Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Black Hat Ethical Hacking
MacOS Being Picked Apart by $49 XLoader Data Stealer

https://www.blackhatethicalhacking.com/wp-content/uploads/2017/11/black-hat-locks-and-electronics.jpg MacOS Being Picked Apart by $49 XLoader Data StealerPost Views: 85
Reading Time: 1 Minute
Cheap, easy and prolific, the new version of the old FormBook form-stealer and keylogger has added Mac users to its hit list, and it’s selling like hotcakes.
There’s a new version of the old FormBook form-stealer and keylogger that’s added Mac users to its hit list, and it’s selling like hotcakes on underground markets for as low as $49.

It’s not only cheap; it’s easy. The data stealer is distributed in the form of malware-as-a-service (MaaS) and stands out from competing malware by being drop-dead simple to use, outfitting even code dummies with a multipurpose malware tool.

In a report posted on Wednesday, analysts at Check Point Research (CPR) said that the new strain of FormBook – which mainly targeted Windows users when it first popped up on hacking forums in 2016 – is named XLoader. According to the report, FormBook disappeared from malware markets in 2018, then rebranded to XLoader in 2020.

Over the past six months, XLoader’s been a busy beaver, prolifically targeting Window users but also gnawing on its newfound love: namely, “to CPR’s surprise,” Mac users.

XLoader licenses start at $49: a price that will get even the most inexperienced and poorly funded cyberattackers a tool that they can use to harvest log-in credentials, collect screenshots, log keystrokes and execute malicious files.

Check Point has tracked XLoader requests flooding in from eager attackers in 69 countries. Most of the targets – 53 percent – are in the U.S., including both Mac and Windows users.
See Also: Microsoft: New Unpatched Bug in Windows Print Spooler
The breakdown of victims by country is presented in the bar graph below: https://media.threatpost.com/wp-content/uploads/sites/103/2021/07/20191027/CPR-Formbook-victims-figure-1.png Victims are tricked into downloading XLoader via spoofed emails that contain malicious Microsoft Office documents. From Humble Keylogger to Red-Hot MalwareAs of December, as Check Point reported at the time, FormBook was the third most prevalent malware family. It was outpaced only by Emotet at No. 1 (the servers for which were globally dismantled in January) and the TrickBot banking trojan/ransomware malware, which ranked No. 2. AnyRun Malware Trends Tracker backs that up: As of Tuesday evening, FormBook was ranked third most-spotted sample out of millions in the preceding week, and it was climbing in popularity. Between June 2020 and June 2021, AnyRun ranked FormBook as the fourth most prevalent malware family.

This isn’t what the malware author had in mind. At first, it was just supposed to be a keylogger – a cheap one, at that. At least back in 2016, attackers could rent FormBook MaaS for as little as $29/week. https://media.threatpost.com/wp-content/uploads/sites/103/2021/07/20191250/Initial-FormBook-pricing-e1626822824816.jpg Initial FormBook pricing. Source: Check Point.
But customers quickly spotted its potential to be used in broad spam campaigns for use across the world, researchers explained. As the potential became reality, the author – “ng-Coder,” whom Check Point researchers decided is a “he” – stopped selling FormBook. The author hadn’t wanted the tool to be used in email campaigns and had, in fact, banned customers from using it for spam. Ng-Coder made a final post in May 2018, and then the malware maker’s FormBook activity stopped. See Also: Offensive Security Tool: Veil
Or, at least, his activity went dark. Researchers theorize that ng-Coder might have had his own plans [...]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
How skilled is the Lazarus Group ?

How dangerous is it ? How does it compare to Evil Corp (Maksim Yakubets) or the NSO Group ? Which groups are better than Lazarus Group ?

submitted by /u/PRADYUSH2006
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Hacking a 2002 PC game

Hello! For the las week I have been trying to play the 2002 game Pink Panther: Pinkadelic Pursuit, with dgvoodoo 2 I managed to fix the graphical issues. The weird thing is that when it’s just installed it can open and be played with music, but once you put compatibility mode the music is gone, and if you disable compatibility mode the game crashes! I tried reinstalling and there’s no way of replicating the thing from fresh installed so I’m stuck there. If you play like that with the disc mounted (.Cue) there’s no music, and from what I have learned the music of the levels are in the .cue, you can open it with windows media player, but there are no files, so I would like to know if there’s someone interested in open this game with me.

I want to know how the game works, how the music is being read, and where is the button mapping (you need to move with the arrows), there’s too low info of this game so it would be great if it can be replayed In the full experience! Also the game is abandonware so I think it’s not ethically bad to do so.

submitted by /u/PapayaMann
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
Nmap firewall bypass

Can anyone share any resources or cheatsheets which will help me to bypass firewall and get nmap result back, just like we get in ctfs etc. I have done a ton of tryhackme and have my one methodology to approach a target. But ctfs never taught how to evade firewalls etc so i need help regarding this. Thanks

submitted by /u/Nightkinnng
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video