你可能會喜歡
Part 1: SSH Tunnels Deep Dive - Local Port Forwarding (+labs) Most people only use SSH for logging into a remote machine, and they never look beyond that. But SSH can do far more than provide a secure shell. One of its most powerful but overlooked features is tunneling, the…
Malware development Basics - How EDRs work, Effective techniques to circumvent them and How to compensate for EDR protection gaps.. conference.hitb.org/hitbsecconf202…
I presented on WinGet Configuration at Microsoft Ignite. For those of you working on WinGet Configuration files, you might be interested in an experimental tool we're working on. ignite.microsoft.com/sessions/BRK335 `winget install wingetstudio` github.com/microsoft/wing… Documentation…
You don't necessarily need networking to connect to your Linux VM. No IP addresses. No SSH keys. No firewall rules. No routing tables. If you are on the same physical machine, TCP/IP can be just overhead. Meet AF_VSOCK. It’s a special address family in the Linux kernel…
VMware Workstation guest-to-host escape (CVE-2023-20870/CVE-2023-34044 and CVE-2023-20869) by Alexander Zaviyalov (@NCCGroupInfosec) nccgroup.com/media/b2chcbti… #infosec
magnet: Purple-team telemetry & simulation toolkit github.com/R3DRUN3/magnet #purpleteam
The Definitive Guide To Process Cloning on Windows huntandhackett.com/blog/the-defin… TLDR; This article aims to provide with a comprehensive technical details process cloning on Windows and how they affect its usability also explore why most techniques for code injection via cloning will…
Malware development tricks, by @cocomelonckz 46 Windows keylogger cocomelonc.github.io/malware/2025/0… 47 Windows clipboard hijacking cocomelonc.github.io/malware/2025/0… 48 leveraging Office macros cocomelonc.github.io/malware/2025/0… 49 abusing Azure DevOps REST API for covert data channels cocomelonc.github.io/malware/2025/0…
Hollowing processes on Windows 11 Starting from 24H2 classic RunPE breaks due to changes in Windows loader logic. @hasherezade investigated the changes and proposed few alternative approaches to resolve the problem. Fantastic post, Ola! Post: hshrzd.wordpress.com/2025/01/27/pro… #redteam…
Windows Inter Process Communication. A Deep Dive Beyond the Surface, by @haider_kabibo Part 1 sud0ru.ghost.io/windows-inter-… Part 2 sud0ru.ghost.io/windows-inter-… Part 3 sud0ru.ghost.io/windows-inter-… Part 4 sud0ru.ghost.io/windows-inter-… Part 5 sud0ru.ghost.io/windows-inter-…
🧠 Master Network Packet Analysis with Wireshark Unlock the full potential of Wireshark the world’s leading network protocol analyzer and an essential tool for every cybersecurity professional. 📩 Comment “PDF” to get the full guide
A pdb inspector I wrote a few years ago codeproject.com/articles/How-T…
ExitPatcher: Prevent in-process process termination by patching exit APIs github.com/EvilBytecode/E…
SSH Tunnels: Port Forwarding on steroids Yesterday, we talked about Port Forwarding - an old networking trick that makes an endpoint accessible via a different address. Ports can be forwarded with socat & netcat, but there is a much more powerful and ubiquitous alternative: SSH.
Exhaustive search and flexible filtering of Active Directory ACEs github.com/cogiceo/DACLSe…
Released my write for gaining a fundamental understanding of the Windows _SECURITY_DESCRIPTOR structure. I then created a custom Windows Kernel shellcode stub to perform process injection for privilege escalation which is also implemented in Sickle :P wetw0rk.github.io/posts/understa…
wetw0rk.github.io
Understanding the Windows _SECURITY_DESCRIPTOR
Understanding the Windows _SECURITY_DESCRIPTOR
Large multilateral effort regarding DPRK Cyber Ops and the IT Work efforts. There is so much to unpack here and a lot of orgs/countries took a swing at it. Check it out and will post some pics for pizzazz. msmt.info/Publications/d…
Building LiveServe - a development server in C! You'll learn: • Hot reload via WebSocket • Real-time file monitoring • HTTP server with Mongoose • Event-driven architecture
Digging into Windows Defender Detection History (WDDH) orangecyberdefense.com/global/blog/cy…
🔒 Secure Bits 💡 𝗣𝗹𝗮𝗶𝗻𝘁𝗲𝘅𝘁 𝗣𝗮𝘀𝘀𝘄𝗼𝗿𝗱𝘀 𝗶𝗻 𝗪𝗶𝗻𝗱𝗼𝘄𝘀 𝟭𝟭? 𝗦𝘁𝗶𝗹𝗹 𝗽𝗼𝘀𝘀𝗶𝗯𝗹𝗲. Modern Windows versions like Windows 11 and Windows Server 2025 are 𝗳𝗮𝗿 𝗺𝗼𝗿𝗲 𝘀𝗲𝗰𝘂𝗿𝗲 𝗯𝘆 𝗱𝗲𝗳𝗮𝘂𝗹𝘁. But 𝗹𝗲𝗴𝗮𝗰𝘆 𝗰𝗼𝗺𝗽𝗼𝗻𝗲𝗻𝘁𝘀 𝗰𝗮𝗻…
United States 趨勢
- 1. #GivingTuesday 14.8K posts
- 2. The BIGGЕST 426K posts
- 3. #JUPITER 233K posts
- 4. #ALLOCATION 233K posts
- 5. #csm222 N/A
- 6. Lucario 13.8K posts
- 7. Costco 38K posts
- 8. #NXXT_NEWS N/A
- 9. Good Tuesday 38.9K posts
- 10. NextNRG Inc 1,194 posts
- 11. Susan Dell 2,339 posts
- 12. Michael and Susan 1,616 posts
- 13. Taco Tuesday 13.4K posts
- 14. Trump Accounts 7,522 posts
- 15. Hoss Cartwright N/A
- 16. King Von 1,086 posts
- 17. Dart 42.9K posts
- 18. Project M 22.2K posts
- 19. Kanata 29.4K posts
- 20. Mainz Biomed N.V. N/A
Something went wrong.
Something went wrong.