Linux, Material de hacking y noticias
@Linux_and_hacking_material
1.47K
subscribers
246
photos
28
videos
3.36K
files
9.66K
links
Canal destinado a diversos contenidos: material de Linux, hacking y seguridad informática
Download Telegram
Join
Linux, Material de hacking y noticias
1.47K subscribers
Linux, Material de hacking y noticias
https://www.netskope.com/blog/you-can-run-but-you-cant-hide-advanced-emotet-updates
Netskope
You Can Run, But You Can’t Hide: Advanced Emotet Updates
Co-authored by Ghanashyam Satpathy and Dagmawi Mulugeta Summary Emotet has become one of the world’s most advanced botnets. Like many malware campaigns,
Linux, Material de hacking y noticias
https://research.checkpoint.com/2021/going-rogue-a-mastermind-behind-android-malware-returns-with-a-new-rat/
Check Point Research
Going Rogue- a Mastermind behind Android Malware Returns with a New RAT - Check Point Research
Research by: Aviran Hazum, Alex Shamshur, Raman Ladutska, Ohad Mana, Israel Wernik Introduction Now more than ever, we rely on our smartphones to keep in touch with our work, our families and the world around us. There are over 3.5 billion smartphone users…
Linux, Material de hacking y noticias
https://m.youtube.com/watch?v=gr8ZKQpYiug&feature=youtu.be
YouTube
laravel debug mode rce | CVE-2021-3129 PoC
Laravel less then v8.4.2 debug mode: Remote code execution
Technical details : https://www.ambionics.io/blog/laravel-debug-rce
Vulnmachines - Place for Pentesters
Vulnmachines is pratice place for people who are willing to learn about pentesting. In this…
Linux, Material de hacking y noticias
https://m.youtube.com/watch?v=uM6T_fL8ypk&feature=youtu.be
Linux, Material de hacking y noticias
https://github.com/swisskyrepo/PayloadsAllTheThings
GitHub
GitHub - swisskyrepo/PayloadsAllTheThings: A list of useful payloads and bypass for Web Application Security and Pentest/CTF
A list of useful payloads and bypass for Web Application Security and Pentest/CTF - swisskyrepo/PayloadsAllTheThings
Linux, Material de hacking y noticias
https://adepts.of0x.cc/shadowmove-hijack-socket/
Hijacking connections without injections: a ShadowMoving approach to the art of pivoting |
Hijacking connections without injections: a ShadowMoving approach to the art of pivoting | AdeptsOf0xCC
Proof of concept of hiding conections with ShadowMove technique
Linux, Material de hacking y noticias
https://github.com/c0brabaghdad1/S0x4
GitHub
GitHub - c0brabaghdad1/S0x4: DNS Misconfiguration : S0x4 - Same Site Scripting Scanner
DNS Misconfiguration : S0x4 - Same Site Scripting Scanner - GitHub - c0brabaghdad1/S0x4: DNS Misconfiguration : S0x4 - Same Site Scripting Scanner
Linux, Material de hacking y noticias
https://www.trustedsec.com/blog/get-to-hacking-massively-faster-the-release-of-spoonmap/
TrustedSec
Get to Hacking MASSively Faster - The Release of SpooNMAP - TrustedSec
TrustedSec's blog is an expert source of information on information security trends and best practices for strategic risk management.
Linux, Material de hacking y noticias
https://unit42.paloaltonetworks.com/wireshark-tutorial-emotet-infection/
Unit 42
Wireshark Tutorial: Examining Emotet Infection Traffic
This Wireshark tutorial reviews recent Emotet activity and provides some tips on identifying this malware based on examining Emotet infection traffic.
Linux, Material de hacking y noticias
https://blog.checkpoint.com/2021/01/19/linux-users-should-patch-now-to-block-new-freakout-malware-which-exploits-new-vulnerabilities/amp/
Check Point Blog
Linux users should patch now to block new "FreakOut" malware which exploits new vulnerabilities - Check Point Blog
Recently, Check Point Research (CPR) encountered several attacks that are exploiting multiple vulnerabilities, including some recently discovered flaws.
Linux, Material de hacking y noticias
https://github.com/redcode-labs/Svetovid
GitHub
GitHub - redcode-labs/Svetovid: A bunch of post exploitation tools + reverse proxy server
A bunch of post exploitation tools + reverse proxy server - GitHub - redcode-labs/Svetovid: A bunch of post exploitation tools + reverse proxy server
Linux, Material de hacking y noticias
https://ajpc500.github.io/nim/Shellcode-Injection-using-Nim-and-Syscalls/
ajpc500
Shellcode Injection using Nim and Syscalls
All things purple team.
Linux, Material de hacking y noticias
https://h0mbre.github.io/Fuzzing-Like-A-Caveman-5/#
The Human Machine Interface
Fuzzing Like A Caveman 5: A Code Coverage Tour for Cavepeople
Introduction We’ve already discussed the importance of code coverage previously in this series so today we’ll try to understand some of the very basic underlying concepts, some common approaches, some tooling, and also see what techniques some popular fuzzing…
Linux, Material de hacking y noticias
https://mega.nz/folder/r2ghERLJ#81fjr2sTjBw-jQ8FRFSc_w
mega.nz
File folder on MEGA
Linux, Material de hacking y noticias
https://slashcrypto.org/2021/01/15/CVE-2020-1456/
slashcrypto.org
Insertion of Malicious Links for Execution in Profile Picture - Unvalidated User Input in MS SharePoint 2019 (CVE-2020-1456) -…
Today I am publishing a Finding discovered by my good friend user_x73x76x6E - have fun reading his writeup!Although t...
Linux, Material de hacking y noticias
https://speakerdeck.com/flankerhqd/blowing-the-cover-of-android-binary-fuzzing
Linux, Material de hacking y noticias
https://blog.oversecured.com/Gaining-access-to-arbitrary-Content-Providers/
News, Techniques & Guides
Gaining access to arbitrary* Content Providers
The vulnerability we shall be looking at is very common, but remains little known. We want to shed some light on it today, so as to help app developers avoid it when they write their apps and security researchers find it in other people's apps and warn the…
Linux, Material de hacking y noticias
https://github.com/JamesCooteUK/SharpSphere
GitHub
GitHub - JamesCooteUK/SharpSphere: .NET Project for Attacking vCenter
.NET Project for Attacking vCenter. Contribute to JamesCooteUK/SharpSphere development by creating an account on GitHub.
Linux, Material de hacking y noticias
https://www.microsoft.com/security/blog/2021/01/20/deep-dive-into-the-solorigate-second-stage-activation-from-sunburst-to-teardrop-and-raindrop/
Microsoft News
Deep dive into the Solorigate second-stage activation: From SUNBURST to TEARDROP and Raindrop
Our continued investigation into the Solorigate attack has uncovered new details about the handover from the Solorigate DLL backdoor (SUNBURST) to the Cobalt Strike loader (TEARDROP, Raindrop, and others).
Linux, Material de hacking y noticias
https://www.fireeye.com/blog/threat-research/2021/01/emulation-of-kernel-mode-rootkits-with-speakeasy.html
Trellix
Research | Trellix Stories
Trellix Research, get the latest cybersecurity trends, best practices, security vulnerabilities, and more from industry leaders.
Linux, Material de hacking y noticias
https://github.com/securethelogs/Exnoscan
GitHub
GitHub - securethelogs/Exnoscan
Contribute to securethelogs/Exnoscan development by creating an account on GitHub.