Malware News
12.9K subscribers
1.63K photos
7 videos
130 files
7.78K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
monomorph: MD5-Monomorphic Shellcode Packer - Pack arbitrary shellcode into an executable that always has the same MD5 hash
๐Ÿ—ฃsanitybit

Itโ€™s interesting though, next step is to cause collisions with system files hashes and see what happens with AVs ๐Ÿ˜
๐Ÿ‘คmrdantesque

Lmao
๐Ÿ‘คEvenIfIWantedTo

The output file will always have the same MD5 hash: 3cebbe60d91ce760409bbe513593e401


Well there we go AV vendorsโ€ฆ
๐Ÿ‘คlittlejob


๐ŸŽ–@malwr
๐Ÿ”ฅ2๐Ÿ‘1
MalPull version 1.4 brings a more usable CLI, which now only requires the destination folder for the samples which are to be downloaded, and one or more hashes that are to be downloaded. It also allows users to fetch samples from VirusShare via their API, as long as an API key is provided. VirusShare accounts are free, but have a limit of 4 requests per minute, for every minute of the day.

Using MalPull, one can easily search for a given hash on MalShare, Malware Bazaar, VirusShare, Triage, VirusTotal, and Koodous, after which the sample is downloaded. When more samples are requested, the downloads are concurrently processed via N amount of threads, as specified in the settings file.


https://maxkersten.nl/2022/09/29/malpull-1-4-stable-release/

โ„น๏ธ Sent from one of our channel members

๐ŸŽ–@malwr
๐Ÿ‘2
The PS5 Has Been Jailbroken โ€“ Custom Packages Can Now Be Installed
๐Ÿ—ฃtnavda

This article from Wololo is a bit better (the tweet author in this article even links to it). https://wololo.net/2022/10/03/released-ps5-kernel-exploit-webkit-vulnerability-for-firmware-4-03/
๐Ÿ‘คGreger34

Tempted to delete this post, more of a press release with zero details
๐Ÿ‘คtnavda

WOOO YEAH BABY! NOW I CAN PLAY P.T ON PS5
๐Ÿ‘คBetaTalk64


๐ŸŽ–@malwr
๐Ÿ‘1๐Ÿ”ฅ1
BSides San Francisco 2022 Conference Recordings
๐Ÿ—ฃsanitybit

Thanks for posting! I almost made it to this con but had to duck out last minute, glad to be able to watch all the talks.
๐Ÿ‘คIkePAnderson

Click through for the full playlist, the embed starts at opening remarks.
๐Ÿ‘คsanitybit


๐ŸŽ–@malwr
Seer โ€“ a GUI front end to GDB for Linux
๐Ÿ—ฃmodelop

Very enigmatic name.
๐Ÿ‘คshevy-java

Looks like a powerful debugging frontend, nice work!
I currently use vscodium's debugger GUI, pretty good but sometimes lacking.

If you could add valgrind support, it would make it even more powerful.
๐Ÿ‘คSettling2981

FINALLY A GUI DEBUGGER AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA *explodes in excitement*

Yes this is valid because it seems CLI is king, but certainly not the king of usability. A GUI is VERY MUCH APPRECIATED.

Yaaaaaaaaaaaaaaaaaaaaaaaaaaaaaay!
๐Ÿ‘คdarkguy2008


๐ŸŽ–@malwr
โค1๐Ÿ‘1