PFK Git – Telegram
PFK Git
640 subscribers
10 photos
16 videos
1 file
689 links
Contact : @DK_HBB_Bot


⚠️ اطلاعات فقط برای مقاصد اطلاعاتی ارائه شده است. و توجه به مسائل امنیتی را تشویق می کند.
Download Telegram
​​(ISC)2 Certified in Cybersecurity

The content in this repo is based on the self-paced course called Certified in #Cybersecurity from (ISC)2, which is a preparation for (ISC)2 Certified in Cybersecurity.

In this entry-level cybersecurity certification, the domains included are: Security Principles, Business Continuity, Disaster Recovery & Incident Response Concepts, Access Controls Concepts, Network Security and Security Operations.

https://github.com/cyberfascinate/ISC2-CC-Study-Material

#ISC
@Pfk_git
#گزارش های حسابرسی

مجموعه ای از گزارش های حسابرسی انفرادی توسط کارشناسان امنیت web3. هرزنامه های روابط عمومی برای اضافه کردن گزارش های هر محقق امنیتی مستقلی که می شناسید.

https://github.com/chinmay-farkya/solo-audit-reports

#cybersecurity #infosec #Audit
@pfk_git
​​Arc

A manager for your secrets made of arc, a RESTful API server written in Go which exposes read and write primitives for encrypted records, and arc, the client application implemented in HTML5 and javanoscript, which runs in every modern browser and it is served by arc itself.

Records are generated, encrypted and decrypted client side by arc (with AES256 in GCM mode, using 10000 iterations for the PBKDF2 key derivation function, everything WebCrypto based ), which offers an intuitive management system equipped with UI widgets including:👇

https://github.com/evilsocket/arc

#cybersecurity #infosec
@pfk_git
​​idfk

•  Indirect syscalls via HellsHall. Only did it for the protect call and some other common ones, too lazy for others
•   Producing Shellcode (via ShellcodeTemplate), exes, dlls.
•   Sleep encryption via Ekko. Only works on Exes and Shellcode. I don't think DLL can sleep encrypt properly cause CFG, just a guess though
•  I managed to injected to explorer/locally and it works, but if theres more than one instance of the shellcode is already there, only one of them will cycle.

https://github.com/susMdT/fictional-invention

#cybersecurity #infosec
@pfk_git
ابزارهای اسکن آسیب پذیری برای تست نفوذ

afrog
یک ابزار اسکن آسیب پذیری با عملکرد عالی، سریع و پایدار و قابل تنظیم PoC است. PoC شامل CVE، CNVD، رمز عبور پیش‌فرض، نشت اطلاعات، شناسایی اثر انگشت، دسترسی غیرمجاز، خواندن دلخواه فایل، اجرای دستور و غیره است. این به متخصصان امنیت شبکه کمک می‌کند تا آسیب‌پذیری‌ها را به‌موقع بررسی و رفع کنند.

https://github.com/zan8in/afrog

#cybersecurity #infosec #bugbounty #pentest
@pfk_git
​​Bulk 403 Bypass

This is a Bash noscript that performs bulk 403 bypass by adding a custom header to HTTP requests. It can be useful for testing whether a website is vulnerable to 403 bypass techniques.

https://github.com/aardwolfsecurityltd/Bulk_403_Bypass

#bugbounty #pentest
@pfk_git