APT
前往频道在 Telegram
This channel discusses: — Offensive Security — RedTeam — Malware Research — OSINT — etc Disclaimer: t.me/APT_Notes/6 Chat Link: t.me/APT_Notes_PublicChat
显示更多📈 Telegram 频道 APT 的分析概览
频道 APT (@apt_notes) 英语 语言赛道中的 是活跃参与者。目前社区聚集了 14 712 名订阅者,在 技术与应用 类别中位列第 8 844,并在 俄罗斯 地区排名第 45 464 位。
📊 受众指标与增长动态
自 невідомо 创建以来,项目保持高速增长,吸引了 14 712 名订阅者。
根据 14 六月, 2026 的最新数据,频道保持稳定运转。过去 30 天订阅人数变化为 432,过去 24 小时变化为 26,整体触达仍然可观。
- 认证状态: 未认证
- 互动率 (ER): 平均受众互动率为 51.64%。内容发布后 24 小时内通常能获得 N/A% 的反应,占订阅者总量。
- 帖子覆盖: 每篇帖子平均可获得 7 592 次浏览,首日通常累积 0 次浏览。
- 互动与反馈: 受众积极参与,单帖平均反应数为 20。
📝 描述与内容策略
作者将该频道定位为表达主观观点的平台:
“This channel discusses:
— Offensive Security
— RedTeam
— Malware Research
— OSINT
— etc
Disclaimer:
t.me/APT_Notes/6
Chat Link:
t.me/APT_Notes_PublicChat”
凭借高频更新(最新数据采集于 15 六月, 2026),频道始终保持新鲜度与高覆盖。分析显示受众积极互动,使其成为 技术与应用 类别中的关键影响点。
14 712
订阅者
+2624 小时
+1137 天
+43230 天
帖子存档
14 712
Resolve domains into IP address:
while read l; do ip=$(dig +short $l | grep -oE "\b([0-9]{1,3}\.){3}[0-9]{1,3}\b"|head -1);echo "[+] '$l' => $ip";echo $ip >> ips.txt;done < domains.txt
#cybersecuritytips #bugbounty
14 712
14 712
DEF CON 29 Main Stage Presentations:
1-Babak Javadi, Nick Draffen, Eric Bettse, Anze Jensterle - The PACS man Comes For Us All
https://www.youtube.com/watch?v=NARJrwX_KFY
2-Reza Soosahabi, Chuck McAuley - SPARROW: A Novel Covert Communication Scheme
https://www.youtube.com/watch?v=oaLIo9HwW-g
3-Tomer Bar, Eran Segal - 2021 Our Journey Back To The Future Of Windows Vulnerabilities
https://www.youtube.com/watch?v=VxNi5pVDZU0
4-Sick Codes - The Agricultural Data Arms Race Exploiting a Tractor Load of Vulns
https://www.youtube.com/watch?v=zpouLO-GXLo
5-Shir Tamari, Ami Luttwak - New class of DNS Vulns Affecting DNS-as-Service Platforms
https://www.youtube.com/watch?v=72uzIZPyVjI
6-Sheila A Berta - The Unbelievable Insecurity of the Big Data Stack
https://www.youtube.com/watch?v=vl9hk4fQdos
7-Roy Davis - No Key No PIN No Combo No Problem Pwning ATMs For Fun and Profit
https://www.youtube.com/watch?v=9cG-JL0LHYw
8-Rotem Bar - Abusing SAST tools When scanners do more than just scanning
https://www.youtube.com/watch?v=Jl-CU6G4Ofc
9-Richard Thieme AKA neuralcowboy - UFOs: Misinformation, Disinfo, and the Basic Truth
https://www.youtube.com/watch?v=mExktWB0qz4
10-Richard Henderson - Old MacDonald Had a Barcode, E I E I CAR
https://www.youtube.com/watch?v=cIcbAMO6sxo
11-Rex Guo, Junyuan Zeng - Phantom Attack: Evading System Call Monitoring
https://www.youtube.com/watch?v=yaAdM8pWKG8
12-Paz Hameiri - TEMPEST Radio Station
https://www.youtube.com/watch?v=m9WkEwshNKc
13-Patrick Wardle - Bundles of Joy: Breaking MacOS via Subverted Applications Bundles
https://www.youtube.com/watch?v=raSTgFqYaoc
14-PatH - Warping Reality: Creating and Countering the Next Generation of Linux Rootkits
https://www.youtube.com/watch?v=g6SKWT7sROQ
15-Orange Tsai - ProxyLogon Just Tip of the Iceberg, New Attack Surface on Exchange Server-@onhex_ir
https://www.youtube.com/watch?v=5mqid-7zp8k
16-Matthew Bryant - Hacking G Suite: The Power of Dark Apps Script Magic
https://www.youtube.com/watch?v=6AsVUS79gLw
17-Mars Cheng, Selmon Yang - Taking Apart and Taking Over ICS & SCADA Ecosystems
https://www.youtube.com/watch?v=L0w_aE4jRFw
18-Laura Abbott, Rick Altherr -Breaking TrustZone M: Privilege Escalation on LPC55S69
https://www.youtube.com/watch?v=eKKgaGbcq4o
19-Justin Perdok - Hi Im DOMAIN Steve, Please Let Me Access VLAN2
https://www.youtube.com/watch?v=lDCoyxIhTN8
20-Jenko Hwong - New Phishing Attacks Exploiting OAuth Authentication Flows
https://www.youtube.com/watch?v=9slRYvpKHp4
21-Jeff Dileo - Instrument and Find Out: Parasitic Tracers for High Level Languages
https://www.youtube.com/watch?v=Iy1BNywebpY
22-James Kettle - HTTP2: The Sequel is Always Worse
https://www.youtube.com/watch?v=rHxVVeM9R-M
23-Jacob Baines - Bring Your Own Print Driver Vulnerability
https://www.youtube.com/watch?v=vdesswZYz-8
24-Ian Coldwater, Chad Rikansrud - Real Life Story of the 1st Mainframe Container Breakout
https://www.youtube.com/watch?v=7DXF7YDBf-g
25-hyp3ri0n aka Alejandro Caceres Jason Hopper - PunkSPIDER and IOStation: Making a Mess-@onhex_ir
https://www.youtube.com/watch?v=DlS_sl4hTWg
26-Hao Xing, Zekai Wu - How I use a JSON 0day to Steal Your Money on the Blockchain
https://www.youtube.com/watch?v=pUexrXOGCkE
27-David Dworken - Worming through IDEs
https://www.youtube.com/watch?v=pzqu_qaoNuY
28-Cory Doctorow - Privacy Without Monopoly
https://www.youtube.com/watch?v=deRRR5B1hwI
29-Christopher Wade - Breaking Secure Bootloaders
https://www.youtube.com/watch?v=z4gIxdFfJDg
30-Chad Seaman - UPnProxyPot: Fake the Funk, Become a Blackhat Proxy, MITM their TLS...
https://www.youtube.com/watch?v=mHCGNUsrTf0
31-Brian Hong - Sleight of ARM: Demystifying Intel Houdini
https://www.youtube.com/watch?v=9oQ5XjA1aq0
32-Bill Graydon - Defeating Physical Intrusion Detection Alarm Wires
https://www.youtube.com/watch?v=Liz9R_QxSgk
33-Ben Kurtz - Offensive Golang Bonanza: Writing Golang Malware
https://www.youtube.com/watch?v=3RQb05ITSyk
14 712
Scope Based Recon
https://www.xmind.net/m/hKKexj/
#AppSec #hacking #bugbountytips #websecurity #xmind
14 712
Cookie Based Auth Vulnerabilities
https://www.xmind.net/m/2FwJ7D/
#AppSec #hacking #bugbountytips #websecurity #xmind
14 712
Forget Password Vulns
https://www.xmind.net/m/nZwbdk/
#AppSec #hacking #bugbountytips #websecurity #xmind
14 712
AppSec Ezine
https://pathonproject.com/zb/?da0fdd7f7fd0d09c#bod4fYcp6Zbxi3iRKuTDAGQgWNFHbJ/JwPjWjd/Veaw=
#AppSec #Security
14 712
Search JS using Gau
gau -subs DOMAIN |grep -iE '\.js'|grep -iEv '(\.jsp|\.json)' >> js.txt
#bugbounty #bugbountytips14 712
Git-Secret
Go scripts for finding an API key / some keywords in a github repository
https://github.com/daffainfo/Git-Secret
#bugbounty #bugbountytips #pentest #api #infosec
14 712
Malware Development Resources
A tale of EDR bypass methods
# https://s3cur3th1ssh1t.github.io/A-tale-of-EDR-bypass-methods/
Antivirus Artifacts
# https://github.com/D3VI5H4/Antivirus-Artifacts
Windows X86-64 System Call Table (XP/2003/Vista/2008/7/2012/8/10)
# https://j00ru.vexillium.org/syscalls/nt/64/
SysWhisoers
# https://github.com/jthuraisamy/SysWhispers
SysWhispers2
# https://github.com/jthuraisamy/SysWhispers2
SysWhispers2_x86
# https://github.com/mai1zhi2/SysWhispers2_x86
Dynamic Invocation in .NET to bypass hooks
# https://blog.nviso.eu/2020/11/20/dynamic-invocation-in-net-to-bypass-hooks/
Dynamic-Invoke
# https://thewover.github.io/Dynamic-Invoke/
Offensive P/Invoke: Leveraging the Win32 API from Managed Code
# https://posts.specterops.io/offensive-p-invoke-leveraging-the-win32-api-from-managed-code-7eef4fdef16d
Syscalls with D/Invoke
# https://offensivedefence.co.uk/posts/dinvoke-syscalls/
Shellycoat
# https://github.com/slaeryan/AQUARMOURY/tree/master/Shellycoat
Defeating Antivirus Real-time Protection From The Inside
# https://breakdev.org/defeating-antivirus-real-time-protection-from-the-inside/
Preventing 3rd Party DLLs from Injecting into your Malware
# https://www.ired.team/offensive-security/defense-evasion/preventing-3rd-party-dlls-from-injecting-into-your-processes
Lets Create An EDR… And Bypass It!
# https://ethicalchaos.dev/2020/05/27/lets-create-an-edr-and-bypass-it-part-1/
# https://ethicalchaos.dev/2020/06/14/lets-create-an-edr-and-bypass-it-part-2/
Bypassing Cylance and other AVs/EDRs by Unhooking Windows APIs
# https://www.ired.team/offensive-security/defense-evasion/bypassing-cylance-and-other-avs-edrs-by-unhooking-windows-apis
Red Team Tactics: Utilizing Syscalls in C#
# https://jhalon.github.io/utilizing-syscalls-in-csharp-1/
# https://jhalon.github.io/utilizing-syscalls-in-csharp-2/
Art of Anti Detection
# https://pentest.blog/art-of-anti-detection-1-introduction-to-av-detection-techniques/
# https://pentest.blog/art-of-anti-detection-2-pe-backdoor-manufacturing/
# https://pentest.blog/art-of-anti-detection-3-shellcode-alchemy/
#edr #av #evasion #maldev
14 712
Kubernetes Hardening Guidance
The NSA and CISA have published today a Kubernetes security-hardening guide
https://media.defense.gov/2021/Aug/03/2002820425/-1/-1/1/CTR_KUBERNETES%20HARDENING%20GUIDANCE.PDF
#kubernetes #hardening #security
14 712
RedTeam n00b Tip:
If you're on a Linux box and need to port scan without nmap, try netcat.
nc -zv 10.11.12.13 1-65535 2>&1 | grep succeededOr loop through a list of targets:
for target in $(cat targets.txt); do nc -zv $target 1-65535 2>&1 | grep succeeded; done
#redteam #scan #pentest14 712
The path to code execution in the era of EDR, Next-Gen AVs, and AMSI
https://klezvirus.github.io/RedTeaming/AV_Evasion/CodeExeNewDotNet/
#av #bypass #EDR #AMSI
14 712
EfsPotato
Exploit for EfsPotato(MS-EFSR EfsRpcOpenFileRaw with SeImpersonatePrivilege local privalege escalation vulnerability).
https://github.com/zcgonvh/EfsPotato
#windows #privesc #pentest
14 712
purpleteam - CLI component of OWASP PurpleTeam
https://github.com/purpleteam-labs/purpleteam
#PurpleTeam #OWASP
14 712
#BurpHacksForBounties - Day 29/30
No Collaborator No worries
Burp Suite Collaborator is part of pro, so use requestbin.net
- Exactly same as collaborator
- Free 20 requests without login
- HTTP bin
- DNS bin
#infosec #appsec #bugbountytips #bugbountytip #burp
现已上线!2025 年 Telegram 研究 — 年度关键洞察 
