Source Byte
8.31K subscribers
894 photos
77 videos
692 files
1.78K links
هشیار کسی باید کز عشق بپرهیزد
وین طبع که من دارم با عقل نیامیزد
Saadi Shirazi 187
Download Telegram
Forwarded from CyberSecurityTechnologies
Kernel_Debugging_Filesystem_Minifilters.pdf
776.9 KB
#Whitepaper
#Kernel_Security
#Offensive_security
"Debugging Filesystem Minifilters with WinDbg", 2026.

// This technical reference poster explores Windows filesystem minifilters, kernel debugging, and filter communication ports from a red team perspective
🔥5
Forwarded from Infosec Fortress
From breaking into my ISP router to finding a MediaTek kernel 0day

🔗 Link

#exploitation
#kernel
#linux
#mediatek
#zyxel
———
🆔 @Infosec_Fortress
🔥72
Forwarded from OnHex
CSWF.pdf
1.2 MB
🔴 مرکز فرماندهی عملیات امنیت سایبری سندی با عنوان "چارچوب ملی سرمایه انسانی امنیت سایبری ایران" در کانال بله اشون منتشر کرده.

یکی از چالش‌های عمده حوزه امنیت سایبری کشور‌ها و به طور خاص ایران، کمبود نیروی متخصص و شکاف مهارتی در این حوزه و نیز فقدان نقشه‌راهی مدون در خصوص مسیرهای شغلی و مقتضیات آن می‌باشد. این چارچوب با در نظر گرفتن زیست‌بوم و نیازهای واقعی کشور و با هدف ایجاد یک زبان مشترک و ساختاری منسجم طراحی شده است.

در این چارچوب، مجموعاً ۱۳ عنوان شغلی اصلی که برای وضعیت کنونی کشور و نیاز کلیدی سازمان‌ها و شرکت‌ها مبتلابه هستند، استخراج و وظایف، دانش تخصصی و مهارت‌های هر یک به طور شفاف تشریح شده است.


#ایران #مرکز_فرماندهی_عملیات_امنیت_سایبری

🆔 @onhex_ir
🌍 ONHEXGROUP (Official Links)
🗿5👎31
Trend Micro Deep Security Agent Research: Forcing bmhook/tmhook Reloads to Open a Protection Bypass Window

https://matheuzsecurity.github.io/hacking/trendmicro-bmhook-tmhook-reload-bypass/
4
Source Byte
be aware of scammers !
this scammer is trying to mimic original threat actor , now they own irleaks@tuta.io , how? cuz tuta will delete your account after 6 month of inactivity :)
Forwarded from Source Byte
< Scam Alert >

New Threat Actor steal famous "IrLeaks" telegram support ID & tuta mail after their support account been inactive for a while ( their accounts deleted automatically due to privacy policy ) , as i look at my archives this is previous accounts you can use to verify them :

[ + ] Exploit[.]in MemberID : 150525 ( Last visited : September 7, 2024 )
[ + ] BreachForums UserID : 46196
[ + ] BreachForums Email address : irleaks@proton.me
( Creation time: 1696708552 , Last update: 1710784785 )
[ + ] Telegram channel : 1948656476
[ + ] Telegram Support : 5128567513 <deleted>
[ + ] Email address : irleaks@tuta.io <deleted by tuta policy>
9
Attack Classes & Bypass History
This page documents recurring attack classes that DOMPurify and other DOM-based HTML sanitizers have had to withstand: HTML parser mutation, namespace confusion, rawtext breakouts, depth-limit flattening, nesting-based mXSS, DOM clobbering, prototype pollution, template-expression reassembly, engine-deferred DOM mutation, and configuration foot-guns.

https://github.com/cure53/DOMPurify/wiki/Attack-Classes-&-Bypass-History
👍31
A team identified as "Troll Team" published a video asserting that they had compromised "saderat bank"; however, the footage appears to depict a script executing on an Android device, likely utilizing Termux. The video has garnered 4,000 views.😂
😱42👎2👍1🗿1
Ai000 Cybernetics QLab
چرا در خاورمیانه همه کشورها در حال رشد، توسعه، مدرن‌شدن و سیستماتیک‌شدن هستند، ولی ما نه؟ واقعاً مشکل چیست؟
آیا توسعه یعنی پروژه‌های بیشتر، بودجه‌های بزرگ‌تر و آمارهای درشت‌تر؟
یا یعنی امروز از دیروز بهتر باشیم؟

https://youtu.be/ZyFoGe93BDg
👍8
Dissecting the dark web : reverse engineering the tools of the underground economy
10
Exploiting a “Simple” Vulnerability – Part 1.5 – The Info Leak
https://windows-internals.com/exploiting-a-simple-vulnerability-part-1-5-the-info-leak/

#CVE-2021-24107
💘3
Forwarded from Go Library
💘3
I made a useful MCP wrapper to help agents analyse multiple binaries in IDA in parallel, and easily switching them, check this out, if you will like it, it would be cool to get feedback and maybe a post in your channel 🙏
https://github.com/whoisqwerz/pocket_disasm
👍6👎2
How I found an integer overflow in tcpip.sys

https://aprl.pet/writing/cve-2026-58532

#CVE -2026-58532
👍5