Source Byte – Telegram
Source Byte
7.75K subscribers
846 photos
73 videos
678 files
1.68K links
هشیار کسی باید کز عشق بپرهیزد
وین طبع که من دارم با عقل نیامیزد
Saadi Shirazi 187
Download Telegram
let him cook 😁

#meme
🤓2🎃1
Forwarded from OnHex
Implant.ARM_.iLOBleed.a-fa-1.pdf
985.2 KB
🔴 گزارش شرکت امن پرداز، در خصوص کشف اولین روت کیت در فریمورهای ILO سرورهای HP در شبکه ی ایران

🆔 @onhex_ir
➡️ ALL Link
👍1
Amnpardaz-iLOBleed.pdf
761.5 KB
Take the lights-out Implant.ARM.iLOBleed.a

The first rootkit discovered infecting HP iLO firmware


English Version

*from vx-underground *
Shellcoding for Linux and Windows Tutorial

https://www.vividmachines.com/shellcode/shellcode.html
17065-manual-shellcode.pdf
1.3 MB
manual-shellcode.pdf
#shellcode
Writing shellcode for Windows in assembler

https://habr.com/en/articles/522966/
#shellcode
Source Byte pinned «Basics of Windows shellcode writing https://idafchev.github.io/exploit/2017/09/26/writing_windows_shellcode.html #shellcode»
New PoolParty Process Injection Techniques Outsmart Top EDR Solutions
thehackernews.com/2023/12/ne…

#EDR , #process_injection
Horse Shell analysis (TP-Link routers malware by chinese APT Camaro Dragon)
Credits @_CPResearch_

buff.ly/42WZ8zW

#malware , #IoT ,
👍2
us_19_Kotler_Process_Injection_Techniques_Gotta_Catch_Them_All.pdf
733.6 KB
Kotler-Process-Injection-Techniques-Gotta-Catch-Them-All.pdf

#malware_dev
Mitre :
Process injection Sub-techniques(12)

https://attack.mitre.org/techniques/T1055/

#malware_dev
Process injection
Covers these:

Techniques that i will cover here:
[x] Inject Dll in remtote process using CreateRemoteThread API.
[x] Inject Dll in remtote process using SetWindowsHookExW API.
[x] Inject ShellCode in remtote process using CreateRemoteThread API.
[x] Inject ShellCode in remote process using QueueUserAPC API.
[x] Inject ShellCode in remote process using Early Bird Technique.
[x] Inject ShellCode in remote process using TLS CallBack Technique.
[x] Inject using Thread execution hijacking.
[x] Inject Dll in remtote process using Reflective DLL injection.
[x] inject using Process Hollowing.
[x] inject using Process Doppelganging.
[ ] inject using Atom Bombing.
[x] inject using Process Ghosting.
[x] inject and persist using Image File Execution Options.
[x] inject using using AppInit_DLLs Registry.
[x] inject using using AppCertDlls Registry.
https://github.com/MahmoudZohdy/Process-Injection-Techniques/tree/main

#malware_dev
❤‍🔥1
code_injection_series_part1.pdf
374.1 KB
code_injection_series_part1.pdf

#malware_dev , #code_injection
Understanding_and_Re_creating_Process_Injection_Techniques_through.pdf
4.9 MB
🥇 best

Understanding and Re-creating Process Injection Techniques through Nimjector.pdf

#malware_dev
👍2