Source Byte – Telegram
Source Byte
7.75K subscribers
846 photos
73 videos
678 files
1.68K links
هشیار کسی باید کز عشق بپرهیزد
وین طبع که من دارم با عقل نیامیزد
Saadi Shirazi 187
Download Telegram
what is Windows software trace preprocessor (WPP)?
MSDN

Data Source Analysis and Dynamic Windows RE using WPP and TraceLogging
👍2🔥2
Forwarded from Infosec Fortress
🌸 Happy Nowruz! 🌸

Wishing everyone a bright and joyful Nowruz filled with fresh beginnings, happiness, and success! 🌱🔥 May this new year bring you and your loved ones health, prosperity, and countless moments of peace and celebration.

#Nowruz
#Iranian_New_Year
5👍2
OSINT_современные_технологии.pdf
1.6 MB
Про OSINT и вокруг него
4👍1👎1
Будни манипулятора
OSINT_современные_технологии.pdf
I wish I know Russian
But Google translate document translation is fine
😁7🤯2👍1
3👍3
CobaltStrikeDefenseEvasion.pdf
63 KB
Mindmap: Cobalt Strike Defense Evasion Overview
3👍3
Source Byte
https://unit42.paloaltonetworks.com/stately-taurus-attacks-se-asian-government/
while reviewing sans CTI summit 2025 i see this interesting talk : "Advanced Threat Research Methodologies: Unraveling a Triple-APT Intrusion" . (by Tom Fakterman & Lior Rochberger )
which they discuss above attack 👀 and how did they cluster this attack


don't miss it
Forwarded from Investigations by ZachXBT
I regularly have people ask me about tools I use in my investigations so here’s a comprehensive list:

Cielo - Wallet Tracking (EVM, Bitcoin, Solana, Tron, etc)
TRM - Create graphs for addresses/transactions
MetaSuites - Chrome extension that adds additional data on block explorers
OSINT Industries - email/username/phone lookups
LeakPeek - db lookups
Snusbase - db lookups
Intelx - db lookups
Spur - IP lookups
Cavalier (Hudson Rock) - Infostealer lookups
Impersonator - Chrome extension to spoof login to dApps
MetaSleuth - Similiar to TRM but intended for retail users
Arkham - Multichain block explorer, entity labels, create graphs, alerts
Obsidian - Create flow charts / diagrams
Wayback Machine - archive web pages
Archive Today - archive web pages
Etherscan/Solscan - block explorer for EVM / Solana
Blockchair - bitcoin block explorer
Range - CCTP bridge explorer
Pulsy - bridge explorer aggregator
Socketscan - EVM bridge explorer
Dune - Analytics platform to query blockchain data
Mugetsu - X/Twitter username history & meme coin lookups
TelegramDB Search Bot - Basic Telegram OSINT
Discord[.]ID - Basic Discord account info
CryptoTaxCalculator -Track PNL for an address

Note: I am not paid by these platforms to mention them and do not have referral links to share
👍7
Forwarded from SoheilSec (Soheil)
دیدم از افتا تشکر کردن بعد یک عمر یک گزارش داده ولی گویا افتا رول‌های کسپر دزدیده ریپلیس کرده اسم خودش گذاشته! خدایی اونجا یکتون بلد نیستید یارا رول بنویسه🤔
😁18🗿2😱1
Astral-PE is a low-level mutator (headers obfuscator and patcher) for Windows PE files (.exe, .dll) that rewrites structural metadata after protection — without breaking execution.

It does not pack, encrypt or inject. Instead, it mutates low-hanging but critical structures like timestamps, headers, section flags, debug info, import/export names, and more.
3👍2
👍1🔥1
Forwarded from 1N73LL1G3NC3
GOAD - part 14 - ADCS 5/7/9/10/11/13/14/15

P.S.
In the previous blog post on ADCS (Goad Pwning Part 6), ESC1, ESC2, ESC3, ESC4, ESC6, and ESC8 were exploited.
4👍2🔥2