Malware News
16.2K subscribers
1.64K photos
7 videos
130 files
8.31K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
InfoSec Oasis - Free VR (Optional) InfoSec Conference April 18th
Hey, NetSec! Excuse the formatting, (Not a Reddit power user). I have been working on creating a free online conference scheduled for April 18th. The goal is to try to bring us all together virtually to learn and mingle in a time where we can't physically be together. The conference is free, the platform is free, and again, you don't need VR to join in. We hope this will bring some excitement to everyone who is stuck at home during this rough time.

If you are planning on coming, please take the time to RSVP so that we have an accurate count for the AltSpace/Microsoft people. We have a great speaker lineup so far (including Lesley Carhart, Dave Kennedy, Alyssa Miller, Neil "Grifter" Wyler, Jayson Street, and Frank "The Tank" Diaz), and will be releasing the second track soon. Hope to see you all there! More details at the website: https://infosecoasis.com/
πŸ—£TheActualRapture


πŸŽ–@malwr
Sandboxie Open Source Code is available for download
πŸ—£Im_Special

https://github.com/DavidXanatos/Sandboxie
πŸ‘€meepiquitous

Good on them for releasing the source code before discontinuing it
πŸ‘€momobozo

Great! You have to sign the driver though
πŸ‘€Holnapra


πŸŽ–@malwr
[PDF Building Secure and Reliable Systems by Google](https://landing.google.com/sre/static/pdf/SRS.pdf)
πŸ—£digicat


πŸŽ–@malwr
[PDF Report: Decade of the RATs Novel Cross-Platform APT Attacks Targeting Linux, Windows and Android](https://www.blackberry.com/content/dam/blackberry-com/asset/enterprise/pdf/direct/report-bb-decade-of-the-rats.pdf)
πŸ—£digicat


πŸŽ–@malwr
Android Stalkerware Tear Down
I spent a weekend recently decompiling and analyzing a piece of Stalkerware called "Mobile Tracker Free".

One thing I've always found interesting about Stalkerware and mobile malware is the way they obtain access to messages stored on the device. Grabbing the WhatsApp messagestore.db isn't an easy feat for a mobile app on a non-rooted Android device. It was interesting to analyze the code (some included in the screenshot) to see how they did it. It was even more interesting to watch them chmod 777 the messagestore.db before sending it back to their servers.

If you're interested, my full write up is in the link below:

https://traced.app/2020/02/22/in-the-wild-stalkerware-analysis-mobile-tracker-free/

Any questions, please just ask. :)
πŸ—£Mattboddy47


πŸŽ–@malwr