fa
Feedback
APT

APT

رفتن به کانال در Telegram

This channel discusses: — Offensive Security — RedTeam — Malware Research — OSINT — etc Disclaimer: t.me/APT_Notes/6 Chat Link: t.me/APT_Notes_PublicChat

نمایش بیشتر

📈 تحلیل کانال تلگرام APT

کانال APT (@apt_notes) در بخش زبانی انگلیسی بازیگری فعال است. در حال حاضر جامعه شامل 16 228 مشترک است و جایگاه 7 792 را در دسته فناوری و برنامه‌ها و رتبه 40 467 را در منطقه روسيا دارد.

📊 شاخص‌های مخاطب و پویایی

از زمان ایجاد در невідомо، پروژه رشد سریعی داشته و 16 228 مشترک جذب کرده است.

بر اساس آخرین داده‌ها در تاریخ 28 اوت, 2026، کانال فعالیت پایداری دارد. در ۳۰ روز گذشته تغییر اعضا برابر 568 و در ۲۴ ساعت گذشته برابر 7 بوده و همچنان دسترسی گسترده‌ای حفظ شده است.

  • وضعیت تأیید: تأیید نشده
  • نرخ تعامل (ER): میانگین تعامل مخاطب 36.00% است و در ۲۴ ساعت نخست پس از انتشار، محتوا معمولاً 18.09% واکنش نسبت به کل مشترکان کسب می‌کند.
  • دسترسی پست‌ها: هر پست به طور میانگین 5 837 بازدید دریافت می‌کند. در اولین روز معمولاً 2 934 بازدید جمع‌آوری می‌شود.
  • واکنش‌ها و تعامل: مخاطبان به‌طور فعال حمایت می‌کنند؛ میانگین واکنش به هر پست 28 است.

📝 توضیح و سیاست محتوایی

نویسنده این فضا را محل بیان دیدگاه‌های شخصی توصیف می‌کند:
This channel discusses: — Offensive Security — RedTeam — Malware Research — OSINT — etc Disclaimer: t.me/APT_Notes/6 Chat Link: t.me/APT_Notes_PublicChat

به لطف به‌روزرسانی‌های پرتکرار (آخرین داده در تاریخ 29 اوت, 2026)، کانال همواره به‌روز و دارای دسترسی بالاست. تحلیل‌ها نشان می‌دهد مخاطبان به‌طور فعال با محتوا تعامل دارند و آن را به نقطه اثرگذاری مهم در دسته فناوری و برنامه‌ها تبدیل کرده‌اند.

16 228
مشترکین
+724 ساعت
+1047 روز
+56830 روز
آرشیو پست ها
APT
16 228
Эта работа заслуживает внимание! Если кратко, то механизм MS UIA позволяет читать любые текстовые значения на экране, открыва
Эта работа заслуживает внимание! Если кратко, то механизм MS UIA позволяет читать любые текстовые значения на экране, открывать меню, закрывать окна, ну и все такое)) А раз он дает такие возможности, то этим нужно пользоваться... Как пример, PoC от @Michaelzhm: https://github.com/CICADA8-Research/Spyndicapped Не думаю, что на данную технику вообще есть какие-то детекты. Все подробности в блоге. #redteam #pentest #spyware

APT
16 228
🎉 Happy New Year! Дорогие друзья и подписчики канала, Прошедший год был полон увлекательных открытий и новых достижений. Спа
🎉 Happy New Year! Дорогие друзья и подписчики канала, Прошедший год был полон увлекательных открытий и новых достижений. Спасибо, что все это время оставались с нами, делились знаниями, юмором и поддержкой. В новом году желаю нам всем оставаться открытыми друг для друга, ведь самое ценное в нашем сообществе — это люди. Пусть ваши проекты будут изящнее, а сердца — теплее. Не забывайте отдыхать, любить и проводить время с близкими. Счастливого Нового года и до встречи в 2025-м! ❤️✨ ——— Dear friends and subscribers, The past year has been filled with exciting discoveries and new achievements. Thank you for staying with us all this time, sharing knowledge, humor, and support. In the new year, I wish for all of us to remain open to one another, because the most valuable thing in our community is its people. May your projects become more elegant and your hearts grow warmer. Don’t forget to rest, love, and spend time with your loved ones. Happy New Year, and see you in 2025! ❤️✨

APT
16 228
.

APT
16 228
Repost from Offensive Xwitter
😈 [ ap @decoder_it ] M'm glad to release the tool I have been working hard on the last month: #KrbRelayEx A Kerberos relay &
😈 [ ap @decoder_it ] M'm glad to release the tool I have been working hard on the last month: #KrbRelayEx A Kerberos relay & forwarder for MiTM attacks! >Relays Kerberos AP-REQ tickets >Manages multiple SMB consoles >Works on Win& Linux with .NET 8.0 >... GitHub: 🔗 https://github.com/decoder-it/KrbRelayEx 🐥 [ tweet ]

APT
16 228
🎭 Spoofing Call Stacks To Confuse EDRs The article focuses on techniques for call stack spoofing to bypass detection by EDR.
🎭 Spoofing Call Stacks To Confuse EDRs The article focuses on techniques for call stack spoofing to bypass detection by EDR. It explains how to fake call stacks during Windows API interactions to mask malicious activity, such as accessing the lsass process, as legitimate operations. The text details the mechanics of call stacks in the x64 architecture, the use of unwind codes, tools for analysis, and provides a PoC implementation demonstrating call stack spoofing in practice. 🔗 Research: https://labs.withsecure.com/publications/spoofing-call-stacks-to-confuse-edrs 🔗 Source: https://github.com/WithSecureLabs/CallStackSpoofer #edr #evasion #stack #spoofing #lsass

APT
16 228
📜 ADCS Attack Techniques Cheatsheet This is a handy table outlining the various methods of attack against Active Directory Certificate Services (ADCS) 🔗 Source: https://docs.google.com/spreadsheets/d/1E5SDC5cwXWz36rPP_TXhhAvTvqz2RGnMYXieu4ZHx64/edit?gid=0#gid=0 #ad #adcs #esc #cheatsheet

APT
16 228
🔑 PanGPA Extractor Tool to extract username and password of current user from PanGPA in plaintext under Windows. Palo Alto N
🔑 PanGPA Extractor Tool to extract username and password of current user from PanGPA in plaintext under Windows. Palo Alto Networks GlobalProtect client queries the GlobalProtect Service for your username and password everytime you log on or refresh the connection. 🔗 Research: https://shells.systems/extracting-plaintext-credentials-from-palo-alto-global-protect/ 🔗 Source: https://github.com/t3hbb/PanGP_Extractor #paloalto #globalprotect #credentials #dump

APT
16 228
Repost from Offensive Xwitter
😈 [ Synacktiv @Synacktiv ] Oh, you didn't know? Cool kids are now relaying Kerberos over SMB 😏 Check out our latest blogpost by @hugow_vincent to discover how to perform this attack: 🔗 https://www.synacktiv.com/publications/relaying-kerberos-over-smb-using-krbrelayx 🐥 [ tweet ]

APT
16 228
🛡️ Palo Alto PAN-OS Pre-Auth RCE Chain (CVE-2024-0012 & CVE-2024-9474) A critical vulnerability chain in Palo Alto PAN-OS, c
🛡️ Palo Alto PAN-OS Pre-Auth RCE Chain (CVE-2024-0012 & CVE-2024-9474) A critical vulnerability chain in Palo Alto PAN-OS, combining an authentication bypass (CVE-2024-0012) and a command injection flaw (CVE-2024-9474) in the management web interface, allows unauthenticated attackers to execute arbitrary code with root privileges. 🛠 Affected Versions: — PAN-OS 11.2 (up to and including 11.2.4-h1) — PAN-OS 11.1 (up to and including 11.1.5-h1) — PAN-OS 11.0 (up to and including 11.0.6-h1) — PAN-OS 10.2 (up to and including 10.2.12-h2) 🔗 Research: https://labs.watchtowr.com/pots-and-pans-aka-an-sslvpn-palo-alto-pan-os-cve-2024-0012-and-cve-2024-9474/ 🔗 PoC: https://github.com/watchtowrlabs/palo-alto-panos-cve-2024-0012 🔗 Exploit: https://github.com/Chocapikk/CVE-2024-9474 #paloalto #panos #sslvpn #unauth #rce

APT
16 228
💻 RustiveDump LSASS memory dumper using only NTAPIs, creating a minimal minidump, built in Rust with no_std and independent of the C runtime (CRT). It can be compiled as shellcode (PIC), supports XOR encryption, and remote file transmission. 🚀 Features: — NT System Calls for Everything — No-Std and CRT-Independent — Position Independent Code (PIC) — Indirect NT Syscalls — Lean Memory Dump — XOR Encryption 🔗 Source: https://github.com/safedv/RustiveDump #lsass #indirect #syscall #pic #rust

APT
16 228
🚨 Fortinet FortiManager Unauthenticated RCE (CVE-2024-47575) The remote code execution vulnerability in FortiManager allows
🚨 Fortinet FortiManager Unauthenticated RCE (CVE-2024-47575) The remote code execution vulnerability in FortiManager allows attackers to perform arbitrary operations by exploiting commands via the FGFM protocol, circumventing authentication. Referred to as FortiJump, this vulnerability provides unauthorized access to FortiManager, enabling control over FortiGate devices by taking advantage of insufficient security in command handling and device registration processes. 🛠 Affected Versions:
FortiManager 7.6.0
FortiManager 7.4.0 through 7.4.4
FortiManager 7.2.0 through 7.2.7
FortiManager 7.0.0 through 7.0.12
FortiManager 6.4.0 through 6.4.14
FortiManager 6.2.0 through 6.2.12
FortiManager Cloud 7.4.1 through 7.4.4
FortiManager Cloud 7.2.1 through 7.2.7
FortiManager Cloud 7.0.1 through 7.0.12
FortiManager Cloud 6.4
🔗 Research: https://labs.watchtowr.com/hop-skip-fortijump-fortijumphigher-cve-2024-23113-cve-2024-47575/ 🔗 Source: https://github.com/watchtowrlabs/Fortijump-Exploit-CVE-2024-47575 #fortinet #fortimanager #fgfm #unauth #rce

APT
16 228
🌐 URLFinder URLFinder is a high-speed, passive URL discovery tool designed to simplify and accelerate web asset discovery, i
🌐 URLFinder URLFinder is a high-speed, passive URL discovery tool designed to simplify and accelerate web asset discovery, ideal for penetration testers, security researchers, and developers looking to gather URLs without active scanning. 🚀 Features: — Passive source discovery — JSON/file/stdout output — Optimized speed & efficiency 🔗 Source: https://github.com/projectdiscovery/urlfinder #url #domain #finder #osint

APT
16 228
⚙️ Citrix Virtual Apps and Desktops — Unauthenticated RCE This vulnerability in Citrix Virtual Apps and Desktops enables unauthorized users to achieve remote code execution through a misconfigured Microsoft Message Queuing (MSMQ) service accessible over HTTP. The issue stems from using an outdated BinaryFormatter for data deserialization, allowing attackers to run commands with SYSTEM privileges on the Citrix server. 🔗 Research: https://labs.watchtowr.com/visionaries-at-citrix-have-democratised-remote-network-access-citrix-virtual-apps-and-desktops-cve-unknown/ 🔗 Source: https://github.com/watchtowrlabs/Citrix-Virtual-Apps-XEN-Exploit #citrix #msmq #deserialization #unauth #rce

APT
16 228
✉️ Finding Email Addresses without Paywalls Every Pentester or Red Teamer has likely encountered situations where they need t
✉️ Finding Email Addresses without Paywalls Every Pentester or Red Teamer has likely encountered situations where they need to perform User Enumeration or Password Spraying, but where can you find a list of valid users? Snov.io, Hunter.io, and Phonebook.cz no longer provide easy access to email lists and instead hit you with a paywall. Here’s the solution — Prospeo! Just log in with Google SSO, enter the target domain, and get a list of email addresses with no strings attached. Source: https://app.prospeo.io/domain-search #user #email #enumeration #wordlist

APT
16 228
🧑‍💻Obsidian Web Clipper New extension that helps you highlight and capture the web in your browser. Anything you save is st
🧑‍💻Obsidian Web Clipper New extension that helps you highlight and capture the web in your browser. Anything you save is stored as durable Markdown files that you can read offline, and preserve for the long term. Source: https://obsidian.md/clipper #obsidian #markdown #extensions

APT
16 228
Repost from 1N73LL1G3NC3
BOFHound Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentine
BOFHound Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel. Blog Posts: • BOFHound: AD CS Integration • BOFHound: Session Integration • Granularize Your AD Recon Game Granularize Your AD Recon Game Part 2 P.S:
BOFHound can now parse Active Directory Certificate Services (AD CS) objects, manually queried from LDAP, for review and attack path mapping within BloodHound Community Edition (BHCE).

APT
16 228
Repost from 1N73LL1G3NC3
TypeLibWalker Hijack the TypeLib. New COM persistence technique So I decided to look for some new way of persistence. The obj
TypeLibWalker Hijack the TypeLib. New COM persistence technique So I decided to look for some new way of persistence. The object of study was the COM (Component Object Model) system. The choice was not made by chance, it is quite an old, not too simple and not too complex system that not many people understand. In this article, i will introduce TypeLib libraries, see the relationship between TypeLib and COM, and achieve persistent code execution using TypeLib.

APT
16 228
Repost from Offensive Xwitter
😈 [ Steph @w34kp455 ] Call it the biggest #NTLM #password database or monstrous #MD5 leak, but on, you can find precomputed
😈 [ Steph @w34kp455 ] Call it the biggest #NTLM #password database or monstrous #MD5 leak, but on, you can find precomputed datasets for various wordlists and different hashes - all free! FYI: all_in_one.latin.txt for NTLM contains 26.5 billion pairs of hash:password inside!🔥 🔗 http://weakpass.com 🐥 [ tweet ]

APT
16 228
🔔Call and Register — Relay Attack on WinReg RPC Client A critical vulnerability (CVE-2024-43532) has been identified in Micr
🔔Call and Register — Relay Attack on WinReg RPC Client A critical vulnerability (CVE-2024-43532) has been identified in Microsoft’s Remote Registry client. This flaw allows attackers to exploit insecure fallback mechanisms in the WinReg client, enabling them to relay authentication details and make unauthorized certificate requests through Active Directory Certificate Services (ADCS). 🔗 Research: https://www.akamai.com/blog/security-research/winreg-relay-vulnerability 🔗 RPC Visibility Tool: https://github.com/akamai/akamai-security-research/tree/main/rpc_toolkit/rpc_visibility 🔗 PoC: https://github.com/akamai/akamai-security-research/tree/main/PoCs/cve-2024-43532 #ad #adcs #rpc #ntlm #relay #etw #advapi

APT
16 228
💻 Exploiting Windows Kernel via Kernel Streaming Proxying An in-depth look at CVE-2024-30090, a vulnerability in Kernel Streaming, allowing privilege escalation via malformed IOCTL requests. By leveraging KS Event mishandling during 32-bit to 64-bit conversions, can exploit the bug pattern to gain arbitrary kernel mode access. 🔗 Research: Proxying to Kernel - Part I Proxying to Kernel - Part II 🔗 Source: https://github.com/Dor00tkit/CVE-2024-30090 #windows #streaming #kernel #cve #poc