Hacking Articles Tips Tricks Videos Tutorials
470 subscribers
66.2K photos
15 videos
157 files
133K links
Exploit
Pentesting
Hacking
Red Team
Blue Team
Kali Linux
Bug Bounty
Black Hat
Cyber security etc

@Hacking_Video
@Hacking_attack
Download Telegram
Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
PortexAnalyzerGUI - Graphical Interface For PortEx, A Portable Executable And Malware Analysis Library

https://blogger.googleusercontent.com/img/a/AVvXsEirum9zKpcLFrGh5fJoP1uiH5A_Ax6MPAaUR-cOSMdenPaRW6-iWdMzF-r92KXtVR2vR8V0VDEk19hv3IROmro4xNBMZDk2lJGIYo4NKmwC_W0s8uH10WhFC129xms-aUy3M3UcvDl9Yr18rdQNs74Z3CjfcPrynuvekek8Ku3KBVcU5HV6_y3AAQ-QCA=w640-h358

https://blogger.googleusercontent.com/img/a/AVvXsEjih73UXzcD-FNzgIiV7kdqLcOX43bgwhFJMqa129v4rYxyxtiVqiaqgLUDit82fTVoIoyd3zwJWp-SAYVOWNnh1-FmYeUZxPtoStYMlqLacTxa7pXA08ZyS0CO2gFQu-HYOEKgEwrBkL376TROc7hLXMxKNosL2Gu_-keWXEPw_X-R7x5ScP9ikf9BBw=w640-h398

Graphical interface for PortEx, a Portable Executable and Malware Analysis Library

Download

Releases page

Features

* Header information from: MSDOS Header, Rich Header, COFF File Header, Optional Header, Section Table
* PE Structures: Import Section, Resource Section, Export Section, Debug Section
* Scanning for file format anomalies
* Visualize file structure, local entropies and byteplot, and save it as PNG
* Calculate Shannon Entropy, Imphash, MD5, SHA256, Rich and RichPV hash
* Overlay and overlay signature scanning
* Version information and manifest
* Icon extraction and saving as PNG
* Customized signature scanning via Yara. Internal signature scans using PEiD signatures and an internal filetype scanner.
Supported OS and JRE

I test this program on Linux and Windows. But it should work on any OS with JRE version 9 or higher.

Future

I will be including more and more features that PortEx already provides.

These features include among others:

* customized visualization
* extraction and conversion of icons to .ICO files
* dumping of sections, overlay, resources
* export reports to txt, json, csv

Some of these features are already provided by PortexAnalyzer CLI version, which you can find here: PortexAnalyzer CLI

Donations

I develop PortEx and PortexAnalyzer as a hobby in my free time. If you like it, please consider buying me a coffee: https://ko-fi.com/struppigel

Author

Karsten Hahn

Twitter: @Struppigel

Mastodon: struppigel@infosec.exchange

Youtube: MalwareAnalysisForHedgehogs

License

License
Download PortexAnalyzerGUI
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Screenshot Un-Edit, Hack for Google Pixel

https://cdn-images-1.medium.com/max/2600/0*YOHpDe-iNbiR4VV9
Google Pixel phone has a hack, CVE-2023–21036, known as “aCropalypse”, that allows someone to see the unedited version of a screenshot…

Continue reading on System Weakness »
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Are there any decent ethical hackers for hire?

https://cdn-images-1.medium.com/max/602/0*vfB8kCI60WUP5RgT
In today’s world, cybersecurity threats are increasing day by day. As a result, many businesses and organizations are hiring ethical…

Continue reading on Medium »
Hacking Articles Tips Tricks Videos Tutorials
Photo
hacking: security in practice
Got a little interessting thing

I recieved a phishing mail from someone Ive been working with and Ive decoded it down to this string in the pastebin. It looks like some Base64 but I cant seem to figure out the last part.
https://pastebin.com/WtfdmmQX

I have the entire file which contains variables and functions. It looks like something supposed to be decoded by a browser.
It has phrases like ParseInt, join and If/else but its supposed to run via a browser.

The entire thing is here https://pastebin.com/7Jj9saEv

Do anyone happen to know what Im missing here ?

submitted by /u/Kriss3d
[link] [comments]
hacking: security in practice
Evidence of Pedo ring inside an iPad

Hello community of hacking. I don't know if this is the correct sub to ask this question. I'm sorry in advance if it's not the case.

My question is: it is too hard to access data inside an iPad if you don't have its password? The iPad is the model A1670.

Context: 4 years ago Argentinian model Natacha Jaitt died in suspicious circumstances after accusing high profile people of integrating a pedo ring. The accused were either very famous and/or powerful people from Argentina. Before dying she said she had evidence supporting her accusations in an iPad which is the one in the question. She also said she wouldn't OD on cocaine (which is apparently what killed her).

4 years later, Argentinian police haven't been able to access this iPad. Press says that they have tried 96000 times and are still unsuccessful in their mission.

Follow up to the first question: Again, is it that hard? Do they have to actually try the brute force method to access the iPad data like it seems they have been doing? Can't they just disassemble the device and extract the data?

Thanks for reading. You can check yourself in websites like info as about this case. Is not me trying to learn how to do this to an IPad. I'm a noob who wouldn't know how to brute force or whatever a simple windows login.

In Spanish

submitted by /u/Nanolaska
[link] [comments]
Dark Reading: Attacks/Breaches
10 Vulnerabilities Types to Focus On This Year

A new Tech Insight report examines how the enterprise attack surface is expanding and how organizations must deal with vulnerabilities in emerging technologies.
Dark Reading: Attacks/Breaches
BreachForums Shuts Down in Wake of Leader's Arrest

Administrator shutters the forum on fears that it had been breached by federal authorities but assured members it's not the end for the popular underground hacking site.
Dark Reading: Attacks/Breaches
How to Keep Incident Response Plans Current

Review and update plans to minimize recovery time. Practice and a well-thumbed playbook that considers different scenarios will ensure faster recovery of critical data.