Malware News
15.7K subscribers
1.64K photos
7 videos
130 files
8.09K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
Damn Vulnerable GraphQL Application is an intentionally vulnerable implementation of Facebook's GraphQL technology, to learn and practice GraphQL Security.

https://github.com/dolevf/Damn-Vulnerable-GraphQL-Application

#hacking #graphql #cybersecurity #bughunting
πŸ—£0xAsm0d3us


πŸŽ–@malwr
(I know many do this) If you're jamming on YARA locally, I recommend using VS Code & the awesome YARA extension which helps do syntax stuff, highlighting and more. Then use the integrated terminal to test and tweak your rules. Super fun.

#100DaysofYARA

https://marketplace.visualstudio.com/items?itemName=infosec-intern.yara
πŸ—£stvemillertime


πŸŽ–@malwr
MalAPIReader: Python-enabled PE parsing to identify malicious API calls 🐍

@SquiblydooBlog and I collaborated on this project that parses portable executables and looks up API calls on @mrd0x's
https://malapi.io

https://github.com/HuskyHacks/MalAPIReader
πŸ—£HuskyHacksMK


πŸŽ–@malwr
RE tip of the day: In malicious RTF docs, there are multiple ways how to obfuscate embedded objects to complicate the payload extraction:
* inserting {\object} in the middle
* inserting \bin[num]
* using spaces between digits
#infosec #cybersecurity #malware #reverseengineering
πŸ—£re_and_more


πŸŽ–@malwr
πŸ‘1
Breaking the Nespresso Vertuo Barcodes
πŸ—£TBD_electronique

Great work. I use the PCBite for probing, really good kit. Probably that STM32F1 is susceptible to a glitching attack.
πŸ‘€andreixc


πŸŽ–@malwr
Oh no!
πŸ—£jmcmurry


πŸŽ–@malwr
πŸ“πŸ“πŸ“Please forward posts to the other groups πŸ“πŸ“πŸ“
πŸ‘3
Malware News pinned Β«πŸ“πŸ“πŸ“Please forward posts to the other groups πŸ“πŸ“πŸ“Β»
This media is not supported in your browser
VIEW IN TELEGRAM
If you need to dump credentials from lsass.exe on a machine with defender ATP on it, or generally want to execute #mimikatz for another operation on that machine, check out the following POC from @zux0x3a (All creds to him).

https://github.com/0xsp-SRD/mortar

#redteam #pentest #bypass
πŸ—£VirtualAllocEx


πŸŽ–@malwr
Our paper on emulating basebands for security analysis has been accepted at NDSS! We found multiple critical pre-auth vulnerabilities in the 2G and 4G implementations on Samsung and MediaTek basebands.

Check out the paper or keep reading to learn more🧡https://hernan.de/research/papers/firmwire-ndss22-hernandez.pdf
πŸ—£Digital_Cold


πŸŽ–@malwr