the grugq's newsletter

Subscribe
Archives
August 24, 2025

August 24, 2025

August 24, 2025

daisy-chaining wifi networks to reach a hard target is πŸ††πŸ…ΈπŸ…»πŸ…³

but operational "sophistication" is often the clean up 🧹 https://t.co/fHcIv8Q3mD pic.twitter.com/igQxcGlwHd

β€” Jβ©œβƒmie Williams (@jamieantisocial) August 23, 2025


More ways to proxy execution: and this time it's vkAllocateMemory() from vulkan-1.dll

This one is a tad bit tricker as there is some signature matching in the function, but we got the job done.

PoC: https://t.co/OPI5LGKI2C

PS: will be dumping all findings in this repo pic.twitter.com/QyNJijSAHH

β€” db (@whokilleddb) August 23, 2025


Hey guys! Here's my latest blog post:

Using Direct Syscalls with an In-Memory PIC Shellcode Loaderhttps://t.co/HiqIIpS0a0

in short, we code an in-memory shellcode loader and convert it to PIC shellcode. Then, call it using createthread syscall ID and load final payload 😁

β€” R.B.C. (@G3tSyst3m) August 24, 2025


Thanks @craiu for the feature request - elegant bouncer now supports folder scanning:https://t.co/snp1D3bgBD

β€” msuiche (@msuiche) August 23, 2025


love to see it. https://t.co/5UGAj3SyLI pic.twitter.com/26P5HcmsY2

β€” Jβ©œβƒmie Williams (@jamieantisocial) August 23, 2025
Don't miss what's next. Subscribe to the grugq's newsletter:
Start the conversation:
X