@Phantasm_Lab – Telegram
@Phantasm_Lab
2.56K subscribers
712 photos
34 videos
671 files
2.71K links
- Red x Blue Security
- Bug Bounty 💷 💵
- Exploitable tools
- Programming Languages
- Malware Analysis

🇺🇸 🇧🇷 🇪🇸

since 2017 ©


Parceiros:
@TIdaDepressaoOficial @acervoprivado @ReneGadesx @G4t3w4y
Download Telegram
*FBI* has high confidence that *HIDDEN COBRA*

actors are using the IP addresses—listed in this report’s IOC files—to maintain a presence on victims’ networks and to further network exploitation.


DHS and FBI are distributing these *IP addresses* to enable network defense and reduce exposure to any *North Korean government* malicious cyber activity.



This alert includes *IOCs related to HIDDEN COBRA, IP addresses* linked to systems infected with

*FALLCHILL malware*, malware denoscriptions, and associated signatures.


This alert also includes suggested response actions to the IOCs provided, recommended mitigation techniques, and information on reporting incidents. If users or administrators detect activity associated with the *FALLCHILL malware*, they should immediately flag it, report it to the DHS National Cybersecurity and Communications Integration Center (NCCIC) or the FBI Cyber Watch (CyWatch), and give it the highest priority for enhanced mitigation.

https://www.us-cert.gov/ncas/alerts/TA17-318A

🕴🏽 @Phantasm_Lab
Forwarded from Canais e Grupos - TI (José Roberto) via @like
#Evento #Python

Python Day Natal 2017

Data: 02/12/2017
Local: IMD - Instituto Metrópole Digital
Rua Capitão-Mor Gouveia, 3733, Lagoa Nova, Natal/RN
Submissão de Trabalhos: https://speakerfight.com/events/python-day-natal-2017/
Inscrições: https://www.sympla.com.br/python-day-natal__205951
Initially known as "Project Astoria" and delivered in beta builds of Windows 10 Threshold 2 for Mobile, Microsoft implemented a full blown Linux 3.4 kernel in the core of the Windows operating system, including full support for VFS, BSD Sockets, ptrace, and a bonafide ELF loader. After a short cancellation, it's back and improved in Windows 10 Anniversary Update ("Redstone"), under the guise of Bash Shell interoperability. This new kernel and related components can run 100% native, unmodified Linux binaries, meaning that NT can now execute Linux system calls, schedule thread groups, fork processes, and access the VDSO!

https://www.youtube.com/watch?v=36Ykla27FIo

🕴🏽 @Phantasm_Lab
If you've ever written any code - even just Hello World - you've used some syscalls. In this talk we'll explore what syscalls are, how they are used to set up containers, and how to make your deployment more secure at runtime by limiting the syscalls your containers can make thanks to seccomp and Linux security modules like AppArmor. We'll also discuss how, if your architecture is broken into containerized microservices, this gives you a great opportunity to improve security by limiting what each container can do. This is where containerized microservices really shine over traditional monoliths from a security perspective - so it's helpful to know about if you're trying to convince your security team that containers are a good idea. There will be lots of live demos!

https://www.youtube.com/watch?v=8g-NUUmCeGI

🕴🏽 @Phantasm_Lab