hacker_trick | Unsorted

Telegram-канал hacker_trick - Hacker tricks

3151

CVEs🔰 Tools🛠 RedTeam📕

Subscribe to a channel

Hacker tricks

Combining Pivot Points to Identify Malware Infrastructure - Redline, Smokeloader and Cobalt Strike
https://embee-research.ghost.io/combining-pivot-points-to-identify-malware-infrastructure-redline-smokeloader-and-cobalt-strike

Читать полностью…

Hacker tricks

PoC Exploit for CVE-2023-46214 Splunk RCE
https://github.com/nathan31337/Splunk-RCE-poc
PoC for CVE-2023-2598 Linux Kernel LPE: PoC of a vulnerability in the io_uring subsystem of the Linux Kernel
https://github.com/ysanatomic/io_uring_LPE-CVE-2023-2598

Читать полностью…

Hacker tricks

Evading Detection while using nmap
https://infosecwriteups.com/evading-detection-while-using-nmap-69633df091f3

Читать полностью…

Hacker tricks

AI Exploits: A collection of real world AI/ML exploits for responsibly disclosed vulnerabilities
https://github.com/protectai/ai-exploits

Читать полностью…

Hacker tricks

All the Small Things: Azure CLI Leakage and Problematic Usage Patterns
https://www.paloaltonetworks.com/blog/prisma-cloud/secrets-leakage-user-error-azure-cli

Читать полностью…

Hacker tricks

Inside the Mind of a Cyber Attacker: from Malware creation to Data Exfiltration (Part 2)
https://blog.hacktivesecurity.com/index.php/2023/11/15/inside-the-mind-of-a-cyber-attacker-from-malware-creation-to-data-exfiltration-part-2

Читать полностью…

Hacker tricks

HostingHunter Series: Change Way Technology CO. Limited
joshuapenny88/hostinghunter-series-chang-way-technologies-co-limited-a9ba4fce0f65" rel="nofollow">https://medium.com/@joshuapenny88/hostinghunter-series-chang-way-technologies-co-limited-a9ba4fce0f65

Читать полностью…

Hacker tricks

Reptar: an Intel Ice Lake CPU vulnerability
https://lock.cmpxchg8b.com/reptar.html

Читать полностью…

Hacker tricks

HackerGPT: is your indispensable digital companion in the world of hacking. Crafted with the unique needs of ethical hackers in mind, this AI-powered assistant stands at the forefront of hacking knowledge and assistance
https://github.com/Hacker-GPT/HackerGPT

Читать полностью…

Hacker tricks

Top ranked OpenAI GPTs
https://github.com/AgentOps-AI/BestGPTs

Читать полностью…

Hacker tricks

VisualStudio .suo deserialization Exploit
https://github.com/moom825/visualstudio-suo-exploit

Читать полностью…

Hacker tricks

SharpReflectivePEInjection: reflectively load and execute PEs locally and remotely bypassing EDR hooks
https://github.com/cpu0x00/SharpReflectivePEInjection

Читать полностью…

Hacker tricks

Shellcode Loader/Execute Shellcode - Automate with Python Programming
https://www.youtube.com/watch?v=hWbfifU8TtA&feature

Читать полностью…

Hacker tricks

Exploring Antivirus and EDR evasion techniques step-by-step
Part 1:
https://infosecwriteups.com/exploring-antivirus-and-edr-evasion-techniques-step-by-step-part-1-6459563b12ea
Part 2:
https://infosecwriteups.com/exploring-antivirus-and-edr-evasion-techniques-step-by-step-part-2-4310c58cdc31

Читать полностью…

Hacker tricks

GPTs: leaked prompts of GPTs
https://github.com/linexjlin/GPTs

Читать полностью…

Hacker tricks

Hijacking OAuth Code via Reverse Proxy for Account Takeover
https://blog.voorivex.team/hijacking-oauth-code-via-reverse-proxy-for-account-takeover

Читать полностью…

Hacker tricks

Hunting Sandworm Team’s TTPs
https://montysecurity.medium.com/hunting-sandworm-teams-ttps-57a6fb31dd4b

Читать полностью…

Hacker tricks

badgerDAPS: A Brute Ratel LDAP query-log sorting tool, for the aspiring anti-LDAP query/Windows powershell hacker
https://github.com/johnjhacking/badgerDAPS

Читать полностью…

Hacker tricks

ProcessStomping: A variation of ProcessOverwriting to execute shellcode on an executable's section
https://github.com/naksyn/ProcessStomping

Читать полностью…

Hacker tricks

Escaping the sandbox: A bug that speaks for itself
https://microsoftedge.github.io/edgevr/posts/Escaping-the-sandbox-A-bug-that-speaks-for-itself

Читать полностью…

Hacker tricks

The Spelling Police: Searching for Malicious HTTP Servers by Identifying Typos in HTTP Responses
https://research.nccgroup.com/2023/11/15/the-spelling-police-searching-for-malicious-http-servers-by-identifying-typos-in-http-responses

Читать полностью…

Hacker tricks

IOKernelRW: Insecurity as an IOService
https://github.com/Siguza/IOKernelRW

Читать полностью…

Hacker tricks

Report and Exploit of CVE-2023-36427
Summary:
Kernel-mode code in the root partition can corrupt arbitrary physical pages irrespective of EPT permissions using the Hardware Feedback Interface processor feature
https://github.com/tandasat/CVE-2023-36427

Читать полностью…

Hacker tricks

GPT Crawler: Crawl a site to generate knowledge files to create your own custom GPT
https://github.com/BuilderIO/gpt-crawler

Читать полностью…

Hacker tricks

Bypass 403 - Forbidden ⛔
https://github.com/LucasPDiniz/403-Bypass

Читать полностью…

Hacker tricks

MS Graph Commands and Tools for Blue Teamers
https://github.com/xg5-simon/MS-Graph-BlueTeam

Читать полностью…

Hacker tricks

Wndows-Drive-Remapping-EoP: Windows System Drive Remapping - Elevation of Privileges
https://github.com/bluefrostsecurity/Windows-Drive-Remapping-EoP

Читать полностью…

Hacker tricks

HEXACON2023 - A 3-Year Tale of Hacking a Pwn2Own Target by Orange Tsai
Video:
https://www.youtube.com/watch?v=uGofhlB1vZU
Slides:
https://github.com/orangetw/My-Presentation-Slides/blob/main/data/2023-A-3-Years-Tale-of-Hacking-a-Pwn2Own-Target.pdf

Читать полностью…

Hacker tricks

Awesome GPT Agents:
A curated list of GPT agents for cybersecurity
https://github.com/fr0gger/Awesome-GPT-Agents

Читать полностью…

Hacker tricks

Flare-On 2023 Challenge 7 (flake) - Solving a compiled Python challenge using native tools
https://www.x86matthew.com/view_post?id=flareon_2023_7

Читать полностью…
Subscribe to a channel