Network Security Channel
Відкрити в Telegram
⭕️Start Channel From 2017⭕️ ✅ Security Operation Center (SOC) ✅ Bug Bounty ✅ Vulnerability ✅ Pentest ✅ Hardening ✅ Linux ✅ Reasearch ✅ Security Network ✅ Security Researcher ✅ DevSecOps ✅ Blue Team ✅ Red Team
Показати більше2 974
Підписники
Немає даних24 години
+127 днів
+3730 днів
Архів дописів
exploit.education provides a variety of resources that can be used to learn about vulnerability analysis, exploit development, software debugging, binary analysis, and general cyber security issues.
@Engineer_Computer
http://exploit.education/
⭕️ پروژه ای توسعه داده شده که Dropper ای از نوع Macro Office ها ایجاد میکند.
این پروژه با استفاده از DLL SideLoading و Embed کردن در LNK فایل اقدام به دور زدن Mark of The Web (MOTW) میکند.
https://github.com/SaadAhla/dropper
#RedTeam #MalDev
@Engineer_Computer
⭕️ بهرهبرداری از آسیبپذیری CVE-2022-1471، که یک آسیبپذیری Insecure Deserialization در کتابخانه SnakeYaml، برای اندروید هست.
https://www.linkedin.com/posts/kousha-zanjani_config-editor-lab-solution-activity-7190853578729648129-LqQX
https://www.youtube.com/watch?v=1H6EtFAKn-E
#Android
@Engineer_Computer
⭕️ کد جدیدی به جهت Dump کردن LSASS توسعه داده شده که قابلیت دور زدن AV و EDR های زیر را دارد:
Windows Defender Malwarebytes Anti-Malware CrowdStrike Falcon EDR (Falcon Complete + OverWatch)از جمله ویژگی های این کد میتوان مثال زد:
Manually implementing NTAPI operations through indirect system calls Disabling Breaking telemetry features (i.e ETW) Polymorphism through compile-time hash generation Obfuscating API function names and pointers Duplicating existing LSASS handles instead of opening new ones Creating offline copies of the LSASS process to perform memory dumps on Corrupting the MDMP signature of dropped files Probably other stuff I forgot to mention here#RedTeam #Evasion @Engineer_Computer
بررسی یک حمله گروه هکری APT28 از ابتدا تا تسلط کامل
https://medium.com/cyberscribers-exploring-cybersecurity/apt28-from-initial-damage-to-domain-controller-threats-in-an-hour-cert-ua-8399-1944dd6edcdf
@Engineer_Computer
سومین رویداد اتصالات و پیرینگ منطقه آسیای مرکزی(#CAPIF3) در تاریخ ۳ الی ۴ مهرماه امسال در شهر بیشکک کشور قرقیزستان برگزار خواهد شد.
این رویداد به زبانهای انگلیسی، روسی و فارسی خواهد بود.
اگر علاقهمند هستید در این رویداد در خصوص موضوعات زیر ارائه فنی داشته باشید، از طریق این لینک اقدام نمایید:
https://www.ripe.net/membership/meetings/regional-meetings/capif/capif-3/call-for-presentations/
موضوعات قابل ارائه:
· Managing IPv4 scarcity in operations
· Network migrations from IPv4 to IPv6
· Commercial transactions of IPv4 addresses
· Data center technologies
· Network and DNS operations
· Network monitoring and measurements
· Network management and automation
· Internet governance and regulatory practices
· Network and routing security
· Internet peering and mobile data exchange
لینک دسترسی به فرم ثبتنام و درخواست ارائه فنی در رویداد:
https://www.ripe.net/membership/meetings/regional-meetings/capif/capif-3/
پ.ن: ویزای قرقیزستان برای ایرانیان به صورت الکترونیکی صادر میشود.
@Engineer_Computer
