Una buena plataforma para poner a prueba tus habilidades de RE & Malware Analysis.
https://malops.io/
https://malops.io/
🥰1
Thread Name Calling Injection
This technique abuses Windows APIs originally designed for setting and retrieving thread names (denoscriptions) to inject shellcode or load DLLs into a remote process.
This technique abuses Windows APIs originally designed for setting and retrieving thread names (denoscriptions) to inject shellcode or load DLLs into a remote process.
#malware_development
#malwaredev
#maldev
@ZwLowLevel
🔥1
Forwarded from Sec Note
Analyzing Avast AV: Kernel Hooking and Driver Reverse Engineering
👾Presentation Video
Blog:
https://binary-win.github.io/2025/12/27/AVAST-Kernel-Hooks-and-AV-ANALYSIS.html
👾Presentation Video
Blog:
https://binary-win.github.io/2025/12/27/AVAST-Kernel-Hooks-and-AV-ANALYSIS.html
👏1😱1
Time Traveling Exploitation: Remote Code Execution in a 10.000 Day Old Game Protocol
#reverse_engineering
#reversing
@ZwLowLevel
https://youtu.be/7dXaGKF-73Y?si=MUMcmGFiPquAXMGw=MUMcmGFiPquAXMGw
YouTube
Time Traveling Exploitation: Remote Code Execution in a 10,000 Day Old Game Protocol - Riley Kidd
BSides Canberra 2025
Hacking washing machines
#os_internals
#reverse_engineering
#reversing
@ZwLowLevel
https://media.ccc.de/v/39c3-hacking-washing-machines
media.ccc.de
Hacking washing machines
Almost everyone has a household appliance at home, whether it's a washing machine, dishwasher, or dryer. Despite their ubiquity, little i...
EDR Jammer: Bypassing security mechanisms through the Windows Filtering Platform
#edr_bypass
#edr_evasion
@ZwLowLevel
https://hackmag.com/security/wfp-bypass
HackMag
EDR Jammer: Bypassing security mechanisms through the Windows Filtering Platform
Tech magazine for cybersecurity specialists
Prompt poaching runs rampant in extensions
Similarweb, a popular browser extensions with 1,000,000+ users, is actively monitoring and collecting data from AI tools transmitting your prompts, responses, and other metadata for web analytics. Prompt Poaching is a technique growing in popularity in which extensions capture and exfiltrate conversations you have with AI.
Similarweb, a popular browser extensions with 1,000,000+ users, is actively monitoring and collecting data from AI tools transmitting your prompts, responses, and other metadata for web analytics. Prompt Poaching is a technique growing in popularity in which extensions capture and exfiltrate conversations you have with AI.
#offtopic
@ZwLowLevel
https://secureannex.com/blog/prompt-poaching
Secure Annex
Prompt poaching runs rampant in extensions
Web analytics companies are using browser extensions to monetize your most private thoughts
Forwarded from Freedom Fox 🏴☠
GhostlyHollowingViaTamperedSyscalls2
Ghostly Hollowing + Tampered Syscalls Via Hardware Breakpoints: Utilizing hardware breakpoints to spoof syscall arguments while implementing Ghostly Hollowing PE #Injection technique
#av #работягам
Чат в МАХ
Telegram✉️ @freedomfox
Ghostly Hollowing + Tampered Syscalls Via Hardware Breakpoints: Utilizing hardware breakpoints to spoof syscall arguments while implementing Ghostly Hollowing PE #Injection technique
#av #работягам
Чат в МАХ
Telegram
Please open Telegram to view this post
VIEW IN TELEGRAM
Happy New Year 🎊
We hope this new year is full of success and blessings, that you achieve all your goals, and that there is peace and harmony in your family.
We hope this new year is full of success and blessings, that you achieve all your goals, and that there is peace and harmony in your family.
🔥1
APT36 : Multi-Stage LNK Malware Campaign Targeting Indian Government Entities
#malware_analysis
@ZwLowLevel
CYFIRMA
APT36 : Multi-Stage LNK Malware Campaign Targeting Indian Government Entities - CYFIRMA
EXECUTIVE SUMMARY CYFIRMA has identified a targeted malware campaign attributed to APT36 (Transparent Tribe), a Pakistan aligned threat actor actively...
ActiveBreach Engine
SysWhispers & HellsGate Successor, Direct Syscall Execution Framework using modern techniques - EDR/AV Evasion
SysWhispers & HellsGate Successor, Direct Syscall Execution Framework using modern techniques - EDR/AV Evasion
#malware_development
#maldev
#malwaredev
@ZwLowLevel