iiLinux
6.7K subscribers
631 photos
247 videos
1.63K files
287 links
- This channel is by @darks1ders .
- Contact Us: @END6BOT .
- For educational purposes only.
Download Telegram
This media is not supported in your browser
VIEW IN TELEGRAM
cheat code to watch any movie for free.

under 30 seconds
โค8๐Ÿค”2๐Ÿ‘€1
๐Ÿง Quick Linux tip:

When you need to create several directories at once, you donโ€™t have to do it one by one.

The mkdir command supports brace expansion, letting you create multiple nested directories in a single go.

$ mkdir -p ~/scripts/{site-01,site-02}/{backup,monitoring,network}


This instantly creates folders for two sites, each with its own backup, monitoring, and network directories.

A neat way to save time and keep your directory structure organized.
โค3๐Ÿ‘1
This media is not supported in your browser
VIEW IN TELEGRAM
Hello, World!
This is a collection of our channels that may be useful to you during your journey in the technical field, especially in cybersecurity.

https://t.me/addlist/nD70sWRf83U4ZTA0

ุฃู‡ู„ุงู‹ ูˆุณู‡ู„ุงู‹ ุจูƒู… ุฌู…ูŠุนุงู‹ุŒ
ู‡ุฐู‡ ู…ุฌู…ูˆุนุฉ ู…ู† ุงู„ู‚ู†ูˆุงุช ุงู„ุฎุงุตุฉ ุจู†ุง ูˆุงู„ุชูŠ ู‚ุฏ ุชููŠุฏูƒู… ุฎู„ุงู„ ุฑุญู„ุชูƒู… ููŠ ุงู„ู…ุฌุงู„ ุงู„ุชู‚ู†ูŠ ูˆุฎุงุตุฉู‹ ููŠ ุงู„ุฃู…ู† ุงู„ุณูŠุจุฑุงู†ูŠ.

https://t.me/addlist/nD70sWRf83U4ZTA0
This media is not supported in your browser
VIEW IN TELEGRAM
malware_cleaned.js
24.7 KB
ClickFix Malware

ClickFix is a dangerous, highly effective social engineering campaign active in 2026

The Lure: Users are directed to a malicious or compromised website via fake ads (e.g., fraudulent Google Ads for software like Tailscale), phishing emails, or fake browser updates.

Fake Error/Captcha: The site displays a fake Windows error, Browser Security Alert, or "Verify you are not a robot" captcha screen.

The Trick: The site claims a browser issue needs to be fixed. It instructs the user to open the Windows "Run" dialog (\(Win + R\)) or the macOS Terminal, paste a command, and press Enter.

Malicious Action: Unbeknownst to the user, the website automatically copies a long, obfuscated PowerShell or shell script to the clipboard. Pasting it executes this script.

Payload: The script downloads and runs malwareโ€”often a stealer like Shamos or Infinity Stealerโ€”that steals browser passwords, session cookies, and crypto wallets.
๐Ÿคฃ7โค3
This media is not supported in your browser
VIEW IN TELEGRAM
โค1
extension.js
6.3 KB
VSCode Backdoor ๐Ÿ›‘๐Ÿ”’ - A heavily obfuscated Node.js/VS Code extension script that acts like a remote malware loader ๐Ÿ•ต๏ธโ€โ™‚๏ธ. The script pretends to be part of a normal VS Code extension but contacts several Solana blockchain RPC servers โ›“๏ธ and reads hidden commands stored in blockchain transaction memos ๐Ÿ“œ. It downloads additional code from the internet ๐ŸŒ and executes that code dynamically using eval() and vm.Script() โš™๏ธ.
npm.js
2.8 KB
NPM InfoStealer ๐Ÿ“ฆ๐Ÿ”“ - a malicious Node.js script designed to steal sensitive information from a developer machine, CI/CD server, or cloud build environment during an npm package installation. ๐Ÿ–ฅ๐Ÿ”’

The script collects environment variables, steals cloud and npm credentials, gathers system and network information, and sends everything to an attacker-controlled backend server. ๐ŸŒ๐Ÿ“ค

It is typical supply-chain malware hidden inside an npm package. ๐Ÿ›๐Ÿ•ต๏ธโ€โ™‚๏ธ
telegraph malware.py
6.3 KB
๐Ÿ“ก Telegraph as a Malware Command-and-Control Resolver - This is a Remote Access Trojan (RAT) that uses Telegraph pages as a hidden method to store or retrieve its command-and-control (C2) server address. ๐Ÿ”’

The malware hides its real server address, downloads the hidden address from a Telegraph page, decrypts the address, connects to the attacker server, receives commands remotely, executes commands on the victim machine, and sends results back to the attacker. ๐Ÿ’ป๐Ÿ”“
๐Ÿ”ฅ2
Those are samples or PoC nothing more you can understand it better and make it more advanced
This media is not supported in your browser
VIEW IN TELEGRAM
GhostLock Completely Bypasses All Modern Ransomware Defenses, due to the behaviors Zero writes, Only read-open data, No data written, No renames, Minimal data read
This media is not supported in your browser
VIEW IN TELEGRAM
Hello, World!
This is a collection of our channels that may be useful to you during your journey in the technical field, especially in cybersecurity.

https://t.me/addlist/nD70sWRf83U4ZTA0

ุฃู‡ู„ุงู‹ ูˆุณู‡ู„ุงู‹ ุจูƒู… ุฌู…ูŠุนุงู‹ุŒ
ู‡ุฐู‡ ู…ุฌู…ูˆุนุฉ ู…ู† ุงู„ู‚ู†ูˆุงุช ุงู„ุฎุงุตุฉ ุจู†ุง ูˆุงู„ุชูŠ ู‚ุฏ ุชููŠุฏูƒู… ุฎู„ุงู„ ุฑุญู„ุชูƒู… ููŠ ุงู„ู…ุฌุงู„ ุงู„ุชู‚ู†ูŠ ูˆุฎุงุตุฉู‹ ููŠ ุงู„ุฃู…ู† ุงู„ุณูŠุจุฑุงู†ูŠ.

https://t.me/addlist/nD70sWRf83U4ZTA0
This media is not supported in your browser
VIEW IN TELEGRAM
๐Ÿงญ Scan Networks Like a Pro with Nmap
Discover open ports and services in seconds.
A must-have for security analysis.
โš ๏ธ Use only on authorized networks.
๐Ÿ‘‰ Donโ€™t comment yet
๐Ÿ” Share to support
๐Ÿ’ฌ Comment NMAP for more information
#CyberSecurity #Nmap #Infosec #NetworkSecurity
โค4๐Ÿ”ฅ1