Download Drakvuf-Sandbox (https://github.com/CERT-Polska/drakvuf-sandbox)
___________________________
@hacking_Attack
@Hacking_Video
___________________________
@hacking_Attack
@Hacking_Video
GitHub
GitHub - CERT-Polska/drakvuf-sandbox: DRAKVUF Sandbox - automated hypervisor-level malware analysis system
DRAKVUF Sandbox - automated hypervisor-level malware analysis system - CERT-Polska/drakvuf-sandbox
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
DRAKVUF Sandbox - Automated Hypervisor-Level Malware Analysis System
http://4.bp.blogspot.com/-jqk2aHDJzVE/Yd2ZWYW3eRI/AAAAAAAA8sY/TNkJ9mXqCIkLwo94EJQdmNIZRGyb6_gewCK4BGAYYCw/w640-h454/drakvuf-sandbox_5_sandbox-765414.png DRAKVUF Sandbox is an automated black-box malware analysis system with DRAKVUF engine under the hood, which does not require an agent on guest OS.
This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get an insight on whether the file is truly malicious or not.
Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs. Supported hardware & softwareIn order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements.
* Processor:
*
Required Intel processor with Intel Virtualization Technology (VT-x) and Extended Page Tables (EPT) features
* Host system with at least 2 core CPU and 5 GB RAM, running GRUB as bootloader, one of:
*
Debian 10 Buster
*
Ubuntu 18.04 Bionic
*
Ubuntu 20.04 Focal
* Guest system, one of:
*
Windows 7 (x64)
* Windows 10 build 2004 (x64)
Nested virtualization:
*
Xen - works out of the box.
*
VMware Workstation Player - works, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required.
*
KVM - works, however it is considered experimental. If you experience any bugs, please report them to us for further investigation.
*
(x) AWS, GCP, Azure - due to lack of exposed CPU features, hosting DRAKVUF Sandbox in the cloud is not supported (although it might change in the future).
*
(x) Hyper-V - doesn't work.
*
(x) VMWare Fusion (Mac) - doesn't work. Maintainers/authorsFeel free to contact us if you have any questions or comments.
General contact email: drakvuf@cert.pl (fastest response)
This project is authored by:
* Arkadiusz Wróbel (@catsuryuu) - catsuryuu@cert.pl
* Michał Leszczyński (@icedevml)
* Adam Kliś (@BonusPlay)
* Hubert Jasudowicz (@chivay)
* Konstanty Cieśliński (@kscieslinski)
If you have any questions about DRAKVUF engine itself, contact tamas@tklengyel.com AcknowledgementsThis project was created and/or upgraded thanks to the following organizations and initiatives: Connecting Europe Facility of the European Unionhttp://1.bp.blogspot.com/-dKGd964t7g4/Yd2ZWwBOmHI/AAAAAAAA8sg/SvwZo7sUeZY6w8AVCxBnNswLS7YQHlMbwCK4BGAYYCw/s320/drakvuf-sandbox_6_cef-767021.png The Honeynet Projecthttp://2.bp.blogspot.com/-yWb4EAD9WRo/Yd2ZXG-e4nI/AAAAAAAA8so/xIv0gPjQZAcbhlU6dCd07UHwfA1OnYnQQCK4BGAYYCw/s320/drakvuf-sandbox_7_honeynet-768410.png CERT Polskahttp://2.bp.blogspot.com/-b5cfmzziyJs/Yd2ZXjk8UXI/AAAAAAAA8sw/hbLoc4T8S6k919cchqBA8kF-wsR9k0A0QCK4BGAYYCw/s320/drakvuf-sandbox_8_cert-769852.png Download Drakvuf-Sandbox
___________________________
@hacking_Attack
@Hacking_Video
DRAKVUF Sandbox - Automated Hypervisor-Level Malware Analysis System
http://4.bp.blogspot.com/-jqk2aHDJzVE/Yd2ZWYW3eRI/AAAAAAAA8sY/TNkJ9mXqCIkLwo94EJQdmNIZRGyb6_gewCK4BGAYYCw/w640-h454/drakvuf-sandbox_5_sandbox-765414.png DRAKVUF Sandbox is an automated black-box malware analysis system with DRAKVUF engine under the hood, which does not require an agent on guest OS.
This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get an insight on whether the file is truly malicious or not.
Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs. Supported hardware & softwareIn order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements.
* Processor:
*
Required Intel processor with Intel Virtualization Technology (VT-x) and Extended Page Tables (EPT) features
* Host system with at least 2 core CPU and 5 GB RAM, running GRUB as bootloader, one of:
*
Debian 10 Buster
*
Ubuntu 18.04 Bionic
*
Ubuntu 20.04 Focal
* Guest system, one of:
*
Windows 7 (x64)
* Windows 10 build 2004 (x64)
Nested virtualization:
*
Xen - works out of the box.
*
VMware Workstation Player - works, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required.
*
KVM - works, however it is considered experimental. If you experience any bugs, please report them to us for further investigation.
*
(x) AWS, GCP, Azure - due to lack of exposed CPU features, hosting DRAKVUF Sandbox in the cloud is not supported (although it might change in the future).
*
(x) Hyper-V - doesn't work.
*
(x) VMWare Fusion (Mac) - doesn't work. Maintainers/authorsFeel free to contact us if you have any questions or comments.
General contact email: drakvuf@cert.pl (fastest response)
This project is authored by:
* Arkadiusz Wróbel (@catsuryuu) - catsuryuu@cert.pl
* Michał Leszczyński (@icedevml)
* Adam Kliś (@BonusPlay)
* Hubert Jasudowicz (@chivay)
* Konstanty Cieśliński (@kscieslinski)
If you have any questions about DRAKVUF engine itself, contact tamas@tklengyel.com AcknowledgementsThis project was created and/or upgraded thanks to the following organizations and initiatives: Connecting Europe Facility of the European Unionhttp://1.bp.blogspot.com/-dKGd964t7g4/Yd2ZWwBOmHI/AAAAAAAA8sg/SvwZo7sUeZY6w8AVCxBnNswLS7YQHlMbwCK4BGAYYCw/s320/drakvuf-sandbox_6_cef-767021.png The Honeynet Projecthttp://2.bp.blogspot.com/-yWb4EAD9WRo/Yd2ZXG-e4nI/AAAAAAAA8so/xIv0gPjQZAcbhlU6dCd07UHwfA1OnYnQQCK4BGAYYCw/s320/drakvuf-sandbox_7_honeynet-768410.png CERT Polskahttp://2.bp.blogspot.com/-b5cfmzziyJs/Yd2ZXjk8UXI/AAAAAAAA8sw/hbLoc4T8S6k919cchqBA8kF-wsR9k0A0QCK4BGAYYCw/s320/drakvuf-sandbox_8_cert-769852.png Download Drakvuf-Sandbox
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
DRAKVUF Sandbox - Automated Hypervisor-Level Malware Analysis System
DRAKVUF Sandbox - Automated Hypervisor-Level Malware Analysis System
DRAKVUF Sandbox is an automated black-box malware analysis system with DRAKVUF engine under the hood, which does not require an agent on guest OS. This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get an insight on whether the file is truly malicious or not. Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs. Supported hardware & software In order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements. Processor: Required Intel processor with Intel Virtualization Technology (VT-x) and Extended Page Tables (EPT) features Host system with at least 2 core CPU and 5 GB RAM, running GRUB as bootloader, one of: Debian 10 Buster Ubuntu 18.04 Bionic Ubuntu 20.04 Focal Guest system, one of: Windows 7 (x64) Windows 10 build 2004 (x64) Nested virtualization: Xen - works out of the box. VMware Workstation Player - works, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required. KVM - works, however it is considered experimental. If you experience any bugs, please report them to us for further investigation. (x) AWS, GCP, Azure - due to lack of exposed CPU features, hosting DRAKVUF Sandbox in the cloud is not supported (although it might change in the future). (x) Hyper-V - doesn't work. (x) VMWare Fusion (Mac) - doesn't work. Maintainers/authors Feel free to contact us if you have any questions or comments. General contact email: drakvuf@cert.pl (fastest response) This project is authored by: Arkadiusz Wróbel (@catsuryuu) - catsuryuu@cert.pl Michał Leszczyński (@icedevml) Adam Kliś (@BonusPlay) Hubert Jasudowicz (@chivay) Konstanty Cieśliński (@kscieslinski) If you have any questions about DRAKVUF engine itself, contact tamas@tklengyel.com Acknowledgements This project was created and/or upgraded thanks to the following organizations and initiatives: Connecting Europe Facility of the European Union The Honeynet Project CERT Polska Download Drakvuf-Sandbox
Read more...
___________________________
@hacking_Attack
@Hacking_Video
DRAKVUF Sandbox is an automated black-box malware analysis system with DRAKVUF engine under the hood, which does not require an agent on guest OS. This project provides you with a friendly web interface that allows you to upload suspicious files to be analyzed. Once the sandboxing job is finished, you can explore the analysis result through the mentioned interface and get an insight on whether the file is truly malicious or not. Because it is usually pretty hard to set up a malware sandbox, this project also provides you with an installer app that would guide you through the necessary steps and configure your system using settings that are recommended for beginners. At the same time, experienced users can tweak some settings or even replace some infrastructure parts to better suit their needs. Supported hardware & software In order to run DRAKVUF Sandbox, your setup must fullfill all of the listed requirements. Processor: Required Intel processor with Intel Virtualization Technology (VT-x) and Extended Page Tables (EPT) features Host system with at least 2 core CPU and 5 GB RAM, running GRUB as bootloader, one of: Debian 10 Buster Ubuntu 18.04 Bionic Ubuntu 20.04 Focal Guest system, one of: Windows 7 (x64) Windows 10 build 2004 (x64) Nested virtualization: Xen - works out of the box. VMware Workstation Player - works, but you need to check Virtualize EPT option for a VM; Intel processor with EPT still required. KVM - works, however it is considered experimental. If you experience any bugs, please report them to us for further investigation. (x) AWS, GCP, Azure - due to lack of exposed CPU features, hosting DRAKVUF Sandbox in the cloud is not supported (although it might change in the future). (x) Hyper-V - doesn't work. (x) VMWare Fusion (Mac) - doesn't work. Maintainers/authors Feel free to contact us if you have any questions or comments. General contact email: drakvuf@cert.pl (fastest response) This project is authored by: Arkadiusz Wróbel (@catsuryuu) - catsuryuu@cert.pl Michał Leszczyński (@icedevml) Adam Kliś (@BonusPlay) Hubert Jasudowicz (@chivay) Konstanty Cieśliński (@kscieslinski) If you have any questions about DRAKVUF engine itself, contact tamas@tklengyel.com Acknowledgements This project was created and/or upgraded thanks to the following organizations and initiatives: Connecting Europe Facility of the European Union The Honeynet Project CERT Polska Download Drakvuf-Sandbox
Read more...
___________________________
@hacking_Attack
@Hacking_Video
Hey r/pentesting specialists, 🇺🇦🔥 Hackers start war on Russia, are you in? #FckPutin
https://www.reddit.com/r/Pentesting/comments/t304ws/hey_rpentesting_specialists_hackers_start_war_on/
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/t304ws/hey_rpentesting_specialists_hackers_start_war_on/
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hey r/pentesting specialists, 🇺🇦🔥 Hackers start war on Russia, are...
Posted in r/Pentesting by u/dany2aa • 0 points and 1 comment
submitted by /u/dany2aa (https://www.reddit.com/user/dany2aa)
[link] (https://twitter.com/HackenProof/status/1497891585727602693) [comments] (https://www.reddit.com/r/Pentesting/comments/t304ws/hey_rpentesting_specialists_hackers_start_war_on/)
___________________________
@hacking_Attack
@Hacking_Video
[link] (https://twitter.com/HackenProof/status/1497891585727602693) [comments] (https://www.reddit.com/r/Pentesting/comments/t304ws/hey_rpentesting_specialists_hackers_start_war_on/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
overview for dany2aa
The u/dany2aa community on Reddit. Reddit gives you the best of the internet in one place.
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Ransomware Group Lapsus Claims NVIDIA Hacked Back After Its Attack On The GPU Giant
https://external-preview.redd.it/nfNXdwDNvYGUuOwdigH0SivKolzTIv81KWgQ9srQGY0.jpg?width=640&crop=smart&auto=webp&s=8e6f268eea5f5b2a2185e98d3d9eb110a300e6c0 submitted by /u/DrinkMoreCodeMore
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Ransomware Group Lapsus Claims NVIDIA Hacked Back After Its Attack On The GPU Giant
https://external-preview.redd.it/nfNXdwDNvYGUuOwdigH0SivKolzTIv81KWgQ9srQGY0.jpg?width=640&crop=smart&auto=webp&s=8e6f268eea5f5b2a2185e98d3d9eb110a300e6c0 submitted by /u/DrinkMoreCodeMore
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Ransomware Group Lapsus Claims NVIDIA Hacked Back After Its Attack...
Posted in r/hacking by u/DrinkMoreCodeMore • 1 point and 0 comments
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Hey r/hacking all colored hats, 🇺🇦🔥 Hackers start war on Russia, are you in? #FckPutin
https://external-preview.redd.it/fD40Y0qy02JMuNrr90Lyr1l6VCLQcKbsmMtcfAU4LEc.jpg?width=108&crop=smart&auto=webp&s=8812544c8cc34704f12611b3ea867b47b9ac8d67 submitted by /u/dany2aa
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Hey r/hacking all colored hats, 🇺🇦🔥 Hackers start war on Russia, are you in? #FckPutin
https://external-preview.redd.it/fD40Y0qy02JMuNrr90Lyr1l6VCLQcKbsmMtcfAU4LEc.jpg?width=108&crop=smart&auto=webp&s=8812544c8cc34704f12611b3ea867b47b9ac8d67 submitted by /u/dany2aa
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Hey r/hacking all colored hats, 🇺🇦🔥 Hackers start war on Russia,...
Posted in r/hacking by u/dany2aa • 1 point and 0 comments
hacking: security in practice
Is http://norussian.tk/ actually doing something?
I have basically no hacking knowledge, I would be interested to know if running this site actually does what it says it does.
Thanks!
submitted by /u/Thalrador
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Is http://norussian.tk/ actually doing something?
I have basically no hacking knowledge, I would be interested to know if running this site actually does what it says it does.
Thanks!
submitted by /u/Thalrador
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Is http://norussian.tk/ actually doing something?
I have basically no hacking knowledge, I would be interested to know if running this site actually does what it says it does. Thanks!
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Inspired by the DDoS on Russia - A Distributed Cracker for the RIA.ru Propaganda Machine.
As many of you know, Russia has launched its invasion on Ukraine, and the hacker-community (thus far) has done its part to take down Russian military/government sites, with notable groups such as Anonymous joining in.
A few days ago, I saw a nice thread here on a DDoS tool, where thousands of you all (including me) joined in to do what small part we can in protecting freedom. I've recently decided that I can use my individual skills to do more, and so I've discovered the RIA.ru admin account username, as well as a weakness in their login form.
I then made a tool to automate cracking the password. The process could take years potentially depending on the security, but we can halve, or even quarter the time taken with the more people we have join in. At the least, I hope that it motivates the site owners to take the site down, or at least limit it to many users to prevent the further spread of Russian propaganda.
As of right now, the tool is hosted at https://ru-cracker.glitch.me , and I've also open-sourced it at https://github.com/flancast90/ru-cracker for those interested in the source.
A Few Notes:
Chrome CORS is extremely stupid. Because of this, for your computer to join in on the attack, you must be running a CORS-bypass extension. One for chrome is https://chrome.google.com/webstore/detail/allow-cors-access-control/lhobafahddgcelffkeicbaginigeejlf/related?hl=en , and others exist for different browsers.
For programmers wondering why I didn't create a simple node CORS bypass, the issue with this was all the requests would have to route through the server more than needed. This way, each client handles itself.
Note 2:
Participating in this attack is illegal in most places. However, if you feel strongly about this (as I do), please do not hesitate to join in - it is only through breaking laws that true and lasting social reform is made.
submitted by /u/Muted_Original
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Inspired by the DDoS on Russia - A Distributed Cracker for the RIA.ru Propaganda Machine.
As many of you know, Russia has launched its invasion on Ukraine, and the hacker-community (thus far) has done its part to take down Russian military/government sites, with notable groups such as Anonymous joining in.
A few days ago, I saw a nice thread here on a DDoS tool, where thousands of you all (including me) joined in to do what small part we can in protecting freedom. I've recently decided that I can use my individual skills to do more, and so I've discovered the RIA.ru admin account username, as well as a weakness in their login form.
I then made a tool to automate cracking the password. The process could take years potentially depending on the security, but we can halve, or even quarter the time taken with the more people we have join in. At the least, I hope that it motivates the site owners to take the site down, or at least limit it to many users to prevent the further spread of Russian propaganda.
As of right now, the tool is hosted at https://ru-cracker.glitch.me , and I've also open-sourced it at https://github.com/flancast90/ru-cracker for those interested in the source.
A Few Notes:
Chrome CORS is extremely stupid. Because of this, for your computer to join in on the attack, you must be running a CORS-bypass extension. One for chrome is https://chrome.google.com/webstore/detail/allow-cors-access-control/lhobafahddgcelffkeicbaginigeejlf/related?hl=en , and others exist for different browsers.
For programmers wondering why I didn't create a simple node CORS bypass, the issue with this was all the requests would have to route through the server more than needed. This way, each client handles itself.
Note 2:
Participating in this attack is illegal in most places. However, if you feel strongly about this (as I do), please do not hesitate to join in - it is only through breaking laws that true and lasting social reform is made.
submitted by /u/Muted_Original
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Inspired by the DDoS on Russia - A Distributed Cracker for the...
As many of you know, Russia has launched its invasion on Ukraine, and the hacker-community (thus far) has done its part to take down Russian...
hacking: security in practice
Google dork
Do you think it’s possible to find future GCSE papers using google dorking?
submitted by /u/hesjsjshs
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Google dork
Do you think it’s possible to find future GCSE papers using google dorking?
submitted by /u/hesjsjshs
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Google dork
Do you think it’s possible to find future GCSE papers using google dorking?
hacking: security in practice
I been using Firefox for a while now but are there any other browsers you guys use?
Basically I use Firefox anytime I want to access a website, but I am curious to what you guys use. Maybe there's an opensource browser with lots of privacy options and stuff, I am open to ideas.
submitted by /u/Awsomedude0361
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
I been using Firefox for a while now but are there any other browsers you guys use?
Basically I use Firefox anytime I want to access a website, but I am curious to what you guys use. Maybe there's an opensource browser with lots of privacy options and stuff, I am open to ideas.
submitted by /u/Awsomedude0361
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
I been using Firefox for a while now but are there any other...
Basically I use Firefox anytime I want to access a website, but I am curious to what you guys use. Maybe there's an opensource browser with lots...
New idea for physical pen testing. Read captions
https://www.reddit.com/r/Pentesting/comments/t35bn0/new_idea_for_physical_pen_testing_read_captions/
___________________________
@hacking_Attack
@Hacking_Video
https://www.reddit.com/r/Pentesting/comments/t35bn0/new_idea_for_physical_pen_testing_read_captions/
___________________________
@hacking_Attack
@Hacking_Video
reddit
New idea for physical pen testing. Read captions
Posted in r/Pentesting by u/Electrical-Ad-8287 • 3 points and 0 comments
submitted by /u/Electrical-Ad-8287 (https://www.reddit.com/user/Electrical-Ad-8287)
[link] (https://www.reddit.com/gallery/t35bn0) [comments] (https://www.reddit.com/r/Pentesting/comments/t35bn0/new_idea_for_physical_pen_testing_read_captions/)
___________________________
@hacking_Attack
@Hacking_Video
[link] (https://www.reddit.com/gallery/t35bn0) [comments] (https://www.reddit.com/r/Pentesting/comments/t35bn0/new_idea_for_physical_pen_testing_read_captions/)
___________________________
@hacking_Attack
@Hacking_Video
Reddit
reddit.com: over 18?
Reddit gives you the best of the internet in one place. Get a constantly updating feed of breaking news, fun stories, pics, memes, and videos just for you. Passionate about something niche? Reddit has thousands of vibrant communities with people that share…
Everything you need to know about Bug Bounties
What are Bug Bounty ProgramsContinue reading on Medium »
Read more...
What are Bug Bounty ProgramsContinue reading on Medium »
Read more...
Everything you need to know about Bug Bounties
What are Bug Bounty ProgramsContinue reading on Medium »
Read more...
What are Bug Bounty ProgramsContinue reading on Medium »
Read more...