𝙍𝙤𝙤𝙩𝙎𝙚𝙘
Open in Telegram
Free content of OFF-SEC, SANS, ec-council, INE, eLearnSecurity, udemy coupons and many more #Malware_analysis #RootSec
Show more1 774
Subscribers
+224 hours
+127 days
+2830 days
Posts Archive
1 774
#Whitepaper
#Cloud_Security
"Focused vs Dump-Everything Ingestion for GCP and Kubernetes SIEM Pipelines", Mar. 2026.
// These findings provide practitioner guidance for evidence-driven log selection and validation to balance audit coverage against ingest cost and operational noise in cloud SIEM pipelines
1 774
#Whitepaper
#Mobile_security
"Can Root Detection Be Trusted? A Study of Bypass Techniques on Mobile Platforms", Mar. 2026.
// This paper investigates the resilience of current Android root detection mechanisms against a hierarchy of modern bypass techniques. By developing a custom test instrument containing static (RootBeer), active (freeRASP), and remote (Play Integrity) detection methods, we subjected a Google Pixel 8a running Android 16 to a series of escalating bypass attempts
1 774
#AppSec
#WebApp_Security
"A Large-Scale Study of Telegram Bots", Mar. 2027.
]-> Dataset
// This research provides the first large-scale characterization of Telegram bots by analyzing over 32K bots and 492M messages. The authors developed an automated interaction system to classify bots, uncovering both beneficial applications and sophisticated malicious infrastructures
1 774
#Whitepaper
#Offensive_security
"Leveraging Generative AI for Password Cracking Efficiency Under Resource Constraints", Jan. 2026.
// The purpose of this research is to investigate whether GenAI can alleviate the hardware and financial burdens of password cracking/recovery while maintaining or even improving cracking success rates...
1 774
#AppSec
#Cloud_Security
1⃣ gRPC-Go Auth bypass via missing leading slash
https://github.com/grpc/grpc-go/security/advisories/GHSA-p77j-4mvh-x3m3
// CVE-2026-33186
2⃣ RCE in Google Cloud with Single Directory Deletion
https://flatt.tech/research/posts/remote-command-execution-in-google-cloud-with-single-directory-deletion
// RCE in Google Cloud's Looker was exploited via directory deletion race conditions and misconfigured permissions, leading to arbitrary code execution and privilege escalation
1 774
#Whitepaper
#Blue_Team_Techniques
"Enhancing Linux Threat Detection: A Sysmon - Based Approach to Identifying Sandworm TTPs", Mar. 2026.
// Linux systems have become foundational across modern IT enterprises. Threat actors are increasingly targeting Linux systems, including well - known APTs such as Sandworm. This research evaluates the effectiveness of Sysmon for Linux in detecting Sandworm TTPs compared to the more established Linux auditd
1 774
#tools
#DFIR
#Research
#Whitepaper
"Assessing the Impact of Memory Acquisition on Key Windows Artifacts", Feb. 2026.
// This research evaluates the impact of memory capture tools on data at rest, aiming to understand the degree of change that occurs to artifacts, measure differences based on tool selection, and inform best practices for live responders
1 774
Repost from 🇮🇳WIZARDSEC🦅
+4
Official Statement from 👺 Wizardsec 🇮🇳
In response to the persistent and malicious cyber attacks targeting India's critical infrastructure, we have taken decisive action to defend our nation's digital sovereignty.
Anti Indian Activites, Hating India For No Reason .
As a result, a comprehensive counter-operation has been launched, focusing on key infrastructure in Dhaka, Bangladesh.
Confirmed Compromises:
Our team has successfully compromised 11 SCADA systems in Dhaka, including: 🇧🇩
1 . Military Museum
2. NAM1
3. NITOR
4. Iqbal Road
5. Dhaka College
6. Mohila Hostel
7. BWDB
8. Green Life
9. Baitul Aman 17
10. Mansurabad4
11. Naam Green
Proof of Concept:
Evidence of these compromises has been uploaded, serving as a demonstration of our capabilities and a testament to the severity of the situation.
Warning and Advisory:
We urge all parties involved in the ongoing cyber attacks against India to cease their malicious activities immediately. Failure to do so will be met with further, more severe countermeasures. We consider this a formal warning and advise all entities to respect India's cyber boundaries.
Conclusion:
Wizardsec will continue to defend India's cyber infrastructure with unwavering dedication and unrelenting resolve. We will not hesitate to respond to future attacks with proportional force, ensuring the security and integrity of our nation's digital assets.
Sincerely,
👼 @Wizardsec 😈
