ru
Feedback
Source Byte

Source Byte

Открыть в Telegram

هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187

Больше
8 129
Подписчики
+1524 часа
+627 дней
+29330 день
Архив постов
Pay2Key: A New Player in the RaaS Market with an Eye on Russia
Threat Intelligence F6 analysts have studied the Pay2Key ransomware service, which has been distributed on Russian-language cybercriminal forums using the RaaS model since late February 2025.

Repost from N/a
UACMe
Defeating Windows User Account Control by abusing built-in Windows AutoElevate backdoor. This project demonstrates various UAC bypass techniques and serves as an educational resource for understanding Windows security mechanisms.
#uac_bypass

Hardware-Backed Telemetry for Detecting Out-Of-Context Execution https://www.preludesecurity.com/runtime-memory-protection

UAC-0001 cyberattacks on the security and defense sector using the LAMEHUG software tool using the LLM (Large Language Model) (CERT-UA#16039) https://cert.gov.ua/article/6284730

Repost from SoheilSec
Iran CTI Report-War Time.pdf1.61 MB

Repost from K4YT3X's Channel
Binja 啥时候加了 pseudo rust,真意外
Binja 啥时候加了 pseudo rust,真意外

Repost from N/a
Red Team Tactics: Writing Windows Kernel Drivers for Advanced Persistence (Part 1) Red Team Tactics: Writing Windows Kernel Drivers for Advanced Persistence (Part 2)
This post, as indicated by the title, will cover the topic of writing Windows kernel drivers for advanced persistence. Because the subject matter is relatively complex, I have decided to divide the project into a three or a four part series. This being the first post in the series, it will cover the fundamental information you need to know to get started with kernel development. This includes setting up a development environment, configuring remote kernel debugging and writing your first “Hello World” driver.

Repost from OS Internals
🔍 قابل توجه علاقه‌مندان به امنیت سیستم‌عامل و توسعه اکسپلویت در لینوکس من همیشه به تدریس علاقه‌مند بوده‌ام؛ نه صرفاً آموزش تئوری، بلکه انتقال واقعی تجربه‌ها و درک عمیق مفاهیم فنی. از سال‌ها پیش، تمرکزم روی internal سیستم‌عامل‌ها—به‌ویژه ویندوز و لینوکس—و مباحث امنیتی بوده و سعی کرده‌ام این مطالب تخصصی را به زبانی ساده، کاربردی و قابل‌فهم برای دیگران ارائه دهم. 🎓 حالا نوبت یک قدم جدید و متفاوت رسیده: «دوره‌ی Exploit Development در لینوکس» از تحلیل آسیب‌پذیری‌ واقعی گرفته تا نوشتن اکسپلویت‌های عملی و کاربردی. اما تصمیم گرفتم یک شرط خاص برای انتشار این دوره بگذارم: 🎯 اگر اعضای کانالم به ۵۰۰۰ نفر برسند، دوره را به صورت کامل و رایگان منتشر می‌کنم. بیش از ۲۰ ساعت ویدئو و تمرین عملی بدون تبلیغات، بدون پرداخت هزینه—صرفاً برای این‌که دانش تخصصی، راحت‌تر و بی‌واسطه به دست کسانی برسه که واقعاً به یادگیری اهمیت می‌دن. 🧠 اگر شما هم به این مسیر علاقه‌مندید یا فکر می‌کنید افراد دیگری در اطرافتان هستند که این محتوا به دردشان می‌خورد، خوشحال می‌شم با معرفی کانالم به دوستان‌تان از این پروژه حمایت کنید. 📎 لینک کانال: https://t.me/OxAA55 ✍️راستی سرفصل دوره رو هم می‌تونید در لینک زیر مشاهده کنید: https://t.me/OxAA55/140

Repost from K4YT3X's Channel
发了一个新版本 (1.1.0),这个版本: - 把注入换成 DLL 了方便塞进更多逻辑 - 添加了随机窗口标签的功能 - 添加了隐藏 Evanesco 自己窗口的功能 - 设置窗口 - 修复了显示窗口的时候会把用户看不到的窗口也显示出来的问题 - 做
发了一个新版本 (1.1.0),这个版本: - 把注入换成 DLL 了方便塞进更多逻辑 - 添加了随机窗口标签的功能 - 添加了隐藏 Evanesco 自己窗口的功能 - 设置窗口 - 修复了显示窗口的时候会把用户看不到的窗口也显示出来的问题 - 做了个 Wnidows 安装包方便安装 https://github.com/k4yt3x/Evanesco/releases/tag/1.1.0

Repost from SoheilSec
دوره RTO شروع دوره 17 مرداد مدت زمان دوره در 4 جلسه 8 ساعته که کلا 32 ساعت روزهای برگزاری جمعه ها 8 تا 16 دوره به صورت آنلاین می‌باشد. در صورتی که سرفصل تکمیل نشود تایم اضافه خواهد شد. دوره به صورت عملی با سناریو شبیه سازی APT بر روی LAB شخصی سازی شده می‌باشد. سرفصل ضمیمه شد هر روز شامل چندین موضوع می‌باشد که همراه با حل تمرین در لب می‌باشد. قیمت دوره 15 تومن نمونه تدریس https://www.youtube.com/@soheilsec/playlists سوال در مورد دوره @soheilsec

Repost from Handala Hack
+1
As of now, the main message-receiving account of Iran International has been fully breached and taken over. This channel, long used as a so-called "secure line" for communication with informants, spies, traitors, and foreign agents, is now under our complete control. During this operation, all incoming messages, attachments, reports, images, and videos shared with this channel have been extracted in full. The content has been processed and cross-referenced against multiple intelligence and identification databases. We now possess the full identity profiles of over 71,000 individuals who have contacted this network. These names and data are now classified, indexed, and archived. Selected portions will be released soon. Our analysis confirms the existence of a media-based espionage and influence network directed by Mossad, operating under the false flag of “independent journalism”. To everyone who has reached out to this network: You are being watched. Your information has been logged. And your reckoning is near. This is not just a hack. This is a direct declaration of presence by the resistance inside the heart of enemy systems. Expect us. We are closer than you think. @Handala_Channel #Handala

.

Demystifying Firmware Blobs in Linux
Posted Jul 5, 2025 Updated Jul 5, 2025 By Iman Seyed
Most Linux systems rely on binary blobs to activate the full capabilities of hardware like Bluetooth and Wi-Fi chips. But what are these blobs, and how does the kernel load them?

this report is bullshit or is related to past incidents here is statement of the Datin company :
this report is bullshit or is related to past incidents here is statement of the Datin company :

#Analytics "Red Canary Threat Detection Report: Techniques, Trends, & Takeaways",  2025.

Сеть «Iran Hayom» публикует антиизраильскую пропаганду на иврите и английском языке в X , Instagram , TikTok , Telegram и YouTube . Ее название является игрой слов на популярной израильской газете Israel Hayom , которая публикуется на иврите на israelhayom[.]co[.]il и чей английский веб-сайт israelhayom[.]com . Логотип Iran Hayom даже заимствует элементы дизайна из Israel Hayom . https://www.fdd.org/analysis/2025/07/01/fdd-connects-anti-israel-network-on-social-media-to-iranian-website-pro-regime-actor/

ما انتشار این سند را ضربه‌ای بنیادین به یکی از پروژه‌های راهبردی و گسترده رژیم صهیونیستی در داخل ایران می‌دانیم. افشای این الگوی عملیاتی می‌تواند مسیر جدیدی در تحلیل‌ تهدیدات سایبری مبتنی بر نفوذ سخت‌افزاری ایجاد کند و لازم است این الگو در بررسی‌های آتی به‌عنوان یک چارچوب مرجع مورد استفاده و پیگیری قرار گیرد.