This is a repository with sample malduck🦆 config extraction modules. By utilizing them you should be able to extract embedded configuration from unpacked malware samples of: njrat, remcos, revil, graphicalproton
https://github.com/CERT-Polska/malduck-modules
https://github.com/CERT-Polska/malduck-modules
GitHub
GitHub - CERT-Polska/malduck-modules
Contribute to CERT-Polska/malduck-modules development by creating an account on GitHub.
Escaping the Safari Sandbox:
A tour of WebKit IPC (презентация)
https://www.synacktiv.com/sites/default/files/2024-05/escaping_the_safari_sandbox_slides.pdf
A tour of WebKit IPC (презентация)
https://www.synacktiv.com/sites/default/files/2024-05/escaping_the_safari_sandbox_slides.pdf
Extracting data from encrypted virtual disks: six methods
https://news.sophos.com/en-us/2024/05/13/extract-data-from-encrypted-vms/
https://news.sophos.com/en-us/2024/05/13/extract-data-from-encrypted-vms/
Sophos News
Extracting data from encrypted virtual disks: six seven methods
For incident responders, a variety of techniques for information retrieval from locked-up VMs
Fuzzing Android binaries using AFL++ Frida Mode
https://valsamaras.medium.com/fuzzing-android-binaries-using-afl-frida-mode-57a49cf2ca43
https://valsamaras.medium.com/fuzzing-android-binaries-using-afl-frida-mode-57a49cf2ca43
Medium
Fuzzing Android binaries using AFL++ Frida Mode
You might find this to be a fitting prologue to my earlier post on Creating and using JVM instances in Android C/C++ applications… and you…
Order of Six Angles
блог https://r00tkitsmm.github.io/
POC
CVE-2024-27804, an iOS/macOS kernel vulnerability that leads to the execution of arbitrary code with kernel privileges
https://r00tkitsmm.github.io/fuzzing/2024/05/14/anotherappleavd.html
CVE-2024-27804, an iOS/macOS kernel vulnerability that leads to the execution of arbitrary code with kernel privileges
https://r00tkitsmm.github.io/fuzzing/2024/05/14/anotherappleavd.html
My interesting research.
CVE-2024-27804 Vulnerability in AppleAVD
https://github.com/R00tkitSMM/CVE-2024-27804
Malware Development: Crafting Digital Chaos 0x0: Basics
https://ry0dan.github.io/malware%20development/Malware-Development-Crafting-Digital-Chaos-01/
https://ry0dan.github.io/malware%20development/Malware-Development-Crafting-Digital-Chaos-01/
Motawkkel Abdulrhman [ry0d4n]
Malware Development: Crafting Digital Chaos 0x0: Basics
Article 1 of Malware Development series
Code to create a heat map of the Russian GPS jammer in Kaliningrad affecting the Baltics (Poland, Latvia, Lithuania, Estonia and Finland).
https://github.com/alphabbett/BalticsRussiaGPSjammer
https://github.com/alphabbett/BalticsRussiaGPSjammer
GitHub
GitHub - alphabbett/BalticsRussiaGPSjammer: Code to create a heat map of the Russian GPS jammer in Kaliningrad affecting the Baltics…
Code to create a heat map of the Russian GPS jammer in Kaliningrad affecting the Baltics (Poland, Latvia, Lithuania, Estonia and Finland). - alphabbett/BalticsRussiaGPSjammer
Risky Business #748 -- New cyber rules for US healthcare are coming (подкаст)
https://risky.biz/RB748/
https://risky.biz/RB748/
risky.biz
Risky Business #748 -- New cyber rules for US healthcare are coming - Risky Business
Leveraging macOS's Networking Frameworks to Heuristically Detect Malware (презентация)
Кратко - программно анализировать коннекты чисто на хосте
https://speakerdeck.com/patrickwardle/nothing-but-net-leveraging-macoss-networking-frameworks-to-heuristically-detect-malware
Кратко - программно анализировать коннекты чисто на хосте
https://speakerdeck.com/patrickwardle/nothing-but-net-leveraging-macoss-networking-frameworks-to-heuristically-detect-malware
Speaker Deck
Nothing but Net: Leveraging macOS's Networking Frameworks to Heuristically Detect Malware
As the majority of malware contains networking capabilities, it is well understood that detecting unauthorized network access is a powerful detection he…
Интересные курсы нашел, цена привлекательная ($450), незнаю насколько они хороши.
MCD - Certified Code Deobfuscation Specialist
MVRE - Certified Vulnerability Researcher and Exploitation Specialist
MCD - Certified Code Deobfuscation Specialist
MVRE - Certified Vulnerability Researcher and Exploitation Specialist