XSecurity
Kanalga Telegram’da o‘tish
Ko'proq ko'rsatish
Mamlakat belgilanmaganToif belgilanmagan
2 056
Obunachilar
Ma'lumot yo'q24 soatlar
Ma'lumot yo'q7 kun
Ma'lumot yo'q30 kun
Postlar arxiv
2 056
A collection of APT29,s most widely-utilized techniques into a single PowerShell script.
اسکریپت پاورشل شبیه سازی و برگرفته شده از حملات و تکنیکهای نفوذ گروه Cozy Bear یا همون APT29
⇛More Details
@softhacking
2 056
Here is a blog about bypassing windows defender using a custom loader for Meterpreter
وبلاگی در مورد دور زدن ویندوز دیفندر با استفاده از یک custom loader برای پیلود های x86 و x64 در Meterpreter
↬Read More
@softhacking
2 056
An automatic obfuscation tool for Android apps that supports advanced obfuscation features and has a modular architecture that could be straightforwardly extended to support new obfuscation techniques.
ابزاری با قابلیت مبهم سازی اپلیکیشن های اندروید به صورت پیشرفته و قابل توسعه برای پشتیبانی از تکنیکهای مبهم سازی جدید.
↬Source Code
↬More Details?
#obfuscation
#android
#encryption
#pycryptodome
#apk
@softhacking
2 056
Red Team Diary, costume malware development.
Establishing a shell through target's browser
خاطرات توسعه بدافزار.
این قسمت گرفتن شل از طریق مرورگر تارگت با استفاده از اسکریپت Autoit و BeEF’s bind shellcode
📌 RESOURCE
#malware_development
#psh_reflection
#BeEF
#autoit
#redteam
@softhacking
2 056
A C# REVERSE SHELL that uses Background Intelligent Transfer Service (BITS) to communicate with the hidden C&C backend.
#reverse_shell
#BITS
#rivest_cipher_4
@softhacking
2 056
Reverse Engineering a basic firmware of an IoT camera and then creating a backdoored firmware that calls back to our C&C server
#IoT_camera
#backdoor
@softhacking
2 056
CVE-2020-0601
A spoofing vulnerability exists in the way Windows CryptoAPI (Crypt32.dll) validates Elliptic Curve Cryptography (ECC) certificates.An attacker could exploit the vulnerability by using a spoofed code-signing certificate to sign a malicious executable, making it appear the file was from a trusted, legitimate source, aka 'Windows CryptoAPI Spoofing Vulnerability'.
Details : https://nvd.nist.gov/vuln/detail/CVE-2020-0601
POC : https://github.com/ollypwn/cve-2020-0601
#cve #exploit #poc #windows @softhacking
2 056
dSploit - An Android network penetration suite.
dSploit is an Android network analysis and penetration suite which aims to offer to IT security experts/geeks the most complete and advanced professional toolkit to perform network security assesments on a mobile device.
Once dSploit is started, you will be able to easily map your network, fingerprint alive hosts operating systems and running services, search for known vulnerabilities, crack logon procedures of many tcp protocols, perform man in the middle attacks such as password sniffing ( with common protocols dissection ), real time traffic manipulation, etc, etc .
https://github.com/Androguide/dsploit
#android #tools @softhacking
2 056
Ultimate Internet of Things/Industrial Control Systems reconnaissance tool.
Powered by Shodan - Supported by Binary Edge & WhoisXMLAPI.
ابزاری برای جمعآوری اطلاعات و شناسایی دستگاه های کنترل صنعتی.
#reconnaissance
#IOT
#WhoisXMLAPI
#ICS
@softhacking
2 056
Sourcetrail is a free and open-source cross-platform source explorer that helps you get productive on unfamiliar source code.
https://github.com/CoatiSoftware/Sourcetrail
@softhacking
2 056
Here are some collected APT group samples, ransomware, remote control and other malicious programs for security researchers to use.
#malware_analysis
#security_researcher
#cyberwarfare
#apt
@softhacking
2 056
Interactive Beginner's Guide to ROP
Return-oriented Programming (ROP) is a binary exploitation technique that leverages exisisting code in the binary in order to execute attacker code.To follow this post it might be useful to have at least a little understanding of x86 assembly.
https://nagarrosecurity.com/blog/interactive-rop-tutorial
#exploitation #assembly #exploit
@softhacking
2 056
پست جالبی در مورد مهندسی معکوس یه بکدور 249 بایتی در دنیای واقعی رو بخونید :
https://anee.me/reversing-a-real-world-249-bytes-backdoor-aadd876c0a32
#re #backdoor
@softhacking
2 056
WhatsApp Protocol Decryption Burp Tool
https://github.com/romanzaikin/BurpExtension-WhatsApp-Decryption-CheckPoint
#decrypt #crypto #whatsapp
@softhacking
