es
Feedback
Source Byte

Source Byte

Ir al canal en Telegram

هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187

Mostrar más
8 315
Suscriptores
-524 horas
-187 días
-5930 días
Archivo de publicaciones
Repost from Private Shizo
🔥RedEye is an open-source analytic tool developed by CISA and DOE’s Pacific Northwest National Laboratory to assist Red Teams with visualizing and reporting command and control activities. This tool allows an operator to assess and display complex data, evaluate mitigation strategies, and enable effective decision making in response to a Red Team assessment. The tool parses logs, such as those from Cobalt Strike, and presents the data in an easily digestible format. The users can then tag and add comments to activities displayed within the tool. RedEye can assist an operator to efficiently: ⚙️Replay and demonstrate Red Team’s assessment activities as they occurred rather than manually pouring through thousands of lines of log text. ⚙️Display and evaluate complex assessment data to enable effective decision making. ⚙️Gain a clearer understanding of the attack path taken and the hosts compromised during a Red Team assessment or penetration test.

Repost from Private Shizo
photo content

Malware repository https://github.com/cryptwareapps/Malware-Database #malware_analysis -------- @islemolecule_source

Flying Under the Radar: Abusing GitHub for Malicious Infrastructure https://www.recordedfuture.com/flying-under-the-radar-abusing-github-malicious-infrastructure #c2 , ——— @islemolecule_source

Tutorial - Writing Hardcoded Windows Shellcodes (32bit) LinK #shellcode _____ @islemolecule_source

X86 Opcode and Instruction Reference LinK #shellcode _____ @islemolecule_source

VT Query - behaviour:Local\\Kasimir_* AND behaviour:Local\\azov AND tag:64bits AND (behaviour_files:RESTORE_FILES OR behaviour_registry:rdpclient.exe)

The internals of Javascript Engine! https://youtube.com/watch?v=qf1KhBCaWNY The execution context and stack in Javascript! https://youtube.com/watch?v=3Ywr7MPxBKA Execution Stack in Chrome: Live Demo! https://youtube.com/watch?v=-UnIbstX_0A The what and why of max call stack in Javascript! https://youtube.com/watch?v=qc3aEKrohKc #javascript_internals , #javascript_engine ——— @islemolecule_source

Math for Security.epub8.18 MB

photo content

Stuxnet_to_Sunburst_20_Years_of_Digital_Exploitation_and_Cyber_Warfare.pdf6.28 MB

photo content

F#ck AMSI! How to bypass Antimalware Scan Interface and infect Windows https://hackmag.com/security/fck-amsi/ #windows #malware_dev @islemolecule_source

Microsoft Open Source Code of Conduct (implement of DNS , AMASI ,....) LInK #windows #win_api @islemolecule_source

Why Protected Processes Are A Bad Idea Link #windows #threat_hunting @islemolecule_source

The Evolution of Protected Processes – Part 1 link The Evolution of Protected Processes – Part 2 link #windows #threat_hunting @islemolecule_source

#malware #reversing Показано как с помощью параметра SectionAlignment создать исполняемый файл с пустым PE-заголовком. https://secret.club/2023/06/05/spoof-pe-sections.html

NtDoc Native API online documentation, based on the System Informer (formerly Process Hacker) phnt headers https://ntdoc.m417z.com/ #windows #win_api @islemolecule_source