Source Byte
Відкрити в Telegram
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
Показати більше8 129
Підписники
+1524 години
+627 днів
+29330 день
Архів дописів
8 132
Pay2Key: A New Player in the RaaS Market with an Eye on Russia
Threat Intelligence F6 analysts have studied the Pay2Key ransomware service, which has been distributed on Russian-language cybercriminal forums using the RaaS model since late February 2025.
8 132
Repost from N/a
UACMe
Defeating Windows User Account Control by abusing built-in Windows AutoElevate backdoor. This project demonstrates various UAC bypass techniques and serves as an educational resource for understanding Windows security mechanisms.#uac_bypass
8 132
Hardware-Backed Telemetry for Detecting Out-Of-Context Execution
https://www.preludesecurity.com/runtime-memory-protection
8 132
UAC-0001 cyberattacks on the security and defense sector using the LAMEHUG software tool using the LLM (Large Language Model) (CERT-UA#16039)
https://cert.gov.ua/article/6284730
8 132
Repost from N/a
Red Team Tactics: Writing Windows Kernel Drivers for Advanced Persistence (Part 1)
Red Team Tactics: Writing Windows Kernel Drivers for Advanced Persistence (Part 2)
This post, as indicated by the title, will cover the topic of writing Windows kernel drivers for advanced persistence. Because the subject matter is relatively complex, I have decided to divide the project into a three or a four part series. This being the first post in the series, it will cover the fundamental information you need to know to get started with kernel development. This includes setting up a development environment, configuring remote kernel debugging and writing your first “Hello World” driver.
8 132
Repost from OS Internals
🔍 قابل توجه علاقهمندان به امنیت سیستمعامل و توسعه اکسپلویت در لینوکس
من همیشه به تدریس علاقهمند بودهام؛ نه صرفاً آموزش تئوری، بلکه انتقال واقعی تجربهها و درک عمیق مفاهیم فنی. از سالها پیش، تمرکزم روی internal سیستمعاملها—بهویژه ویندوز و لینوکس—و مباحث امنیتی بوده و سعی کردهام این مطالب تخصصی را به زبانی ساده، کاربردی و قابلفهم برای دیگران ارائه دهم.
🎓 حالا نوبت یک قدم جدید و متفاوت رسیده:
«دورهی Exploit Development در لینوکس»
از تحلیل آسیبپذیری واقعی گرفته تا نوشتن اکسپلویتهای عملی و کاربردی.
اما تصمیم گرفتم یک شرط خاص برای انتشار این دوره بگذارم:
🎯 اگر اعضای کانالم به ۵۰۰۰ نفر برسند، دوره را به صورت کامل و رایگان منتشر میکنم.
بیش از ۲۰ ساعت ویدئو و تمرین عملی بدون تبلیغات، بدون پرداخت هزینه—صرفاً برای اینکه دانش تخصصی، راحتتر و بیواسطه به دست کسانی برسه که واقعاً به یادگیری اهمیت میدن.
🧠 اگر شما هم به این مسیر علاقهمندید یا فکر میکنید افراد دیگری در اطرافتان هستند که این محتوا به دردشان میخورد، خوشحال میشم با معرفی کانالم به دوستانتان از این پروژه حمایت کنید.
📎 لینک کانال:
https://t.me/OxAA55
✍️راستی سرفصل دوره رو هم میتونید در لینک زیر مشاهده کنید:
https://t.me/OxAA55/140
8 132
Repost from K4YT3X's Channel
发了一个新版本 (1.1.0),这个版本:
- 把注入换成 DLL 了方便塞进更多逻辑
- 添加了随机窗口标签的功能
- 添加了隐藏 Evanesco 自己窗口的功能
- 设置窗口
- 修复了显示窗口的时候会把用户看不到的窗口也显示出来的问题
- 做了个 Wnidows 安装包方便安装
https://github.com/k4yt3x/Evanesco/releases/tag/1.1.0
8 132
Repost from RME-DisCo @ UNIZAR [www.reversea.me]
Iran's Internet: A Censys Perspective https://censys.com/blog/irans-internet-a-censys-perspective
8 132
Repost from SoheilSec
دوره RTO
شروع دوره 17 مرداد مدت زمان دوره در 4 جلسه 8 ساعته که کلا 32 ساعت روزهای برگزاری جمعه ها 8 تا 16
دوره به صورت آنلاین میباشد. در صورتی که سرفصل تکمیل نشود تایم اضافه خواهد شد.
دوره به صورت عملی با سناریو شبیه سازی APT بر روی LAB شخصی سازی شده میباشد.
سرفصل ضمیمه شد هر روز شامل چندین موضوع میباشد که همراه با حل تمرین در لب میباشد.
قیمت دوره 15 تومن
نمونه تدریس
https://www.youtube.com/@soheilsec/playlists
سوال در مورد دوره @soheilsec
8 132
Repost from Handala Hack
As of now, the main message-receiving account of Iran International has been fully breached and taken over.
This channel, long used as a so-called "secure line" for communication with informants, spies, traitors, and foreign agents, is now under our complete control.
During this operation, all incoming messages, attachments, reports, images, and videos shared with this channel have been extracted in full.
The content has been processed and cross-referenced against multiple intelligence and identification databases.
We now possess the full identity profiles of over 71,000 individuals who have contacted this network.
These names and data are now classified, indexed, and archived. Selected portions will be released soon.
Our analysis confirms the existence of a media-based espionage and influence network directed by Mossad, operating under the false flag of “independent journalism”.
To everyone who has reached out to this network:
You are being watched. Your information has been logged. And your reckoning is near.
This is not just a hack.
This is a direct declaration of presence by the resistance inside the heart of enemy systems.
Expect us. We are closer than you think.
@Handala_Channel
#Handala
8 132
Demystifying Firmware Blobs in Linux
Posted Jul 5, 2025 Updated Jul 5, 2025 By Iman Seyed
Most Linux systems rely on binary blobs to activate the full capabilities of hardware like Bluetooth and Wi-Fi chips. But what are these blobs, and how does the kernel load them?
8 132
this report is bullshit or is related to past incidents
here is statement of the Datin company :
8 132
#Analytics
"Red Canary Threat Detection Report:
Techniques, Trends, & Takeaways", 2025.
8 132
Repost from Будни манипулятора
Сеть «Iran Hayom» публикует антиизраильскую пропаганду на иврите и английском языке в X , Instagram , TikTok , Telegram и YouTube .
Ее название является игрой слов на популярной израильской газете Israel Hayom , которая публикуется на иврите на israelhayom[.]co[.]il и чей английский веб-сайт israelhayom[.]com . Логотип Iran Hayom даже заимствует элементы дизайна из Israel Hayom .
https://www.fdd.org/analysis/2025/07/01/fdd-connects-anti-israel-network-on-social-media-to-iranian-website-pro-regime-actor/
8 132
Repost from APT IRAN مرکز تحقیقاتی
ما انتشار این سند را ضربهای بنیادین به یکی از پروژههای راهبردی و گسترده رژیم صهیونیستی در داخل ایران میدانیم.
افشای این الگوی عملیاتی میتواند مسیر جدیدی در تحلیل تهدیدات سایبری مبتنی بر نفوذ سختافزاری ایجاد کند و لازم است این الگو در بررسیهای آتی بهعنوان یک چارچوب مرجع مورد استفاده و پیگیری قرار گیرد.
