Source Byte
الذهاب إلى القناة على Telegram
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
إظهار المزيد8 314
المشتركون
-524 ساعات
-187 أيام
-5930 أيام
أرشيف المشاركات
8 315
Repost from Private Shizo
🔥RedEye is an open-source analytic tool developed by
CISA and DOE’s Pacific Northwest National Laboratory to assist Red Teams with visualizing and reporting command and control activities. This tool allows an operator to assess and display complex data, evaluate mitigation strategies, and enable effective decision making in response to a Red Team assessment. The tool parses logs, such as those from Cobalt Strike, and presents the data in an easily digestible format. The users can then tag and add comments to activities displayed within the tool.
RedEye can assist an operator to efficiently:
⚙️Replay and demonstrate Red Team’s assessment activities as they occurred rather than manually pouring through thousands of lines of log text.
⚙️Display and evaluate complex assessment data to enable effective decision making.
⚙️Gain a clearer understanding of the attack path taken and the hosts compromised during a Red Team assessment or penetration test.8 315
A collection of weggli patterns for C/C++ vulnerability research
https://security.humanativaspa.it/a-collection-of-weggli-patterns-for-c-cpp-vulnerability-research/
———
@islemolecule_source
8 315
Malware repository
https://github.com/cryptwareapps/Malware-Database
#malware_analysis
--------
@islemolecule_source
8 315
Flying Under the Radar: Abusing GitHub for Malicious Infrastructure
https://www.recordedfuture.com/flying-under-the-radar-abusing-github-malicious-infrastructure
#c2 ,
———
@islemolecule_source
8 315
Tutorial - Writing Hardcoded Windows Shellcodes (32bit)
LinK
#shellcode
_____
@islemolecule_source
8 315
VT Query -
behaviour:Local\\Kasimir_* AND behaviour:Local\\azov AND tag:64bits AND (behaviour_files:RESTORE_FILES OR behaviour_registry:rdpclient.exe)8 315
The internals of Javascript Engine!
https://youtube.com/watch?v=qf1KhBCaWNY
The execution context and stack in Javascript!
https://youtube.com/watch?v=3Ywr7MPxBKA
Execution Stack in Chrome: Live Demo!
https://youtube.com/watch?v=-UnIbstX_0A
The what and why of max call stack in Javascript!
https://youtube.com/watch?v=qc3aEKrohKc
#javascript_internals , #javascript_engine
———
@islemolecule_source
8 315
F#ck AMSI! How to bypass Antimalware Scan Interface and infect Windows
https://hackmag.com/security/fck-amsi/
#windows
#malware_dev
@islemolecule_source
8 315
Microsoft Open Source Code of Conduct
(implement of DNS , AMASI ,....)
LInK
#windows
#win_api
@islemolecule_source
8 315
The Evolution of Protected Processes – Part 1
link
The Evolution of Protected Processes – Part 2
link
#windows
#threat_hunting
@islemolecule_source
8 315
Repost from Some Security Notes
#malware #reversing
Показано как с помощью параметра SectionAlignment создать исполняемый файл с пустым PE-заголовком.
https://secret.club/2023/06/05/spoof-pe-sections.html
8 315
NtDoc
Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers
https://ntdoc.m417z.com/
#windows
#win_api
@islemolecule_source
