offethhacker's profile picture.

Ethical Hacker

@offethhacker

Ethical Hacker 已轉發

ShellExec using msgbox.exe => in my C2 Facility. Bypassing EDR's. a cool new way = ) Actually tg is just an sample, you can use calendar, teams or whatever that can communicate with apis. to uplaod & exec your custom agents !

5mukx's tweet image. ShellExec using msgbox.exe => in my C2 Facility.  Bypassing EDR's. a cool new way = ) 

Actually tg is just an sample, you can use calendar, teams or whatever that can communicate with apis. to uplaod & exec your custom agents !

Ethical Hacker 已轉發

🚨 New APT26 IOCs were just dropped by Chinese researchers at 360. Turns out they’re using a new RAT developed in Golang. MD5(Linux) e1b4572ea0780c963043819016f4c7a8 aff4b4f121aba5046f781fc6aafe8de2 10b7139952e3daae8f9d7ee407696ccf 311f9894297fb1624a2c99ac5c8d8abf…

IntCyberDigest's tweet image. 🚨 New APT26 IOCs were just dropped by Chinese researchers at 360. 

Turns out they’re using a new RAT developed in Golang. 

MD5(Linux)
e1b4572ea0780c963043819016f4c7a8
aff4b4f121aba5046f781fc6aafe8de2
10b7139952e3daae8f9d7ee407696ccf
311f9894297fb1624a2c99ac5c8d8abf…

Ethical Hacker 已轉發

CVE-2025-33073: PoC Exploit for the NTLM reflection SMB flaw. Check: github.com/mverschu/CVE-2…

7h3h4ckv157's tweet image. CVE-2025-33073: PoC Exploit for the NTLM reflection SMB flaw.

Check: github.com/mverschu/CVE-2…
7h3h4ckv157's tweet image. CVE-2025-33073: PoC Exploit for the NTLM reflection SMB flaw.

Check: github.com/mverschu/CVE-2…
7h3h4ckv157's tweet image. CVE-2025-33073: PoC Exploit for the NTLM reflection SMB flaw.

Check: github.com/mverschu/CVE-2…

Ethical Hacker 已轉發

Something BIG is coming next week 🤫 50+ pages of game-changing insights, prepared for the ongoing #CybersecurityAwarenessMonth! I can't say more yet, but if cybersecurity is on your radar, you'll want to see this. Stay tuned 👀 #CyberSecurityReport #InfoSec #ThreatIntelligence

PaulaCqure's tweet image. Something BIG is coming next week 🤫
50+ pages of game-changing insights, prepared for the ongoing #CybersecurityAwarenessMonth!

I can't say more yet, but if cybersecurity is on your radar, you'll want to see this.
Stay tuned 👀

#CyberSecurityReport #InfoSec #ThreatIntelligence…

Ethical Hacker 已轉發

Quick wins: How to use deception in real-life when you have no budget - an example that took only a few minutes tu provide realistic #IOC from an ongoing "in the wild" campaign 👇🏻 linkedin.com/posts/bourbon-…


Ethical Hacker 已轉發

Banana Pi BPI-CM6 design with SpacemiT K1 8 core RISC-V chip, CPU integrates 2.0 TOPs AI computing power. 8/16G DDR and 8/16/32/128G eMMC. support DeepX AI. will comming soon. docs.banana-pi.org/en/BPI-CM6/Ban… #riscv #EdgeComputing #bananapi #raspberrypi

sinovoip's tweet image. Banana Pi BPI-CM6 design with SpacemiT K1 8 core RISC-V chip, CPU integrates 2.0 TOPs AI computing power. 8/16G DDR and 8/16/32/128G eMMC. support DeepX AI. will comming soon.
docs.banana-pi.org/en/BPI-CM6/Ban…
#riscv  #EdgeComputing #bananapi #raspberrypi
sinovoip's tweet image. Banana Pi BPI-CM6 design with SpacemiT K1 8 core RISC-V chip, CPU integrates 2.0 TOPs AI computing power. 8/16G DDR and 8/16/32/128G eMMC. support DeepX AI. will comming soon.
docs.banana-pi.org/en/BPI-CM6/Ban…
#riscv  #EdgeComputing #bananapi #raspberrypi
sinovoip's tweet image. Banana Pi BPI-CM6 design with SpacemiT K1 8 core RISC-V chip, CPU integrates 2.0 TOPs AI computing power. 8/16G DDR and 8/16/32/128G eMMC. support DeepX AI. will comming soon.
docs.banana-pi.org/en/BPI-CM6/Ban…
#riscv  #EdgeComputing #bananapi #raspberrypi

Ethical Hacker 已轉發

🚨 We taught LLMs to write bug-finding tools instead of just finding bugs! KNighter synthesizes static analysis checkers from patches & discovered 92 new, long-lived bugs in Linux (77 confirmed, 30 CVEs) 🐛 Paper: arxiv.org/abs/2503.09002 Code: github.com/ise-uiuc/KNigh…

cy1yang's tweet image. 🚨 We taught LLMs to write bug-finding tools instead of just finding bugs!

KNighter synthesizes static analysis checkers from patches & discovered 92 new, long-lived bugs in Linux  (77 confirmed, 30 CVEs) 🐛

Paper: arxiv.org/abs/2503.09002
Code: github.com/ise-uiuc/KNigh……

Ethical Hacker 已轉發

Here are the slides for my talk yesterday at Objective By the Sea! Tons of incredible research and researchers here in Ibiza :) dillonfrankesecurity.com/Objective-By-t…


Ethical Hacker 已轉發

As promised, a blog post on Diffing 7-Zip for CVE-2025-11001. Enjoy :) pacbypass.github.io/2025/10/16/dif…

Wrote an exploit for CVE-2025-11001 in 7-zip Pretty cool bug, had fun diffing it. Blog post coming soon github.com/pacbypass/CVE-…



Ethical Hacker 已轉發

Just posted a write-up on a DC hang traced to a deadlock inside LSASS. I break down call stacks, the blocked threads, and how doing LDAP work in DllMain triggered the issue. medium.com/@Debugger/serv…


Ethical Hacker 已轉發

Beginners introduction to Linux kernel rootkits inferi.club/post/the-art-o… #Linux #infosec

0xor0ne's tweet image. Beginners introduction to Linux kernel rootkits

inferi.club/post/the-art-o…

#Linux #infosec

Ethical Hacker 已轉發

Serious bugs often occur in third-party components integrated by other software. @ifsecure and I found this vulnerability in the Dolby Unified Decoder. It affects Android, iOS and Windows among other platforms, sometimes 0-click. project-zero.issues.chromium.org/issues/4280754…


Ethical Hacker 已轉發

Interesting read. Using blockchain and smart contracts to host and load part of the JS payload delivery. cloud.google.com/blog/topics/th…


Ethical Hacker 已轉發

I spent some time exploring browser cache smuggling, where visiting a webpage can lead to malware delivery. Surprisingly, it is possible to execute Chrome’s original cache file without renaming it, while also achieving persistence. More details below: medium.com/@danemeth90/re…


Ethical Hacker 已轉發

The following vulnerabilities have been added to our feed: - CVE-2025-33053: Microsoft Windows Internet Shortcut Files RCE - CVE-2025-25257: Fortinet FortiWeb RCE - CVE-2025-50154: Microsoft Windows File Explorer NTLM Leak crowdfense.com/n-day-feed/

crowdfense.com

N-day Vulnerability Intelligence Feed - Crowdfense

Boost Red Team exercises with our N-Day Feed: real-time, high-risk vulnerabilities, PoC code, and insights for advanced threat simulation.


Ethical Hacker 已轉發

One‑Click Memory Corruption in Alibaba’s UC Browser: Exploiting patch-gap V8 vulnerabilities to steal your data interruptlabs.co.uk/articles/one-c… by @InterruptLabs #MobileSecurity #Browser #exploit #infosec


Ethical Hacker 已轉發

Forgive me if I am wrong (developer.arm.com/documentation/…): On my machine both T0SZ and T1SZ specify a value of 17. This means 48-bit VAs are in use. According to this psuedo-code from ARM documentation the "bottom" PAC bit is defined as 64 - TXSZ, which would be bit 47.

33y0re's tweet image. Forgive me if I am wrong (developer.arm.com/documentation/…):

On my machine both T0SZ and T1SZ specify a value of 17. This means 48-bit VAs are in use. According to this psuedo-code from ARM documentation the "bottom" PAC bit is defined as 64 - TXSZ, which would be bit 47.

Ethical Hacker 已轉發

Trend Micro's Dove Chiu & Lucien Chuang uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices. trendmicro.com/en_us/research…

virusbtn's tweet image. Trend Micro's Dove Chiu & Lucien Chuang uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices. trendmicro.com/en_us/research…

Loading...

Something went wrong.


Something went wrong.