Hacking Articles Tips Tricks Videos Tutorials
468 subscribers
65.8K photos
15 videos
157 files
132K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
Exploit Collector
Backdoor.Win32.Minilash.10.b Denial Of Service


https://1.bp.blogspot.com/-gLNlUWq63_8/WWlvGRw0eoI/AAAAAAAAILQ/4OYXBaTeiPkRlDYcEes6gWLLrvO9LjoiQCLcBGAs/s1600/h138.png
Backdoor.Win32.Minilash.10.b malware suffers from a denial of service vulnerability.

MD5 | 5ce0fce6095f07ba5a9c932f87ac7ced

Download
Discovery / credits: Malvuln - malvuln.com (c) 2021
Original source: https://malvuln.com/advisory/3c407448a00b2d53b2418f53b66d5b6b.txt
Contact: malvuln13@gmail.com
Media: twitter.com/malvuln

Threat: Backdoor.Win32.Minilash.10.b
Vulnerability: Remote Denial of Service (UDP Datagram)
Description: The Minilash malware listens on TCP 6711 and UDP port 60000. Third-party attackers who can reach infected systems can send a specially crafted junk payload to UDP port 60000 that results in access violation and crash.
Type: PE32
MD5: 3c407448a00b2d53b2418f53b66d5b6b
Vuln ID: MVID-2021-0344
Disclosure: 09/20/2021

Memory Dump:
(1518.115c): Access violation - code c0000005 (first/second chance not available)
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp

0:000> .ecxr
eax=000a1068 ebx=000a1038 ecx=004661bc edx=000a1068 esi=000a1190 edi=00000000
eip=776a9fa2 esp=000a1000 ebp=000a1030 iopl=0 nv up ei pl zr na pe nc
cs=0023 ss=002b ds=002b es=002b fs=0053 gs=002b efl=00010246
ntdll!RtlAcquireSRWLockShared+0x2:
776a9fa2 55 push ebp

0:000> !analyze -v
*******************************************************************************
* *
* Exception Analysis *
* *
*******************************************************************************
FAULTING_IP:
KERNELBASE!RaiseException+62
762d08f2 8b4c2454 mov ecx,dword ptr [esp+54h]

EXCEPTION_RECORD: 0019f780 -- (.exr 0x19f780)
ExceptionAddress: 762d08f2 (KERNELBASE!RaiseException+0x00000062)
ExceptionCode: 0eedfade
ExceptionFlags: 00000003
NumberParameters: 7
Parameter[0]: 004104b3
Parameter[1]: 0420c5a4
Parameter[2]: ffffffff
Parameter[3]: 0040d310
Parameter[4]: 041e77e8
Parameter[5]: 0019fd0c
Parameter[6]: 0019fcc0

PROCESS_NAME: Backdoor.Win32.Minilash.10.b.3c407448a00b2d53b2418f53b66d5b6b..exe

ERROR_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.

EXCEPTION_CODE: (NTSTATUS) 0xc0000005 - The instruction at 0x%p referenced memory at 0x%p. The memory could not be %s.

EXCEPTION_PARAMETER1: 00000001

EXCEPTION_PARAMETER2: 000a0ffc

WRITE_ADDRESS: 000a0ffc

FOLLOWUP_IP:
KERNELBASE!RaiseException+0
762d0890 8bff mov edi,edi

MOD_LIST: [...]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
I don t know the email or number or anything how i reset it

Well a while ago my father gave my sister (she s 6) an laptop who transforms into a graphics tablet and i really really want to learn to draw on it.

I can t ask my dad from who or where he has it cuz my parents are divorced.

I know it s not a place to ask for help but i did not have a computer or anything like that since i was 5 now i m 17 and i want to be more productive and my mom can t afford a computer cuz she has 3 childs on her on. And i like drawing and i want to learn how to use an computer cuz i m close to failing at informatics every year

I am very sorry if this is not the place to ask it but i tried to give it to someone who know and he said he can t help me.

And also my bf want to play games with me and he said to buy something doesn t mater if it s an laptop or computer and i m ashamed to say i can t afford one

submitted by /u/Mysterious-Collar651
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
hacking: security in practice
change hardware id

i have a surface laptop 3, and i was wondering if there is any way to change the hardware id by flashing the bios.

submitted by /u/Vexaros_
[link] [comments]

___________________________
@hacking_Attack
@Hacking_Video
Hacking on Medium
HackTheBox — Ophiuchi


As always, we start with nmap to discover open ports/services.

Continue reading on Medium »
Hacking on Medium
Bash Web Scraping


With the built in tools and easily available libraries like curl, xargs, convert,pup it makes it easy to perform web scraping.

Continue reading on Medium »
Hacking on Medium
Prioridades de ciberseguridad en 2021: ¿Cómo pueden los CISO volver a analizar y cambiar el enfoque?


PUBLICADO EN 21 SEPTIEMBRE, 2021POR EHACKING

Continue reading on Medium »
Hacking on Medium
America Is Being Held for Ransom. It Needs to Fight Back.


By Dmitri Alperovitch, NSI Advisory Board member

Continue reading on The SCIF »
Hacking on Medium
Can I Use a Hacker to Gain Access to a Device?


Yes, contact@hacknetworkgroup.com

Continue reading on Medium »
Hacking on Medium
Remove these applications from your phone immediately


SM Digit

Continue reading on Medium »
Hacking on Medium
Hack This Site: Basic Web Challenges — Level 5


Welcome back to my series on the Hack This Site Basic Web Challenges. Today we are looking at basic challenge level 5. If you haven’t read…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
PyHook_1_Demo-754513.gif
KitPloit - PenTest Tools!PyHook - An Offensive API Hooking Tool Written In Python Designed To Catch Various Credentials Within The API Call



PyHook is the python implementation of my SharpHook project, It uses various API hooks in order to give us the desired credentials.

PyHook Uses frida to inject it's dependencies into the target process



Supported Processes
Process API Call Description Progress mstsc CredUnPackAuthenticationBufferWThis will hook into mstsc and should give you Username and Password DONE runas CreateProcessWithLogonWThis will hook into runas and should give you Username, Password and the domain name DONE cmd RtlInitUnicodeStringExThis should hook into cmd and then would be able to filter keywords like: PsExec,password etc.. DONE MobaXterm CharUpperBuffAThis will hook into MobaXterm and should give you credentials for SSH and RDP logins DONE explorer (UAC Prompt) CredUnPackAuthenticationBufferWThis will hook into explorer and should give you Username, Password and the Domain name from the UAC Prompt DONE



Link my blog post covering this topic: https://ilankalendarov.github.io/posts/offensive-hooking



Download PyHook

___________________________
@hacking_Attack
@Hacking_Video