<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>binaryanalys.is</title><description>Technical blog covering malware analysis, incident response, and security research.</description><link>https://binaryanalys.is/</link><item><title>Extending Timeline Downloader: Identity Forensics and the 9000-Event Limit</title><link>https://binaryanalys.is/posts/identities_timeline/</link><guid isPermaLink="true">https://binaryanalys.is/posts/identities_timeline/</guid><description>An update to the Defender Timeline Downloader tool, adding support for Identity (MDI) timelines. This post details the &quot;Skip 9000&quot; pagination algorithm, GZIP compression support, and UI improvements for error handling.</description><pubDate>Sat, 31 Jan 2026 10:00:00 GMT</pubDate></item><item><title>Defender Timeline Downloader: Extending Data Retention for Incident Response</title><link>https://binaryanalys.is/posts/defender_timeline/</link><guid isPermaLink="true">https://binaryanalys.is/posts/defender_timeline/</guid><description>A technical deep dive into overcoming Microsoft Defender for Endpoint&apos;s 30-day API retention limit. This post details the architecture and authentication mechanisms of a new Go-based tool that automates the extraction of the full six-month timeline data.</description><pubDate>Tue, 20 Jan 2026 16:38:11 GMT</pubDate></item><item><title>From Analysis to Tooling: Automating Amatera C2 Extraction</title><link>https://binaryanalys.is/posts/acreed_downloader/</link><guid isPermaLink="true">https://binaryanalys.is/posts/acreed_downloader/</guid><description>A technical update on Acreed analysis, detailing CAPE Sandbox contributions and a new unified static-dynamic extractor for Amatera.</description><pubDate>Wed, 31 Dec 2025 00:23:52 GMT</pubDate></item><item><title>Welcome to My Blog</title><link>https://binaryanalys.is/posts/welcome/</link><guid isPermaLink="true">https://binaryanalys.is/posts/welcome/</guid><description>Introduction to this technical blog covering malware analysis and incident response.</description><pubDate>Sun, 28 Dec 2025 00:00:00 GMT</pubDate></item><item><title>Unmasking Amadey 5</title><link>https://binaryanalys.is/posts/amadey/</link><guid isPermaLink="true">https://binaryanalys.is/posts/amadey/</guid><description>Deep dive into the Amadey 5 botnet client and its role in a sophisticated cross-platform malware campaign.</description><pubDate>Mon, 08 Dec 2025 12:00:00 GMT</pubDate></item><item><title>Acreed: On-Chain C2 Evolution</title><link>https://binaryanalys.is/posts/acreed/</link><guid isPermaLink="true">https://binaryanalys.is/posts/acreed/</guid><description>Deep dive into a sophisticated cross-platform malware campaign leveraging blockchain for C2 resilience.</description><pubDate>Thu, 16 Oct 2025 12:00:00 GMT</pubDate></item></channel></rss>