October 26 2022
A primer to EDR evasion for Red Teamers, by Jorge Gimenez & Karsten Nohl.
Main takeaway: "EDRs are mostly Cobalt Strike detecting tools [these days]" š
youtube.com/watch?v=CKfjLnā¦
This post was presented by past #FSWA student @SinSinology and meme courtesy of @lystena :)
-
How to detect an online approach by Russian intelligence
https://www.dgsi.interieur.gouv.fr/la-dgsi-a-vos-cotes/contre-espionnage/sinformer/espionnage-et-petites-annonces-sur-internet-
Shutterstock will start selling AI-generated stock imagery with help from OpenAI
https://www.theverge.com/2022/10/25/23422359/shutterstock-ai-generated-art-openai-dall-e-partnership-contributors-fund-reimbursement-
**Stranger Strings: An exploitable flaw in SQLite**
https://blog.trailofbits.com/2022/10/25/sqlite-vulnerability-july-2022-library-api/Earlier this year, one of our interns found a vulnerability that affects applications using the SQLite library API. We are publicly disclosing that vuln today.
-
"No astute Greek would have any problem identifying the events of January 6 as a step in the path by which self-government falls into tyranny." @BretDevereaux from the archives:
-
Many more books about Signals Intelligence, the #NSA and the #Snowden revelations can be found here:
-
USA v. Mark Sokolovsky; aka Photix aka racoonstealer aka b1ack21jack7777 Originally filed on November 2nd 2021-
-
Andy Greenbergās new book is on the AlphaBay darknet market and how it was rolled up. Excerpts are ruining in WIRED.
https://www.wired.com/story/alphabay-series-part-1-the-shadow/-
Eat What You Kill :: Pre-authenticated Remote Code Execution in VMWare NSX Manager: srcincite.io/blog/2022/10/2ā¦.
-
OffensiveVNA
https://github.com/S3cur3Th1sSh1t/OffensiveVBAThis repo covers some code execution and AV Evasion methods for Macros in Office documents
-
-
-
instructor: you failed the psych exam me: that sucks instructor: *handing me a badge* why-
-
-
Build a Passive Radar With Software-Defined Radio
https://spectrum.ieee.org/passive-radar-with-sdr-
-
-
Inside the elaborate set-up of a scam HQ, staffed by people forced to scam
https://www.channelnewsasia.com/cna-insider/inside-elaborate-set-scam-hq-staffed-people-forced-scam-3018966-
Thereās also link to download the PDF version of the report,Germanyās federal cybersecurity office warned in its annual report that the threat from ransomware, political hacking, and other cybersecurity issues is at an all-time high (@AlexMartin)
-
Negative Pressure Room is a technical-legal-sanity requirement for biolabs or infectious-control hospitals to prevent pathogens being leaked out. Now an attack is demonstrated to fool the sensors into turning it off ... with specially crafted sound. Scary! arxiv.org/pdf/2210.03688ā¦
-
Don't miss what's next. Subscribe to the grugq's newsletter: