Windows System programming in Rust
https://youtu.be/_Z0xUwuwysw?si=7VQcFqhGsSGH5Z2d
@GoSecurity
#windows #Rust
https://youtu.be/_Z0xUwuwysw?si=7VQcFqhGsSGH5Z2d
@GoSecurity
#windows #Rust
یه اپ باحال ساختن ،کدشو نخوندم ولی خیلی سوپر ایزیه برای کسایی که چیزی از پراسس و سرویسای مختلف نمیدونن
https://github.com/pranshuparmar/witr
@GoSecurity
https://github.com/pranshuparmar/witr
@GoSecurity
GitHub
GitHub - pranshuparmar/witr: Why is this running?
Why is this running? Contribute to pranshuparmar/witr development by creating an account on GitHub.
🔥2
SHA256:
@GoSecurity
#analysis #source #trojan #elf #linux #persistence #malware
13d2a8cc4f0371786724a1c76452ef1b819de90455b80ef01461f09cf8ae5f87
@GoSecurity
#analysis #source #trojan #elf #linux #persistence #malware
بحث با انسانهای کودن و احمق
اونارو باهوشتر نمیکنه، شمارو به کودن شدن نزدیک میکنه.
اونارو باهوشتر نمیکنه، شمارو به کودن شدن نزدیک میکنه.
❤2
Ledger has suffered another security breach, compromising customers personal information.
ledger.com
@GoSecurity
#ledger
ledger.com
@GoSecurity
#ledger
CVE-2026-21508 - Windows LPE via arbitrary COM object initialization
The vulnerability essentially works by forcing a process running as system and that uses the undocumented function Windows_Storage!_SHCoCreateInstance, to create an arbitrary COM object of our choice. For this to happen the object must be associated with an already registered COM class that supports CLSCTX_INPROC_SERVER. Arbitrary COM object creation is archived by manipulating a CoCreateInstance call first argument
@GoSecurity
#CVE #LPE #DFIR #blueteam
The vulnerability essentially works by forcing a process running as system and that uses the undocumented function Windows_Storage!_SHCoCreateInstance, to create an arbitrary COM object of our choice. For this to happen the object must be associated with an already registered COM class that supports CLSCTX_INPROC_SERVER. Arbitrary COM object creation is archived by manipulating a CoCreateInstance call first argument
@GoSecurity
#CVE #LPE #DFIR #blueteam
A custom Linux beacon for Cobalt Strike
While official Cobalt Strike does not natively support generating Linux beacons, the author says that it is possible to build custom implants for Cobalt Strike on virtually any platform. The only requirement is that the implant communicates correctly with the teamserver
https://github.com/EricEsquivel/CobaltStrike-Linux-Beacon
@GoSecurity
#dfir #blueteam #threathunting #c2 #redteam #cobalt
While official Cobalt Strike does not natively support generating Linux beacons, the author says that it is possible to build custom implants for Cobalt Strike on virtually any platform. The only requirement is that the implant communicates correctly with the teamserver
https://github.com/EricEsquivel/CobaltStrike-Linux-Beacon
@GoSecurity
#dfir #blueteam #threathunting #c2 #redteam #cobalt
GitHub
GitHub - EricEsquivel/CobaltStrike-Linux-Beacon: Proof of Concept (PoC) implant for creating custom Cobalt Strike Beacons
Proof of Concept (PoC) implant for creating custom Cobalt Strike Beacons - EricEsquivel/CobaltStrike-Linux-Beacon