Source Byte
Открыть в Telegram
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
Больше8 322
Подписчики
-224 часа
-157 дней
-6230 дней
Архив постов
8 322
if you want to using Function stomping technique you have to know this about windows:
Kernel32.dll, a common DLL, might have different addresses in two processes(ASLR), but functions like VirtualAlloc, exported from Kernel32.dll, will have the same address in both processes.example: Link
8 322
Repost from Волосатый бублик
[ Testing LFI in Windows: How I (never) got a $30000 bounty ]
Another great post by adeadfed!
https://adeadfed.com/posts/testing-lfi-in-windows-how-i-never-got-a-30000-bounty/
8 322
One of the "essential" windows auditing tools, add my other favorites like rpcview, process hacker, sysinternals, ghidra, wireshark xpe viewer, windbg, imhex and visual studio. Get James Forshaw's NtObjectManager thing too, seems useful for parsing MIDL like rpcviewer.
PipeViewer - A Tool That Shows Detailed Information About Named Pipes In Windows
https://github.com/cyberark/PipeViewer
credit : Eviatar Gerzi
#tweet , source
8 322
8 322
NIST Cybersecurity Framework
https://www.youtube.com/playlist?list=PLxC28bkWNxkM1AVwmhF0Xfbs8F-NMox0I
8 322
https://github.com/BlackHat-Ashura/Reflective_DLL_Injection
Program to Inject a DLL into a process from memory
8 322
List of callbacks and codes that we can use them to execute shellcode
(Alternative Shellcode Execution Via Callbacks)
https://github.com/aahmad097/AlternativeShellcodeExec
#malware_dev
8 322
Malware Dev Reading List
https://gist.github.com/0prrr/c0954a638c55ab4b39e8b02ef312e806
#malware_dev
8 322
ICS410 ICS/SCADA Security Essentials 2024
https://learnflakes.net/?p=rss&action=download&tid=55146&pk=666d37941e65bc27c1a86ebf627979332c5ef3ec
8 322
Repost from 1N73LL1G3NC3
💋 GamingServiceEoP by [ Filip Dragović @filip_dragovic ]
Exploit for arbitrary folder move in GamingService component of Xbox. GamingService is not default service. If service is installed on system it allows low privilege users to escalate to system.
8 322
Palo Alto GlobalProtect EoP
(CVE-2024-2432)
https://github.com/Hagrid29/CVE-2024-2432-PaloAlto-GlobalProtect-EoP
