ar
Feedback
cKure

cKure

الذهاب إلى القناة على Telegram

﷽ This channel was created in 2018 and contains content from the information security domain. This channel is primarily run by AI bots (n8n). Archive: ckure.esy.es Criticals: @ckuRED linkedin.com/company/ckure Support 📨 i@ckure.org

إظهار المزيد
6 899
المشتركون
+424 ساعات
+297 أيام
+13830 أيام

جاري تحميل البيانات...

القنوات المماثلة
الإشارات الواردة والصادرة
---
---
---
---
---
---
جذب المشتركين
يوليو '26
يوليو '26
+193
في 2 قنوات
يونيو '26
+203
في 3 قنوات
Get PRO
مايو '26
+176
في 1 قنوات
Get PRO
أبريل '26
+193
في 7 قنوات
Get PRO
مارس '26
+161
في 5 قنوات
Get PRO
فبراير '26
+130
في 1 قنوات
Get PRO
يناير '26
+160
في 6 قنوات
Get PRO
ديسمبر '25
+151
في 1 قنوات
Get PRO
نوفمبر '25
+165
في 2 قنوات
Get PRO
أكتوبر '25
+94
في 2 قنوات
Get PRO
سبتمبر '25
+67
في 2 قنوات
Get PRO
أغسطس '25
+66
في 4 قنوات
Get PRO
يوليو '25
+44
في 4 قنوات
Get PRO
يونيو '25
+77
في 4 قنوات
Get PRO
مايو '25
+45
في 1 قنوات
Get PRO
أبريل '25
+84
في 4 قنوات
Get PRO
مارس '25
+35
في 0 قنوات
Get PRO
فبراير '25
+32
في 1 قنوات
Get PRO
يناير '25
+61
في 3 قنوات
Get PRO
ديسمبر '24
+129
في 5 قنوات
Get PRO
نوفمبر '24
+206
في 3 قنوات
Get PRO
أكتوبر '24
+178
في 2 قنوات
Get PRO
سبتمبر '24
+241
في 5 قنوات
Get PRO
أغسطس '24
+242
في 4 قنوات
Get PRO
يوليو '24
+172
في 3 قنوات
Get PRO
يونيو '24
+167
في 0 قنوات
Get PRO
مايو '24
+186
في 1 قنوات
Get PRO
أبريل '24
+168
في 1 قنوات
Get PRO
مارس '24
+181
في 0 قنوات
Get PRO
فبراير '24
+269
في 0 قنوات
Get PRO
يناير '24
+356
في 0 قنوات
Get PRO
ديسمبر '23
+281
في 0 قنوات
Get PRO
نوفمبر '23
+63
في 2 قنوات
Get PRO
أكتوبر '23
+66
في 0 قنوات
Get PRO
سبتمبر '23
+66
في 0 قنوات
Get PRO
أغسطس '23
+78
في 0 قنوات
Get PRO
يوليو '23
+47
في 0 قنوات
Get PRO
يونيو '23
+64
في 0 قنوات
Get PRO
مايو '23
+43
في 0 قنوات
Get PRO
أبريل '23
+48
في 0 قنوات
Get PRO
مارس '23
+30
في 0 قنوات
Get PRO
فبراير '23
+23
في 0 قنوات
Get PRO
يناير '23
+42
في 0 قنوات
Get PRO
ديسمبر '22
+25
في 0 قنوات
Get PRO
نوفمبر '22
+30
في 0 قنوات
Get PRO
أكتوبر '22
+67
في 0 قنوات
Get PRO
سبتمبر '22
+53
في 0 قنوات
Get PRO
أغسطس '22
+70
في 0 قنوات
Get PRO
يوليو '22
+79
في 0 قنوات
Get PRO
يونيو '22
+78
في 0 قنوات
Get PRO
مايو '22
+64
في 0 قنوات
Get PRO
أبريل '22
+77
في 0 قنوات
Get PRO
مارس '22
+49
في 0 قنوات
Get PRO
فبراير '22
+44
في 0 قنوات
Get PRO
يناير '22
+70
في 0 قنوات
Get PRO
ديسمبر '21
+61
في 0 قنوات
Get PRO
نوفمبر '21
+53
في 0 قنوات
Get PRO
أكتوبر '21
+90
في 0 قنوات
Get PRO
سبتمبر '21
+87
في 0 قنوات
Get PRO
أغسطس '21
+108
في 0 قنوات
Get PRO
يوليو '21
+110
في 0 قنوات
Get PRO
يونيو '21
+103
في 0 قنوات
Get PRO
مايو '21
+105
في 0 قنوات
Get PRO
أبريل '21
+222
في 0 قنوات
Get PRO
مارس '21
+120
في 0 قنوات
Get PRO
فبراير '21
+55
في 0 قنوات
Get PRO
يناير '21
+61
في 0 قنوات
Get PRO
ديسمبر '20
+3 174
في 0 قنوات
التاريخ
نمو المشتركين
الإشارات
القنوات
29 يوليو+5
28 يوليو+8
27 يوليو+4
26 يوليو+9
25 يوليو+9
24 يوليو+5
23 يوليو+8
22 يوليو+4
21 يوليو+12
20 يوليو+8
19 يوليو+3
18 يوليو+3
17 يوليو+3
16 يوليو+5
15 يوليو+8
14 يوليو+4
13 يوليو+7
12 يوليو+3
11 يوليو+3
10 يوليو+4
09 يوليو+6
08 يوليو+8
07 يوليو+7
06 يوليو+9
05 يوليو+7
04 يوليو+5
03 يوليو+12
02 يوليو+12
01 يوليو+12
منشورات القناة
■■■■□ 🖥️ VMkatz — Extract Windows Secrets from Virtual Machine Snapshots. An open-source incident response and security research tool that analyzes virtual machine memory snapshots and disks to extract forensic artifacts and credential material from Windows systems during authorized assessments. ✨ Features • 💾 Supports VMware, VirtualBox, QEMU/KVM, Hyper-V, and raw disk formats • 🔍 Parses VM memory snapshots and offline Windows artifacts • 🗝️ Extracts Kerberos tickets, DPAPI data, cached credentials, and other Windows secrets • 📂 Supports offline analysis of SAM, LSA secrets, cached logons, and NTDS.dit • 🔐 Includes BitLocker key extraction from supported memory snapshots • ⚡ Runs as a compact static binary suitable for virtualization hosts • 📊 Exports results in text, CSV, NTLM, and Hashcat-compatible formats • 🛠️ Designed for DFIR, malware analysis, red team labs, and authorized security assessments https://github.com/nikaiw/VMkatz

2
■■□□□ Thread: CrowdStrike published a blog at the beginning of the month, exposing new prompt injection techniques. This time, 18 new injection techniques have been added, bringing the project's total coverage to over 200 different injection techniques. The CrowdStrike AI security research team claims to maintain the industry's largest-scale prompt injection classification system, providing a structured hierarchical framework that clearly demonstrates the full spectrum of risks posed by artificial intelligence threats. https://x.com/i/status/2081582153884930237
331
3
■■■□□ An interesting thread 🧵 on AI iOS jailbreak. https://x.com/i/status/2081885707602366570
364
4
👩‍💻 Achieving GitLab RCE via Two Ruby Memory Corruption Vulnerabilities. Technical Summary: https://depthfirst.com/research/going-depthfirst-achieving-gitlab-rce-via-two-ruby-memory-corruption-vulnerabilities PoC: https://github.com/wupco/gitlab-rce-demo/tree/main Overview: https://depthfirst.com/gitlab-rce-oj-spill Thread: 🧵 https://x.com/i/status/2080763568044290535
417
5
 Malicious sites use JavaScript to build malware in browser memory A massive malvertising campaign is using fake Solana, Luno, and TradingView webpages with malicious JavaScript that instructs browsers to assemble malware directly in memory. [...] https://www.bleepingcomputer.com/news/security/malicious-sites-use-javascript-to-build-malware-in-browser-memory/
526
6
■■■■□ Open-sourcing RCE implementation for CVE-2026-42533 This is an incredibly powerful NGINX bug that provides both info leak and an out-of-bounds heap write primitives (so, yes, ASLR bypass!). F5 released the security advisory a week ago on July 15th. Fun fact: this bug appears to have been found concurrently by multiple groups. Our team at @depthfirstlabs caught it using our internal systems, right alongside CVE-2026-42530, a separate issue in NGINX’s HTTP/3 QPACK implementation. https://x.com/i/status/2080832510838337940
693
7
■■■□□ Microsoft admits Windows 11 has a GDID tracker with no off switch, first documented publicly in an FBI hacker complaint. https://www.windowslatest.com/2026/07/10/you-cant-fully-disable-microsofts-gdid-windows-11-tracker-but-these-settings-limit-what-it-captures/
557
8
■■□□□ Alleged picture showing kinetic strike on AWS insurance in Bahrain.
■■□□□ Alleged picture showing kinetic strike on AWS insurance in Bahrain.
490
9
■■■□□ E-ink tags hacking via Flipper-Zero 🐬
■■■□□ E-ink tags hacking via Flipper-Zero 🐬
466
10
■■■□□ Privacy: China dumping personal video streams.
■■■□□ Privacy: China dumping personal video streams.
582
11
■■■■□ The Oracle scum: In 2025, Oracle’s executive vice chair, Safra Catz, spoke at the “Taboo Investing: Zionism in Tech” pa
■■■■□ The Oracle scum: In 2025, Oracle’s executive vice chair, Safra Catz, spoke at the “Taboo Investing: Zionism in Tech” panel hosted by the Israeli-American Council (IAC) and openly bragged about providing “scary technology” to help the Israeli military advance its agenda in Gaza. Tech companies like Oracle, which now controls TikTok U.S.’s algorithm, is not a neutral party in this genocide. They are enabling a genocidal state, profiting from the death of millions and having unprecedented access to our data, our information and our feeds. This is who controls what you see. Keep posting about Palestine. Keep sharing what they want buried. Don’t let them silence us.
506
12
■■■□□ Kinetic attack on cyber target as IRGC Claims Destroyed Amazon’s Bahrain Data Center. https://houseofsaud.com/irgc-claims-destroyed-amazon-bahrain-data-center/
465
13
■■■□□ Samsung's threat to use private data for AI training.
■■■□□ Samsung's threat to use private data for AI training.
527
14
■■□□□ AI security incident
■■□□□ AI security incident
493
15
■■■□□ SLM hack
■■■□□ SLM hack
424
16
■■■■■ An interesting thread on the Frag Gap (CVE-2026-53362/CVE-2026-53366) https://blog.qwerty.or.kr/en/posts/cdf3008a-c1a4-4eca-a373-aa3a2bcf1489/ Exploit code: https://github.com/qwerty-po/security-research/tree/cve-2026-53362/pocs/linux/kernelctf/CVE-2026-53362_lts https://x.com/i/status/2079239619611332780
609
17
■■■■□ Purple Operations Limited has released a new research paper covering exotic side-channel attacks for OT/ICS context. Namely: 🖨 PJL/SNMP printer dead drops, 🔊ultrasonic browser-to-receiver transfer, 📡and SNMP trap covert channels. 🛡This report is intended for authorized defensive validation, detection engineering, and OT/ICS security planning, and it intentionally excludes source code, drop-in tooling, operational payloads, exploit chains, and step-by-step replication instructions.
604
18
■■■■□ Purple Operations Limited has released a new offensive cyber research report covering 3 side-channel attack vectors: - PJL/SNMP printer dead drops, - ultrasonic browser-to-receiver transfer, - and SNMP trap covert channels.
1
19
■■■■□ Military Tech: 🆕 Technology to make drone invisible using AI to find the least visible pattern.
■■■■□ Military Tech: 🆕 Technology to make drone invisible using AI to find the least visible pattern.
726
20
■■■□□ Cyber Warfare by Zelensky.
■■■□□ Cyber Warfare by Zelensky.
530