Cyber Guardians
14.4K subscribers
89 photos
5 videos
37 files
3.27K links
RedTeaming TTPs
Bug Hunting
Web PenTest
Web Security
Binary Analysis
Exploit DEV
Malware DEV
Malware Analysis
BlueTeaming
Threat Hunting
SOC
CSIRT
FORENSICS
Open-Source Intelligence(OSINT)
Cybersec Tools
Download Telegram
iOS/macOS Critical DNG Image Processing Memory Corruption Exploitation https://pwn.guide/free/hardware/cve202543300

@IRCyberGuardians
This media is not supported in your browser
VIEW IN TELEGRAM
Lnk-it-up

Project for generating and identifying deceptive LNK files.

Blog post:
Trust Me, I'm A Shortcut.

Windows’ primary mechanism for shortcuts, LNK files, is frequently abused by threat actors for payload delivery and persistence. This blog post introduces several new LNK file flaws that, amongst other things, allow attackers to fully spoof an LNK’s target and hide any command-line arguments provided.

@IRCyberGuardians
STProcessMonitorBYOVD

One more BYOVD. STProcessMonitor driver is not in Windows vulnerable driver blocklist and allows to terminate AV / EDR processes.

Blog:
https://bbs.kafan.cn/thread-2288675-1-1.html

@IRCyberGuardians
Rustbof

This project enables the development of BOFs using Rust with full no_stdsupport. It leverages Rust's safety features and modern tooling while producing small, efficient COFF objects.

The framework provides everything needed for BOF development. The build process compiles your code to a static library, which
boflink then links into a COFF object with proper relocations and imports for Beacon's dynamic function resolution.

@IRCyberGuardians
360WFP_Exploit

BYOVD: Use 360 Security WFP driver (360netmon_x64_wfp.sys) to block EDR/XDR network connection.

@IRCyberGuardians