my end)
Tweet media one
3
76
219
@zodiacon
Pavel Yosifovich
1 year
My newest course on Pluralsight is live! Windows 11 Internals: Kernel Mechanisms | Pluralsight
4
32
216
@zodiacon
Pavel Yosifovich
4 years
I have started planning the second edition of "Windows Kernel Programming". Besides better coverage of existing topics, I plan to cover the following: lookaside lists, Registry, WPP tracing, the event log, intro to NDIS LW filters, intro to WFP. Any suggestions for other topics?
19
37
212
@zodiacon
Pavel Yosifovich
5 years
My obsession with kernel objects is not over yet:
Tweet media one
Tweet media two
Tweet media three
3
74
209
@zodiacon
Pavel Yosifovich
5 years
I'm writing a new book through Leanpub! It's a work in progress but already available for sale!
11
68
206
@zodiacon
Pavel Yosifovich
2 years
As "Windows Kernel Programming, second edition" is essentially done, any requests for a book that you think may be missing in the Windows low-level/security/API/etc. space?
33
31
204
@zodiacon
Pavel Yosifovich
6 years
New tool - dump kernel memory on a live system
Tweet media one
4
132
201
@zodiacon
Pavel Yosifovich
4 years
The first chapter of part 2 (chapter 13) is published! The current minimum price is low :)
11
61
199
@zodiacon
Pavel Yosifovich
7 years
First release of DriverMon - monitor any driver (at your own risk :) ):
Tweet media one
3
122
194
@zodiacon
Pavel Yosifovich
3 years
Windows Kernel Programming second edition is well underway!
11
45
194
@zodiacon
Pavel Yosifovich
2 years
I have not forgotten about the book! Chapter 11 is finally out!
6
48
194
@zodiacon
Pavel Yosifovich
3 years
Chapter 8 is ready!
3
31
192
@zodiacon
Pavel Yosifovich
2 years
After some delay, "Windows 11 Internals: Processes and Jobs" is live!
3
37
192
@zodiacon
Pavel Yosifovich
2 years
Chapter 14 is complete! Just one more chapter to go!
2
30
184
@zodiacon
Pavel Yosifovich
2 years
Chapter 13 has been published!
2
37
182
@zodiacon
Pavel Yosifovich
2 years
Rust slides from a course I've written a few years back. Some may find it useful.
1
44
179
@zodiacon
Pavel Yosifovich
11 days
Creating a Kernel Object type part 2:
Tweet media one
1
52
184
@zodiacon
Pavel Yosifovich
1 year
"Windows Internals: Day One" is now available on TrainSec!
3
50
169
@zodiacon
Pavel Yosifovich
1 year
Windows Internals 5-course bundle is now available! If you have not purchased individual courses, this might be useful for you.
3
35
170
@zodiacon
Pavel Yosifovich
1 year
I'd like to start posting short videos (up to 30 min) about various topics to my Youtube channel. ideas are welcome!
17
11
166
@zodiacon
Pavel Yosifovich
4 years
Chapter 21 is complete! (at least for now)
2
39
168
@zodiacon
Pavel Yosifovich
4 years
I've been very busy lately (more than usual, not complaining :) ), so writing has been progressing slowly... chapter 17 is ready (Registry)!
3
41
166
@zodiacon
Pavel Yosifovich
9 months
For those who are unaware, there are short videos on my Youtube channel you might enjoy
3
36
162
@zodiacon
Pavel Yosifovich
5 years
That was quicker than I anticipated... the book is now available in print from Amazon!
4
41
154
@zodiacon
Pavel Yosifovich
5 years
API Set Viewer - not yet complete, but might be fun for some :)
Tweet media one
5
52
155
@zodiacon
Pavel Yosifovich
3 years
Chapter 5 is now available!
0
31
154
@zodiacon
Pavel Yosifovich
1 year
Chapter 7 is ready!
0
34
154
@zodiacon
Pavel Yosifovich
1 year
Chapter 2 is ready! don't expect all chapters to arrive that fast :)
2
25
151
@zodiacon
Pavel Yosifovich
3 years
Chapter 10 is live!
2
37
146
@zodiacon
Pavel Yosifovich
6 months
Learn advanced analysis techniques 🔥🚀 from real-world malware and harness this knowledge to craft your own malware ⚔🦠 understanding attacker strategies. Empower yourself with both defensive and offensive cybersecurity skills in this immersive workshop led by world-renowned
7
58
147
@zodiacon
Pavel Yosifovich
4 years
That was a long chapter! Chapter 11 is out!
3
21
143
@zodiacon
Pavel Yosifovich
5 years
Chapter 6 has been published!
3
36
142
@zodiacon
Pavel Yosifovich
1 year
Things are getting worse on Win11... 566 threads in explorer!? CPU is of course zero.
Tweet media one
14
13
141
@zodiacon
Pavel Yosifovich
5 years
Chapter 5 is published!
2
38
138
@zodiacon
Pavel Yosifovich
5 years
Chapter 5 uploaded!
1
50
137
@zodiacon
Pavel Yosifovich
3 years
Chapter 7 is live!
2
28
137
@zodiacon
Pavel Yosifovich
3 months
Building an Application Verifier DLL:
Tweet media one
3
35
139
@zodiacon
Pavel Yosifovich
4 years
Stuck at home, my upcoming in-person trainings cancelled because of the coronavirus... what can I do? write tools and the current book... chapter 9 is live!
1
24
139
@zodiacon
Pavel Yosifovich
4 years
Due to popular demand, I'm announcing the next Windows Internals remote class to be held on July: 13, 15, 16, 20, 22. The topics, prices and other details are the same as the last one (just new dates) available here:
2
34
138
@zodiacon
Pavel Yosifovich
1 year
Chapter 3 is available!
1
24
139
@zodiacon
Pavel Yosifovich
17 days
Creating Kernel Object Type (Part 1):
Tweet media one
1
38
138
@zodiacon
Pavel Yosifovich
1 year
Chapter 4 is available! Even though I might expand on it later on.
3
26
133
@zodiacon
Pavel Yosifovich
4 years
How can I close a handle in another process?
Tweet media one
2
66
131