Malware News
12.7K subscribers
1.63K photos
7 videos
130 files
7.78K links
The latest NEWS about malwares, DFIR, hacking, security issues, thoughts and ...

Partner channel: @cveNotify

For ads: https://telega.io/c/malwr
Download Telegram
As promised earlier today, here is my writeup about a recent #Gozi campaign that was targeting the ๐Ÿ‡ฎ๐Ÿ‡น audience.

Covering geofence payloads handle, jscript.encode script, shellcodes analysis, APC Injection and much more!

Have fun :)

https://0xtoxin-labs.gitbook.io/malware-analysis/malware-analysis/gozi-italian-shellcode-dance
๐Ÿ—ฃ0xToxin


๐ŸŽ–@malwr
Nice blog post on using Qiling framework for automatically unpack ELF executables

https://kernemporium.github.io/posts/unpacking/

#qiling #infosec #reverseengineering #learning
๐Ÿ—ฃ0xor0ne


๐ŸŽ–@malwr
โค1๐Ÿ‘1
Weโ€™ve just published a short #IDAPro tutorial about the #Disassembly window. Watch it now ๐ŸŒ https://youtu.be/cgELfAUg8C4

#IDAProTutorials #IDAPro #hexrays #LearningIDA
๐Ÿ—ฃHexRaysSA


๐ŸŽ–@malwr
Android Attack: Reversing React Native Applications
https://securityqueens.co.uk/android-attack-reversing-react-native-applications/
๐Ÿ—ฃpentest_swissky


๐ŸŽ–@malwr
Happy to announce the release of my JADX dynamic scripting plugin, JADXecute. Now you write and share scripts to automate your Android APK analysis! #ReverseEngineering

https://github.com/LaurieWired/JADXecute
๐Ÿ—ฃlauriewired


๐ŸŽ–@malwr
Here's a short blog on using Frida to write and bypass detections for your TTPs. We can use good ol' userland hooking + JavaScript bindings to avoid writing complex kernel code, which lets us quickly develop test cases and improve our techniques.

https://passthehashbrowns.github.io/using-frida-for-rapid-detection-testing
๐Ÿ—ฃpassthehashbrwn


๐ŸŽ–@malwr
Icicle is a multi architecture emulation framework designed for firmware fuzzing.
Very interesting research work

Paper: https://arxiv.org/pdf/2301.13346.pdf
github repo (pre-release): https://github.com/icicle-emu/icicle

#fuzzing #firmware #infosec #cybersecurity
๐Ÿ—ฃ0xor0ne


๐ŸŽ–@malwr
โค1
How to Create a Virtual Hacking Lab: The Ultimate Hacker Setup
๐Ÿ—ฃflacao9

Nice article and how I did my approach to learning. Gotta love VirtualBox.

Another approach too for specific service testing is creating a vuln testbed service using docker. It's a lot lighter than a full VM.
๐Ÿ‘คFolsgaardSE

This is all manual work, which is fine, but you could use the Red Team Attack Lab or the game of thrones lab
๐Ÿ‘คProud-Tap6586


๐ŸŽ–@malwr
New YouTube channel with IDAPython tutorial series [wip](https://www.youtube.com/@allthingsida)
๐Ÿ—ฃ0xeb


๐ŸŽ–@malwr
๐Ÿ‘2