uz
Feedback
CyberSecurityTechnologies

CyberSecurityTechnologies

Yopiq kanal

We have been working for YOU for more than 8 years!!! https://t.me/+9vdG4JOSgY8xMzdi See also: https://t.me/Cognitive_Security https://t.me/CyberSecurityOSINT https://t.me/Wireless_Cybersecurity For All Questions: in messages to the channel

Ko'proq ko'rsatish

📈 Telegram kanali CyberSecurityTechnologies analitikasi

CyberSecurityTechnologies Ingliz til segmentidagi kanali faol ishtirokchi. Hozirda hamjamiyat 34 690 obunachidan iborat bo'lib, Texnologiyalar & Aralashmalar toifasida 3 774-o'rinni va AQSH mintaqasida 1 021-o'rinni egallagan.

📊 Auditoriya ko‘rsatkichlari va dinamika

невідомо sanasidan buyon loyiha tez o‘sib, 34 690 obunachiga ega bo‘ldi.

25 Avgust, 2026 dagi oxirgi ma’lumotlarga ko‘ra kanal barqaror faollikka ega. Oxirgi 30 kunda obunachilar soni -463 ga, so‘nggi 24 soatda esa -16 ga o‘zgardi va umumiy qamrov yuqori darajada qolmoqda.

  • Tasdiqlash holati: Tasdiqlanmagan
  • Jalb etish (ER): Auditoriya o‘rtacha 6.25% darajada jalb etiladi. Nashrdan keyingi dastlabki 24 soatda kontent odatda umumiy obunachilar sonining 2.70% ini tashkil etuvchi reaksiyalarni to‘playdi.
  • Post qamrovi: Har bir post o‘rtacha 2 170 marta ko‘riladi; birinchi sutkada odatda 938 ta ko‘rish yig‘iladi.
  • Reaksiyalar va o‘zaro ta’sir: Auditoriya faol: har bir postga o‘rtacha 8 ta reaksiya keladi.
  • Tematik yo‘nalishlar: Kontent cve-2025, attack, threat, detection, llm kabi asosiy mavzularga jamlangan.

📝 Tavsif va kontent siyosati

Muallif resursni shaxsiy fikrni ifoda etish maydoni sifatida ta’riflaydi:
We have been working for YOU for more than 8 years!!! https://t.me/+9vdG4JOSgY8xMzdi See also: https://t.me/Cognitive_Security https://t.me/CyberSecurityOSINT https://t.me/Wireless_Cybersecurity For All Questions: in messages to the channel

Yuqori yangilanish chastotasi (oxirgi ma’lumot 26 Avgust, 2026 da olingan) sababli kanal doimo dolzarb va katta qamrovli bo‘lib qoladi. Analitika auditoriya kontent bilan faol hamkorlik qilishini, uni Texnologiyalar & Aralashmalar toifasidagi muhim ta’sir nuqtasiga aylantirishini ko‘rsatadi.

34 690
Obunachilar
-1624 soatlar
-1147 kunlar
-46330 kunlar
Postlar arxiv
#Threat_Research #Malware_analysis 1⃣ FTP Banners: The New Dead Drop Resolver Delivering Novel RATs https://socradar.io/blog/ftp-banners-new-dead-drop-resolver-rats 2⃣ Detecting (Evil) Dylibs: Static, Runtime, and Load-Time Enumeration of Dynamic Libraries https://objective-see.org/blog/blog_0x89.html 3⃣ BengalSEO: Anatomy of the Operation https://thedfirreport.com/2026/08/24/bengalseo-part-1-anatomy-of-the-operation

#Threat_Research #WebApp_Security Attack of The Extensions https://specterops.io/blog/2026/08/13/chromium-extension-c2-persistence // Browser extensions can turn Chromium into a persistent foothold. This post introduces a way to silently install extensions turning Chromium browsers into a command and control (C2) platform for persistent cookie theft

#tools #Offensive_security CrystalPotato - Windows privilege escalation tool https://github.com/ricardojoserf/CrystalPotato // CrystalPotato is a static Windows privilege escalation tool that exploits DCOM OXID Resolver and named pipe impersonation to elevate from SeImpersonatePrivilege to SYSTEM, supporting command execution, reverse shells, and local account creation

#tools #AIOps "ClawSentry: A Progressive Multi-Tier Security Monitor for Safeguarding Autonomous LLM Agents", Aug. 2026. ]-> https://github.com/Elroyper/ClawSentry // ClawSentry is the reference implementation of the Agent Harness Protocol (AHP), a framework-independent interface for mediating AI-agent actions at runtime

#tools #Kernel_Security The kernel driver exploitation pipeline: From attack surface identification to privilege escalation. 156 real CVEs across 64 drivers, 57 exploited in the wild - mapped, analyzed, and documented https://github.com/splintersfury/KernelSight // Disclaimer

#tools #Offensive_security "KeyTAR: Practical Keystroke Timing Attacks and Input Reconstruction", 2026. ]-> https://zenodo.org/records/17254163 ]-> https://github.com/UNITES-Lab/keylogging // The attack consists of two main components: - Keystroke Extraction: Collects inter-keystroke timings through microarchitectural side-channel techniques - Keystroke Inference: Uses the extracted timings to infer the original typed input

#Malware_analysis 1⃣ Dissecting the JWR phishing framework https://blog.talosintelligence.com/dissecting-the-jwr-phishing-framework 2⃣ Akira Hits Safe Mode: Ransomware Rebooting Around EDR https://www.huntress.com/blog/akira-hits-safe-mode-ransomware-rebooting-around-edr 3⃣ Expired Malicious Domains Bring New Threats to Life https://www.infoblox.com/blog/threat-intelligence/dropcatch-scavengers-expired-malicious-domains-become-cash-cows 4⃣ Malicious Rust Crate arrayref Runs a Build-Time Payload https://safedep.io/arrayref-proc-macro1-rust-build-time-malware 5⃣ The invisible passenger in your car https://securelist.com/android-head-unit-malware/121106

#Tech_book #WebApp_Security "Rust Web Programming, Third Edition: A hands-on guide to Rust for modern web development, with microservices and nanoservices", 2026. // A comprehensive guide to developing, packaging, and deploying Rust web applications - with new coverage on async Rust, WebAssembly, nanoservices, and more

#Kernel_Security Weaponizing Windows Drivers: A Hacker's Guide for Beginners Part 1: https://www.securityjoes.com/post/weaponizing-windows-drivers-a-hacker-s-guide-for-beginners Part 2: Part 3: Part 4: # "Architecting secure enterprise AI agents with MCP", October 2025. #AIOps "Incident Analysis for AI Agents", 2025. // As we transition to a world with more agents, understanding agent incidents will become increasingly crucial for managing risks #AIOps #WebApp_Security "CyberSleuth: Autonomous Blue-Team LLM Agent for Web Attack", 2025. // an autonomous agent that processes packet-level traces and application logs to identify the targeted service, the exploited vulnerability (CVE), and attack success From Purity to Peril: Backdooring Merged Models From "Harmless" Benign Components Quantum readiness: Part 1 - Hybridizing signatures schemes https://www.synacktiv.com/en/publications/quantum-readiness-hybridizing-signatures Part 2 - Tackle key exchanges ... #WLAN_Security WiFi Penetration Testing Cheat Sheet, Ver.1.0. 1. 2. 3. Configuration 2. Monitoring 3. Cracking WPA/WPA2 Handshake (WPA/WPA2) PMKID Attack (WPA/WPA2) ARP Request Replay Attack (WEP) Hitre Attack (WEP) WPS PIN 4. Wordlists 5. Post-Exploitation 6. Evil-Twin #tools 1. REcover - Recover compile-units from stripped binary executables

#tools #WebApp_Security #Malware_analysis "SiNMULI: Novel Signed Network Approach for Malicious URL Identification", Aug. 2026. ]-> https://github.com/sayanmondal2098/SinMuli

#Analytics #MLSecOps "Anthropic Risk Report", August 2026. // This report evaluates the degree to which Anthropic’s AI systems pose catastrophic risk in several categories, in light of what we know about both their capabilities and the measures we have in place for mitigating risk

#Whitepaper #Cloud_Security "Securing the Agentic Cloud: Practical Strategies for Detection, Zero Trust, Governance, and Security Architecture", Aug. 2026. // This ebook examines the emerging security risks introduced by autonomous AI systems and the architectural changes required to defend cloud infrastructures against a rapidly expanding non-human attack surface

#tools #Hardware_Security CPU Privilege Escalation https://github.com/xoreaxeaxeax/smiiiiiiiiiiiiiiii ]-> DEF CON 2026 - Weaponizing Uselessness (.pdf) ]-> Unlocking everything on the CPU with DRAM scrambling - PSP, C6, microcode, SMM, and anything else the specs left out

#AppSec #Research #WebApp_Security "From Prompt Injection to Web Exploitation: Revisiting Classic Vulnerabilities in LLM-Integrated Applications", Aug. 2026. // This paper introduces LLM-mediated web attacks, a class of attacks in which attacker-controlled input is transformed by an LLM-integrated application and then reaches traditional web-application sinks. We systematize this attack surface through representative LLM2X variants, including LLM2SQLi, LLM2XSS, LLM2SSTI, LLM2CommandInjection, LLM2IDOR, LLM2CSRF, LLM2XXE, and LLM2SSRF

1⃣ ShieldBreak - Windows Defender 0day vulnerability https://git.projectnightcrawler.dev/NightmareEclipse/ShieldBreak/src/branch/main 2⃣ Zoomsday: Zero-click RCE in Zoom, from any meeting participant to any other (CVE-2026-53413) https://a.security/blog/asecurity-zoomsday 3⃣ Microsoft SharePoint JWT Token Authentication Bypass (CVE-2026-55040) https://www.rapid7.com/blog/post/ra-microsoft-sharepoint-jwt-token-authentication-bypass-cve-2026-55040

#tools #NetSec #Blue_Team_Techniques "Slips: Behavioral Evidence Aggregation for Network Security", Aug. 2026. ]-> All datasets, tools, experimental results // Slips - NIDS that builds host-centered behavioral profiles and organizes activity into time windows. It uses a modular architecture in which independent modules report evidence rather than generating final alerts directly

#Malware_analysis 1⃣ Shattering the Dream - When a Job Offer Becomes a Zero-Day Attack https://research.checkpoint.com/2026/shattering-the-dream-when-a-job-offer-becomes-a-zero-day-attack 2⃣ From Compromised WordPress Sites to Blockchain-Backed Malware Part 1 + Part 2 3⃣ Kimwolf v7: An Evolution of the Kimwolf Botnet https://unit42.paloaltonetworks.com/kimwolf-v7-botnet-malware

#AIOps #AppSec "State of Agent AI Security and Governance", ver. 2.01, June 2026. // A comprehensive view of today’s landscape for securing and governing autonomous AI systems. It explores the frameworks, governance models, and global regulatory standards shaping responsible Agentic AI adoption. Designed for developers, security professionals, and decision-makers, the report serves as a practical guide for navigating the complexities of building, managing, and deploying agentic apps safely and effectively