Dissecting the Windows Defender Driver - WdFilter (Part 3) :: Up is Down and Black is White
π£digicat
1οΈβ£ Part 1: https://n4r1b.netlify.com/posts/2020/01/dissecting-the-windows-defender-driver-wdfilter-part-1/
2οΈβ£ Part 2: https://n4r1b.netlify.com/posts/2020/02/dissecting-the-windows-defender-driver-wdfilter-part-2/
π@malwr
π£digicat
1οΈβ£ Part 1: https://n4r1b.netlify.com/posts/2020/01/dissecting-the-windows-defender-driver-wdfilter-part-1/
2οΈβ£ Part 2: https://n4r1b.netlify.com/posts/2020/02/dissecting-the-windows-defender-driver-wdfilter-part-2/
π@malwr
n4r1b.netlify.app
Dissecting the Windows Defender Driver - WdFilter (Part 3)
In this series of posts I'll be explaining how the Windows Defender main Driver works, in this third post we will look into the callback routine for process/desktop handle operations and also into everything related to drivers information and verification
Patching MacOS Sketch.App for unlimited Trial in Ghidra
π£ck3k
Can somebody elaborate on how this qualifies as security related, when it's an article about how to pirate a piece of software?
π€DebugDucky
π@malwr
π£ck3k
Can somebody elaborate on how this qualifies as security related, when it's an article about how to pirate a piece of software?
π€DebugDucky
π@malwr
deviltux.thedev.id
Patching MacOS Sketch.App for unlimited Trial in Ghidra
<%= @description %>
Phishing Blocklist sourced from Phishtank
I created this because it's useful for me, Perhaps it might be useful for you.
A Phishing blocklist from Phishtank, Originally intended use within PiHole but you can use it in other things too.
https://github.com/tg12/pihole-phishtank-list
π£CoronationStreetFan1
These days from a business standpoint itβs protect against zero-day or go home Iβm afraid.
Iβm sure this will be useful for home users though with things like pihole, thanks for sharing.
π€MSPInTheUK
I believe phishing.army covers this
Also: https://firebog.net/
π€DevinSysAdmin
π@malwr
I created this because it's useful for me, Perhaps it might be useful for you.
A Phishing blocklist from Phishtank, Originally intended use within PiHole but you can use it in other things too.
https://github.com/tg12/pihole-phishtank-list
π£CoronationStreetFan1
These days from a business standpoint itβs protect against zero-day or go home Iβm afraid.
Iβm sure this will be useful for home users though with things like pihole, thanks for sharing.
π€MSPInTheUK
I believe phishing.army covers this
Also: https://firebog.net/
π€DevinSysAdmin
π@malwr
GitHub
GitHub - tg12/pihole-phishtank-list: A blocklist for Pihole from PhishTank
A blocklist for Pihole from PhishTank. Contribute to tg12/pihole-phishtank-list development by creating an account on GitHub.
Excision: An In-Browser System for Detection of Malicious Third-Party Content Inclusions
π£sajjadium
π@malwr
π£sajjadium
π@malwr
GitHub
GitHub - sajjadium/Excision: Excision: An In-Browser System for Detection of Malicious Third-Party Content Inclusions
Excision: An In-Browser System for Detection of Malicious Third-Party Content Inclusions - sajjadium/Excision
keystack: a proof-of-concept demo for "cracking" AES-256 when keys are left unprotected in another process
π£mtreece
This was inspired by a friend who wondered/commented that it might be difficult for an attacker to brute force search the memory of another process to find crypto keys if they weren't cleared from memory after use.
Just a fun demo; nothing (yet) serious :-).
π€mtreece
π@malwr
π£mtreece
This was inspired by a friend who wondered/commented that it might be difficult for an attacker to brute force search the memory of another process to find crypto keys if they weren't cleared from memory after use.
Just a fun demo; nothing (yet) serious :-).
π€mtreece
π@malwr
GitLab
Tyler Reece / keystack Β· GitLab
A Frida Script to Bypass Mono/Xamarin based Certificate Pinning on Android Devices for Mobile Assessments and Man-in-the-Middle
π£alxbl
π@malwr
π£alxbl
π@malwr
GoSecure
24/7 managed detection, response, and expert cybersecurity services - GoSecure
We provide around-the-clock threat detection and incident response, backed by expert consulting to keep your organization secure.
[Blog Article Weird, Scary, and Annoying malware](https://bushidotoken.blogspot.com/2020/04/weird-scary-and-annoying-malware.html)
π£Struppigel
π@malwr
π£Struppigel
π@malwr
Blogspot
Weird, Scary, and Annoying malware
For the majority of the time, malware is a serious problem, and its creation is sponsored by organised crime syndicates and nation stat...
(2020-04-06) PowerShell Script To Reset The KrbTgt Account Password/Keys For Both RWDCs And RODCs (Update 5) - help with post breach cleanup in a Golden Ticket melodrama
π£digicat
π@malwr
π£digicat
π@malwr
Jorge's Quest For Knowledge!
(2020-04-06) PowerShell Script To Reset The KrbTgt Account Password/Keys For Both RWDCs And RODCs (Update 5)
Some time ago I wrote a PowerShell script to reset the KrbTgt Account Password of both RWDCs and RODCs. β More information can be found through the following link: (2018-12-30) PowerShell Scrβ¦
OriginTracer: An In-Browser System for Identifying Extension-based Ad Injection
π£sajjadium
π@malwr
π£sajjadium
π@malwr
GitHub
GitHub - sajjadium/OriginTracer: OriginTracer: An In-Browser System for Identifying Extension-based Ad Injection
OriginTracer: An In-Browser System for Identifying Extension-based Ad Injection - sajjadium/OriginTracer
Hunt more broadly and effectively with new Microsoft Threat Protection features on preview
π£digicat
π@malwr
π£digicat
π@malwr
TECHCOMMUNITY.MICROSOFT.COM
Hunt more broadly and effectively with new Microsoft Threat Protection features on preview
With app and identity signals, custom detections, and charts now available on preview, your advanced threat hunting activities have never been as...
VirSecCon2020: Hosted by NahamSec & TheCyberMentor w/ Talks on Bug Bounty, Mobile, Web, Recon &more!
π£NahamSec
π@malwr
π£NahamSec
π@malwr
YouTube
VirSecCon2020: Hosted by NahamSec & TheCyberMentor w/ Talks on Bug Bounty, Mobile, Web, Recon &more!
Live Every Tuesday, Saturday, Sunday on Twitch.tv/nahamsec
Talks:
00:03:00 - NahamSec and @TheCyberMentor - Opening Ceremony:
00:15:00 - @STOKfredrik - From NOOB to MVH: What does it really take
00:58:00 - @niden - Try Harder? Keep Trying! Demystifyingβ¦
Talks:
00:03:00 - NahamSec and @TheCyberMentor - Opening Ceremony:
00:15:00 - @STOKfredrik - From NOOB to MVH: What does it really take
00:58:00 - @niden - Try Harder? Keep Trying! Demystifyingβ¦