Source Byte
Kanalga Telegram’da o‘tish
هشیار کسی باید کز عشق بپرهیزد وین طبع که من دارم با عقل نیامیزد Saadi Shirazi 187
Ko'proq ko'rsatish7 849
Obunachilar
-524 soatlar
+437 kunlar
+17230 kunlar
Postlar arxiv
7 849
Repost from w0rk3r's Windows Hacking Library
The Windows Registry Adventure #1: Introduction and research results
https://googleprojectzero.blogspot.com/2024/04/the-windows-registry-adventure-1.html
@WindowsHackingLibrary
7 849
Repost from vx-underground
13-year-old Marco Liberale has created a proof-of-concept PasteBin C2 botnet in Go. Is it fully cross platform working on Windows, Linux, and Mac.
We are very happy to see such a young person contributing to this research space.
Check it out here: https://github.com/marco-liberale/PasteBomb
7 849
Repost from کانال بایت امن
#Source
D/Invoke Process Hollowing
Implementation of process hollowing shellcode injection using DInvoke.
با استفاده از Dynamic Invocation یا همون D/Invoke به جای P/Invoke میتونید به صورت داینامیک از کد های UnManaged استفاده کنید.
تو این مقاله به صورت کامل در مورد ضرورت ایجاد D/Invoke و تفاوتش با P/Invoke اشاره کرده.
حالا در این ریپو یک سناریو مربوط به تزریق کد ها با استفاده از تکنیک Process Hollowing رو میتونید بررسی کنید.
🦅 کانال بایت امن | گروه بایت امن
_
7 849
Repost from APT
⚙️ MultiDump
This is a post-exploitation tool written in C for dumping and extracting LSASS memory discreetly. MultiDump supports LSASS dump via ProcDump.exe or Comsvc.dll, it offers two modes: a local mode that encrypts and stores the dump file locally, and a remote mode that sends the dump to a handler for decryption and analysis
🔗 https://github.com/Xre0uS/MultiDump
#lsass #remote #cpp #python
7 849
Repost from Ralf Hacker Channel
Аналог
GetProcAddress, но написан на ассемблере. Гуд...
https://github.com/WKL-Sec/FuncAddressPro
#redteam #maldev #evasion7 849
Repost from 1N73LL1G3NC3
SymProcAddress
Zero EAT touch way to retrieve function addresses (GetProcAddress on steroids)
https://github.com/MzHmO/SymProcAddress
7 849
Repost from Offensive Xwitter
😈 [ Evan McBroom @mcbroom_evan ]
I just published a blog and tool for the LSA Whisperer work that was presented at the SpecterOps Conference (SOCON) back in March.
If you are interested in getting credentials from LSASS without accessing its memory, check it out!
Blog:
🔗 https://medium.com/specter-ops-posts/lsa-whisperer-20874277ea3b
Tool:
🔗 https://github.com/Meowmycks/LetMeowIn
Crossposted on GH:
🔗 https://gist.github.com/EvanMcBroom/dceb1c7070ee3278eaedd04b42aed279
🐥 [ tweet ]
7 849
Windows-based credential dumper using C++ and MASM x64.
https://github.com/Meowmycks/LetMeowIn
7 849
Hack.lu 2023: Malware Av evasion tricks by cocmelonc
https://youtu.be/0Xa4E4ZpX2E?si=xbfueQY-gmEYS6lx
https://t.me/islemolecule_source/923
7 849
Vulnerability Management Goes Much Deeper Than Patching
What Is Vulnerability Management? Vulnerability Management For Compliance Elements of Vulnerability Management Improving Vulnerability Management With Zero Trust Vulnerability Management Is a Journey, Not a Destinationhttps://www.kolide.com/blog/vulnerability-management-goes-much-deeper-than-patching
7 849
Name: Serious Cryptography
Requirements: Nothing
Level: Basics and Basis
Author: Jean-Phillippe Aumassen
Chapters:
1 - Encryption
2 - Randomness
3 - Cryptography Security
4 - Block Ciphers
5 - Stream Ciphers
6 - Hash Functions
7 - Keyed Hashing
8 - Authenticated Encryption
9 - Hard Problems
10 - RSA
11 - Diffie-Hellman
12 - Elliptic Curves
13 - TLS
14 - Quantum and Post-Quantom
#cryptography #book #resource
7 849
Little AV/EDR bypassing lab for training & learning purposes
https://github.com/Xacone/BestEdrOfTheMarket
Endi mavjud! Telegram Tadqiqoti 2025 — yilning asosiy insaytlari 
