en
Feedback
APT

APT

Open in Telegram

This channel discusses: β€” Offensive Security β€” RedTeam β€” Malware Research β€” OSINT β€” etc Disclaimer: t.me/APT_Notes/6 Chat Link: t.me/APT_Notes_PublicChat

Show more

πŸ“ˆ Analytical overview of Telegram channel APT

Channel APT (@apt_notes) in the English language segment is an active participant. Currently, the community unites 16 249 subscribers, ranking 7 769 in the Technologies & Applications category and 40 381 in the Russia region.

πŸ“Š Audience metrics and dynamics

Since its creation on Π½Π΅Π²Ρ–Π΄ΠΎΠΌΠΎ, the project has demonstrated rapid growth, gathering an audience of 16 249 subscribers.

According to the latest data from 30 August, 2026, the channel demonstrates stable activity. Although there has been a change in the number of participants by 549 over the last 30 days and by 10 over the last 24 hours, overall reach remains high.

  • Verification status: Not verified
  • Engagement rate (ER): The average audience engagement rate is 39.89%. Within the first 24 hours after publication, content typically collects 18.07% reactions from the total number of subscribers.
  • Post reach: On average, each post receives 6 477 views. Within the first day, a publication typically gains 2 934 views.
  • Reactions and interaction: The audience actively supports content: the average number of reactions per post is 26.

πŸ“ Description and content policy

The author describes the resource as a platform for expressing subjective opinions:
β€œThis channel discusses: β€” Offensive Security β€” RedTeam β€” Malware Research β€” OSINT β€” etc Disclaimer: t.me/APT_Notes/6 Chat Link: t.me/APT_Notes_PublicChat”

Thanks to the high frequency of updates (latest data received on 31 August, 2026), the channel maintains relevance and a high level of publication reach. Analytics show that the audience actively interacts with content, making it an important point of influence in the Technologies & Applications category.

16 249
Subscribers
+1024 hours
+957 days
+54930 days
Posts Archive
APT
16 260
DNS Abuse & Misconfiguration The History of DNS Vulnerabilities and the Cloud https://unit42.paloaltonetworks.com/dns-vulnerabilities/ Dangling Domains: Security Threats, Detection and Prevalence https://unit42.paloaltonetworks.com/dangling-domains/ Fishing the AWS IP Pool for Dangling Domains https://bishopfox.com/blog/fishing-the-aws-ip-pool-for-dangling-domains Respect My Authority – Hijacking Broken Nameservers to Compromise Your Target https://thehackerblog.com/respect-my-authority-hijacking-broken-nameservers-to-compromise-your-target/ The Orphaned Internet – Taking Over 120K Domains via a DNS Vulnerability in AWS, Google Cloud, Rackspace and Digital Ocean https://thehackerblog.com/the-orphaned-internet-taking-over-120k-domains-via-a-dns-vulnerability-in-aws-google-cloud-rackspace-and-digital-ocean/ The .io Error – Taking Control of All .io Domains With a Targeted Registration https://thehackerblog.com/the-io-error-taking-control-of-all-io-domains-with-a-targeted-registration/ The International Incident – Gaining Control of a .int Domain Name With DNS Trickery https://thehackerblog.com/the-international-incident-gaining-control-of-a-int-domain-name-with-dns-trickery/ Hostile Subdomain Takeover using Heroku/Github/Desk + more https://labs.detectify.com/2014/10/21/hostile-subdomain-takeover-using-herokugithubdesk-more/ Dangling DNS: Amazon EC2 IPs https://blog.melbadry9.xyz/dangling-dns/aws/ddns-ec2-current-state Eliminating Dangling Elastic IP Takeovers with Ghostbuster https://blog.assetnote.io/2022/02/13/dangling-eips/ Internet-Wide Analysis of Subdomain Takeovers https://redhuntlabs.com/blog/project-resonance-wave-1.html Subdomain Takeover https://0xpatrik.com/subdomain-takeover-basics/ https://0xpatrik.com/subdomain-takeover-candidates/ https://0xpatrik.com/takeover-proofs/ https://0xpatrik.com/subdomain-takeover-ns/ https://0xpatrik.com/subdomain-takeover/ #dns #abuse #aws #elastic #subdomain #takeover

APT
16 260
Certipy 2.0: BloodHound, New Escalations, Shadow Credentials, Golden Certificates, and more! Blog: https://research.ifcr.dk/certipy-2-0-bloodhound-new-escalations-shadow-credentials-golden-certificates-and-more-34d1c26f0dc6 Tool: https://github.com/ly4k/Certipy #ad #adcs #abuse #tools

APT
16 260
LOLBIN β€” wlrmdr Action on click: wlrmdr.exe -s 60000 -f 1 -t "Important" -m "Click this dude!" -a 10 -u cmd You can use "-a 1
+1
LOLBIN β€” wlrmdr Action on click: wlrmdr.exe -s 60000 -f 1 -t "Important" -m "Click this dude!" -a 10 -u cmd You can use "-a 11" to skip the click requirement and spawn your process immediately: wlrmdr -s 0 -f 0 -t 0 -m 0 -a 11 -u cmd #windows #wlrmdr #lolbin #lolbas

APT
16 260
DumpSMBShare A script to dump files and folders remotely from a Windows SMB share. https://github.com/p0dalirius/DumpSMBShare
DumpSMBShare A script to dump files and folders remotely from a Windows SMB share. https://github.com/p0dalirius/DumpSMBShare #ad #smb #share #dump

APT
16 260
Keeping Up with the NTLM Relay https://www.fortalicesolutions.com/posts/keeping-up-with-the-ntlm-relay #ad #ntlm #relay #adcs

APT
16 260
o365recon Script to retrieve information via O365 and AzureAD with a valid cred. https://github.com/nyxgeek/o365recon #azure
o365recon Script to retrieve information via O365 and AzureAD with a valid cred. https://github.com/nyxgeek/o365recon #azure #recon #tools

APT
16 260
Zabbix SAML Authentication Bypass (CVE-2022-23131) https://blog.sonarsource.com/zabbix-case-study-of-unsafe-session-storage #zabbix #research #auth #bypass #cve

APT
16 260
S3Scanner Scan for open S3 buckets and dump the contents Features: β€” Multi-threaded scanning β€” Supports tons of S3-compatible
S3Scanner Scan for open S3 buckets and dump the contents Features: β€” Multi-threaded scanning β€” Supports tons of S3-compatible APIs β€” Scans all bucket permissions to find misconfigurations β€” Dump bucket contents to a local folder β€” Docker support https://github.com/sa7mon/S3Scanner #aws #s3 #bucket #scanner

APT
16 260
Recon β€” Horizontal Enumeration https://aaryanapex.medium.com/bug-bounty-methodology-horizontal-enumeration-89f7cd172e6e #osint #recon #enumeration

APT
16 260
Useful Libraries for Malware Development https://captmeelo.com/redteam/maldev/2022/02/16/libraries-for-maldev.html #edr #evasion #lib #maldev #cpp

APT
16 260
CredMaster Launch a password spray / brute force attach via Amazon AWS passthrough proxies, shifting the requesting IP addres
CredMaster Launch a password spray / brute force attach via Amazon AWS passthrough proxies, shifting the requesting IP address for every authentication attempt. This dynamically creates FireProx APIs for more evasive password sprays. The following plugins are currently supported: β€” OWA β€” EWS β€” O365 β€” O365Enum β€” MSOL β€” Okta β€” FortinetVPN β€” HTTPBrute β€” ADFS β€” AzureSSO https://github.com/knavesec/CredMaster #owa #o365 #adfs #password #spraying

APT
16 260
Password Spraying and MFA Bypasses https://www.sprocketsecurity.com/blog/how-to-bypass-mfa-all-day #ntlm #password #spraying #o365 #exchange #mfa

APT
16 260
Windows Security Log Quick Reference Cheat Sheet #windows #security #log #blueteam
Windows Security Log Quick Reference Cheat Sheet #windows #security #log #blueteam

APT
16 260
New article by our researchers Mikhail Klyuchnikov and Egor Dimitrenko about unauth RCEs in VMware products: "Hunting for bug
New article by our researchers Mikhail Klyuchnikov and Egor Dimitrenko about unauth RCEs in VMware products: "Hunting for bugs in VMware: View Planner and vRealize Business for Cloud". Read the article: https://swarm.ptsecurity.com/hunting-for-bugs-in-vmware-view-planner-and-vrealize-business-for-cloud/ This is the first article about our VMware research. More to come!

APT
16 260
KrbRelay The only public tool for relaying Kerberos tickets and the only relaying framework written in C#. https://github.com
KrbRelay The only public tool for relaying Kerberos tickets and the only relaying framework written in C#. https://github.com/cube0x0/KrbRelay #ad #kerberos #relay

APT
16 260
SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022–22718) Research: https://research.ifcr.dk/spoolfool-windows-p
SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022–22718) Research: https://research.ifcr.dk/spoolfool-windows-print-spooler-privilege-escalation-cve-2022-22718-bf7752b68d81 Exploit: https://github.com/ly4k/SpoolFool #windows #print #spooler #lpe #exploit

APT
16 260
EDRChecker Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, comm
EDRChecker Checks running processes, process metadata, Dlls loaded into your current process and the each DLLs metadata, common install directories, installed services and each service binaries metadata, installed drivers and each drivers metadata, all for the presence of known defensive products such as AV's, EDR's and logging tools. C# https://github.com/PwnDexter/SharpEDRChecker PowerShell https://github.com/PwnDexter/Invoke-EDRChecker #edr #checker #csharp #powershell #tools

APT
16 260
Authentication and Authorization Testing Mindmap https://drive.google.com/file/d/1Jt1wzmgG3vDhU-vppms_KhP2ffvcMlD_/view #apps
Authentication and Authorization Testing Mindmap https://drive.google.com/file/d/1Jt1wzmgG3vDhU-vppms_KhP2ffvcMlD_/view #appsec #mindmap #auth #testing

APT
16 260
Вакансия Компания Angara Security (https://www.angarasecurity.ru/) (Π“Πš Ангара) Π² ΠΎΡ‚Π΄Π΅Π» Π°Π½Π°Π»ΠΈΠ·Π° защищСнности ΠΈΡ‰Π΅Ρ‚ экспСрта ΠΏΠΎ Π°Π½Π°Π»ΠΈΠ·Ρƒ защищСнности ΠΏΡ€ΠΈΠ»ΠΎΠΆΠ΅Π½ΠΈΠΉ. Π§Π΅ΠΌ прСдстоит Π·Π°Π½ΠΈΠΌΠ°Ρ‚ΡŒΡΡ: ОсновноС: β€” ΠΏΡ€ΠΎΠ²Π΅Π΄Π΅Π½ΠΈΠ΅ Π°Π½Π°Π»ΠΈΠ·Π° защищСнности ΠΈ тСстирования Π½Π° ΠΏΡ€ΠΎΠ½ΠΈΠΊΠ½ΠΎΠ²Π΅Π½ΠΈΠ΅ Π²Π΅Π± ΠΈ/ΠΈΠ»ΠΈ ΠΌΠΎΠ±ΠΈΠ»ΡŒΠ½Ρ‹Ρ… ΠΏΡ€ΠΈΠ»ΠΎΠΆΠ΅Π½ΠΈΠΉ (Π³Π΄Π΅ скилла ΠΈ Π·Π°Π΄ΠΎΡ€Π° большС Ρ…Π²Π°Ρ‚ΠΈΡ‚) β€” ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠ°Π½ΠΈΠ΅ Π² Π°ΠΊΡ‚ΡƒΠ°Π»ΡŒΠ½ΠΎΠΌ состоянии ΡΡƒΡ‰Π΅ΡΡ‚Π²ΡƒΡŽΡ‰Π΅ΠΉ Π±Π°Π·Ρ‹ Π·Π½Π°Π½ΠΈΠΉ ΠΏΠΎ Π½Π°ΠΏΡ€Π°Π²Π»Π΅Π½ΠΈΡŽ Π°Π½Π°Π»ΠΈΠ·Π° защищСнности ΠΏΡ€ΠΈΠ»ΠΎΠΆΠ΅Π½ΠΈΠΉ β€” ΡƒΠ»ΡƒΡ‡ΡˆΠ΅Π½ΠΈΠ΅ качСства выполнСния Π²Ρ‹ΡˆΠ΅ΡƒΠΊΠ°Π·Π°Π½Ρ‹Ρ… Ρ€Π°Π±ΠΎΡ‚ β€” участиС Π² Red Team ΠΏΡ€ΠΎΠ΅ΠΊΡ‚Π°Ρ… Помимо (Ссли Π±ΡƒΠ΄Π΅Ρ‚ ΠΆΠ΅Π»Π°Π½ΠΈΠ΅ ΠΈ Π²ΠΎΠ·ΠΌΠΎΠΆΠ½ΠΎΡΡ‚ΡŒ): β€” ΠΏΡ€ΠΎΠ²Π΅Π΄Π΅Π½ΠΈΠ΅ инфраструктурных тСстирований Π½Π° ΠΏΡ€ΠΎΠ½ΠΈΠΊΠ½ΠΎΠ²Π΅Π½ΠΈΠ΅ (внСшка/внутряк) β€” тСстированиС с ΠΏΡ€ΠΈΠΌΠ΅Π½Π΅Π½ΠΈΠ΅ΠΌ ΠΌΠ΅Ρ‚ΠΎΠ΄ΠΎΠ² ΡΠΎΡ†ΠΈΠ°Π»ΡŒΠ½ΠΎΠΉ ΠΈΠ½ΠΆΠ΅Π½Π΅Ρ€ΠΈΠΈ β€” ΠΈΠ½Ρ‹Π΅ активности, связанныС с пСнтСстом ΠΈ Π°Π½Π°Π»ΠΈΠ·ΠΎΠΌ защищСнности Π§Π΅Π³ΠΎ ΠΎΠΆΠΈΠ΄Π°Π΅ΠΌ ΠΎΡ‚ ΠΊΠ°Π½Π΄ΠΈΠ΄Π°Ρ‚Π°: β€” Π½Π°Π»ΠΈΡ‡ΠΈΠ΅ ΠΎΠ±Ρ‰Π΅ΠΉ Π˜Π‘-шной Π±Π°Π·Ρ‹ ΠΏΠΎ ΠΎΠΏΠ΅Ρ€Π°Ρ†ΠΈΠΎΠ½Π½Ρ‹ΠΌ систСмам, ΠΊΠΎΠΌΠΏΡŒΡŽΡ‚Π΅Ρ€Π½Ρ‹ΠΌ сСтям, Π²Π΅Π±-тСхнологиям, ΠΏΡ€ΠΎΠ³Ρ€Π°ΠΌΠΌΠΈΡ€ΠΎΠ²Π°Π½ΠΈΡŽ, ΠΊΡ€ΠΈΠΏΡ‚ΠΎΠ³Ρ€Π°Ρ„ΠΈΠΈ β€” Π°Π΄Π΅ΠΊΠ²Π°Ρ‚Π½ΠΎΠ΅ ΠΏΠΎΠ½ΠΈΠΌΠ°Π½ΠΈΠ΅ Ρ‚ΠΈΠΏΠΎΠ²Ρ‹Ρ… уязвимостСй ΠΈ Π°Ρ‚Π°ΠΊ Π½Π° прилоТСния (хотя Π±Ρ‹ ΠΈΠ· списка OWASP Π½Π° ΡƒΡ€ΠΎΠ²Π½Π΅ "ΠΌΠΎΠ³Ρƒ ΠΎΠ±ΡŠΡΡΠ½ΠΈΡ‚ΡŒ ΠΊΠ°ΠΊ Ρ€Π°Π±ΠΎΡ‚Π°Π΅Ρ‚ ΠΏΠΎΠ΄ ΠΊΠ°ΠΏΠΎΡ‚ΠΎΠΌ ΠΈ ΠΏΠΎΠΊΠ°Π·Π°Ρ‚ΡŒ ΠΏΡ€ΠΈΠΌΠ΅Ρ€ эксплуатации Π½Π° ΠΏΡ€Π°ΠΊΡ‚ΠΈΠΊΠ΅") β€” Ρ…ΠΎΡ€ΠΎΡˆΠ΅Π΅ ΠΏΠΎΠ½ΠΈΠΌΠ°Π½ΠΈΠ΅ ΠΎΠ±Ρ‰Π΅ΠΉ ΠΌΠ΅Ρ‚ΠΎΠ΄ΠΎΠ»ΠΎΠ³ΠΈΠΈ тСстирования Π½Π° ΠΏΡ€ΠΎΠ½ΠΈΠΊΠ½ΠΎΠ²Π΅Π½ΠΈΠ΅ (ΠΊΠ°ΠΊΠΎΠΉ этап Π·Π° ΠΊΠ°ΠΊΠΈΠΌ ΠΈΠ΄Π΅Ρ‚, ΠΊΠ°ΠΊΠΈΠ΅ дСйствия Π½Π° ΠΊΠ°ΠΆΠ΄ΠΎΠΌ этапС Π½ΡƒΠΆΠ½ΠΎ Π²Ρ‹ΠΏΠΎΠ»Π½ΡΡ‚ΡŒ, ΠΊΠ°ΠΊΠΈΠΌΠΈ инструмСнтами) β€” ΡƒΠ²Π΅Ρ€Π΅Π½Π½ΠΎΠ΅ Π²Π»Π°Π΄Π΅Π½ΠΈΠ΅ Ρ‚ΠΈΠΏΠΎΠ²Ρ‹ΠΌ инструмСнтариСм пСнтСстСра Π§Ρ‚ΠΎ ΠΌΡ‹ Π³ΠΎΡ‚ΠΎΠ²Ρ‹ ΠΏΡ€Π΅Π΄Π»ΠΎΠΆΠΈΡ‚ΡŒ: β€” ΠΊΠΎΠ½ΠΊΡƒΡ€Π΅Π½Ρ‚ΠΎΡΠΏΠΎΡΠΎΠ±Π½ΡƒΡŽ Π—ΠŸ с Π³ΠΎΠ΄ΠΎΠ²Ρ‹ΠΌΠΈ прСмиями β€” Ρ€Π°Π·Π½ΠΎΠΎΠ±Ρ€Π°Π·ΠΈΠ΅ ΠΏΡ€ΠΎΠ΅ΠΊΡ‚ΠΎΠ² ΠΈ ΠΊΠ»ΠΈΠ΅Π½Ρ‚ΠΎΠ² (ΠΎΡ‚ Ρ€Π°Π·ΠΎΠ²Ρ‹Ρ… тСстирований Π΄ΠΎ Π³ΠΎΠ΄ΠΎΠ²Ρ‹Ρ… ΠΏΡ€ΠΎΠ΅ΠΊΡ‚ΠΎΠ² с большим интСрСсным скоупом) β€” Π³ΠΈΠ±Ρ€ΠΈΠ΄Π½Ρ‹ΠΉ Ρ„ΠΎΡ€ΠΌΠ°Ρ‚ Ρ€Π°Π±ΠΎΡ‚Ρ‹ ΡƒΠ΄Π°Π»Π΅Π½ΠΊΠ°/офис (ΠΏΠΎΠ»Π½ΠΎΠΉ ΡƒΠ΄Π°Π»Π΅Π½ΠΊΠΈ Π½Π΅Ρ‚) β€” Π”ΠœΠ‘ со стоматологиСй β€” ΠΏΡ€ΠΎΡ„ΠΈΠ»ΡŒΠ½Ρ‹Π΅ сСртификации ΠΈ ΠΊΠΎΠ½Ρ„Π΅Ρ€Π΅Π½Ρ†ΠΈΠΈ Π·Π° счСт работодатСля β€” Π²Π½ΡƒΡ‚Ρ€Π΅Π½Π½ΠΈΠ΅ рСлакс-мСроприятия Π² Ρ€Π°ΠΌΠΊΠ°Ρ… офиса Π£Π·Π½Π°Ρ‚ΡŒ подробности ΠΎ вакансии ΠΈΠ»ΠΈ сразу Π½Π°ΠΏΡ€Π°Π²ΠΈΡ‚ΡŒ своС Ρ€Π΅Π·ΡŽΠΌΠ΅ ΠΌΠΎΠΆΠ½ΠΎ сюда: β€” Π’ΠΈΠΌΠ»ΠΈΠ΄ (Telegram) β€” HR (telegram, m.brigadnova@angaratech.ru)