Comment by Veliladon

3 months ago

> The mod injects only in the process Winlogon.exe, and exits once the handle of the memory area is closed. It does not hook any functions.

Yep. Sure. Going to let a Russian utility fuck with winlogon.exe. Excellent idea.

Yeah, it would be so much better if it was American-made, because as everyone knows there are no corrupt people in the US and every person of Russian descent is a spy for their motherland's government (:

  • Yes, it would be better if it was American made, because the US government has lesser capability to compell otherwise independent developers to do their bidding.

    • > US government has lesser capability to compell otherwise independent developers to do their bidding.

      Are you sure about this? The US, like most countries with extensive intelligence capabilities, does not have a good track record of convincing their citizens of doing shady things [1].

      1. https://en.wikipedia.org/wiki/COINTELPRO

    • You missed my point, which is that all governments exist to oppress by design, it's literally what governments are, they are businesses that monopolize violence. Some people, esp. people of the Western world are too arrogant to admit it. Personally, I would honestly rather trust someone who is aware of that fact over someone who isn't.

      4 replies →

That was my first concern too, but it does look like you can build the binary from source:

https://github.com/ramensoftware/windhawk

And the author is a security/malware researcher. Yeah, you might want to pass.

Both the mod's author and Windhawk's autor live in Israel, if it makes you feel more safe.

>fuck with winlogon.exe. Excellent idea.

That's mostly irrelevant because all the thing baddies want to do with your computer, they can do without touching winlogon or even getting admin.

https://xkcd.com/1200/