Exploring ZIP Mark-of-the-Web Bypass Vulnerability (CVE-2022-41049)
https://breakdev.org/zip-motw-bug-analysis/
https://breakdev.org/zip-motw-bug-analysis/
BREAKDEV
Exploring ZIP Mark-of-the-Web Bypass Vulnerability (CVE-2022-41049)
Windows ZIP extraction bug (CVE-2022-41049) lets attackers craft ZIP files, which evade warnings on attempts to execute packaged files, even if ZIP file was downloaded from the Internet.
👍2
Pentesting AD Mindmap
https://orange-cyberdefense.github.io/ocd-mindmaps/img/pentest_ad_dark_2022_11.svg
https://orange-cyberdefense.github.io/ocd-mindmaps/img/pentest_ad_dark_2022_11.svg
👍2
Chrome Browser Exploitation
Part 1 - Introduction to V8 and JavaScript Internals
https://jhalon.github.io/chrome-browser-exploitation-1
Part 2 - Introduction to Ignition, Sparkplug and JIT Compilation via TurboFan
https://jhalon.github.io/chrome-browser-exploitation-2
Part 1 - Introduction to V8 and JavaScript Internals
https://jhalon.github.io/chrome-browser-exploitation-1
Part 2 - Introduction to Ignition, Sparkplug and JIT Compilation via TurboFan
https://jhalon.github.io/chrome-browser-exploitation-2
Jack Hacks
Chrome Browser Exploitation, Part 1: Introduction to V8 and JavaScript Internals
Web browsers, our extensive gateway to the internet. Browsers today play a vital role in modern organizations as more and more software applications are delivered to users via a web browser in the form of web applications. Pretty much everything you might…
Linux PrivEsc - Linux Kernel Exploits
https://medium.com/@tinopreter/linux-privesc-linux-kernel-exploits-87c61faec696
https://medium.com/@tinopreter/linux-privesc-linux-kernel-exploits-87c61faec696
Medium
Linux PrivEsc — Linux Kernel Exploits
Given that the kernel runs in the privileged kernel space, any vulnerability in the kernel that allows us to run arbitrary code in a …
👍1👏1
Video about bypassing MS Defender using a common PowerShell payload generated from 𝐡𝐭𝐭𝐩𝐬://𝐫𝐞𝐯𝐬𝐡𝐞𝐥𝐥𝐬[.]𝐜𝐨𝐦
https://m.youtube.com/watch?v=3HddKylkRzM
https://m.youtube.com/watch?v=3HddKylkRzM
YouTube
Bypass MS Defender by modifying payloads
Connect with me / Support:
Github ➡ https://github.com/t3l3machus/
Twitter ➡ https://twitter.com/t3l3machus
Linkedin ➡ https://www.linkedin.com/in/panagiotis-chartas-a9b4a21a5/
Make sure to Subscribe for more!
Github ➡ https://github.com/t3l3machus/
Twitter ➡ https://twitter.com/t3l3machus
Linkedin ➡ https://www.linkedin.com/in/panagiotis-chartas-a9b4a21a5/
Make sure to Subscribe for more!
REcollapse - tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications
https://github.com/0xacb/recollapse
https://github.com/0xacb/recollapse
GitHub
GitHub - 0xacb/recollapse: REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations…
REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications - 0xacb/recollapse
APT Groups and Operations
https://docs.google.com/spreadsheets/u/0/d/1H9_xaxQHpWaa4O_Son4Gx0YOIzlcBWMsdvePFX68EKU/htmlview#
https://docs.google.com/spreadsheets/u/0/d/1H9_xaxQHpWaa4O_Son4Gx0YOIzlcBWMsdvePFX68EKU/htmlview#
Defending_nginx.pdf
8.9 MB
"Defending against automatization using NGINX", 2022.
Nginx Bad Bot and User-Agent Blocker, Spam Referrer Blocker, Anti DDOS, Bad IP Blocker, Wordpress Theme Detector Blocker:
https://github.com/mitchellkrogza/nginx-ultimate-bad-bot-blocker
#book #nginx
Nginx Bad Bot and User-Agent Blocker, Spam Referrer Blocker, Anti DDOS, Bad IP Blocker, Wordpress Theme Detector Blocker:
https://github.com/mitchellkrogza/nginx-ultimate-bad-bot-blocker
#book #nginx
JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses
https://github.com/sinfulz/JustEvadeBro
https://github.com/sinfulz/JustEvadeBro
GitHub
GitHub - sinfulz/JustEvadeBro: JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses.
JustEvadeBro, a cheat sheet which will aid you through AMSI/AV evasion & bypasses. - sinfulz/JustEvadeBro
JavaScript Engine Exploitation Primitives
https://www.madstacks.dev/posts/V8-Exploitation-Series-Part-6/#writing-an-exploit
V8 Exploitation Series:
https://www.madstacks.dev/categories/v8-series
https://www.madstacks.dev/posts/V8-Exploitation-Series-Part-6/#writing-an-exploit
V8 Exploitation Series:
https://www.madstacks.dev/categories/v8-series
#Threat_Research
1. Android SharkBot Droppers on Google Play
https://www.bitdefender.com/blog/labs/android-sharkbot-droppers-on-google-play-underlines-platforms-security-needs
2. Cryptonite Ransomware
https://www.fortinet.com/blog/threat-research/Ransomware-Roundup-Cryptonite-Ransomware
1. Android SharkBot Droppers on Google Play
https://www.bitdefender.com/blog/labs/android-sharkbot-droppers-on-google-play-underlines-platforms-security-needs
2. Cryptonite Ransomware
https://www.fortinet.com/blog/threat-research/Ransomware-Roundup-Cryptonite-Ransomware
Bitdefender Labs
Android SharkBot Droppers on Google Play Underline Platform's Security Needs
A common theme we've noticed in the last few months consists of malicious apps distributed directly from the Google Play Store.
Exploiting an N-day #vBulletin PHP Object Injection Vulnerability
https://karmainsecurity.com/exploiting-an-nday-vbulletin-php-object-injection
https://karmainsecurity.com/exploiting-an-nday-vbulletin-php-object-injection
Cobalt Strike Community Kit - central repository of extensions written by the user community to extend the capabilities of Cobalt Strike
https://github.com/Cobalt-Strike/community_kit
https://github.com/Cobalt-Strike/community_kit
GitHub
GitHub - Cobalt-Strike/community_kit: Cobalt Strike is a post-exploitation framework designed to be extended and customized by…
Cobalt Strike is a post-exploitation framework designed to be extended and customized by the user community. Several excellent tools and scripts have been written and published, but they can be cha...
A Azure Exploitation Toolkit for Red Team & Pentesters
https://github.com/SikretaLabs/BlueMap
https://github.com/SikretaLabs/BlueMap
GitHub
GitHub - SikretaLabs/BlueMap: A Azure Exploitation Toolkit for Red Team & Pentesters
A Azure Exploitation Toolkit for Red Team & Pentesters - SikretaLabs/BlueMap