GhostRecon – An In-depth Guide To A Compact OSINT Tool For Linux
In the vast world of Linux tools, GhostRecon stands out as a streamlined solution for research and OSINT (Open Source Intelligence) tasks. Originally developed by mZzgamer and later taken over by DR34M-M4K3R, this tool promises efficiency and user-friendliness. This guide delves into the features, installation process, and effective usage of GhostRecon, ensuring you harness its full potential. Dive in...
LatLoader – Evading Elastic EDR In Lateral Movement
LatLoader is a PoC module to demonstrate automated lateral movement with the Havoc C2 framework. The main purpose of this project is to help others learn BOF and Havoc module development. This project can also help others understand basic EDR rule evasions, particularly when performing lateral movement. The sideload subcommand is the full-featured PoC of this module. It will attempt to...
Telegram Explorer (TEx) – The Ultimate Toolkit for Telegram Data Analysis
TEx is a Telegram Explorer tool created to help Researchers, Investigators and Law Enforcement Agents to Collect and Process the Huge Amount of Data Generated from Criminal, Fraud, Security and Others Telegram Groups. BETA VERSION Please note that this project has been in beta for a few weeks, so it is possible that you may encounter bugs that have not yet...
HackSys Extreme Vulnerable Driver – A Deep Dive into HEVD Exploitation
The HackSys Extreme Vulnerable Driver (HEVD) is a Windows Kernel driver that is intentionally vulnerable. It has been developed for security researchers and enthusiasts to improve their skills in kernel-level exploitation. HEVD offers a range of vulnerabilities, from simple stack buffer overflows to more complex issues such as use-after-free, pool buffer overflows, and race conditions. This allows researchers to explore exploitation techniques for each implemented vulnerability. ...
OSGINT – A Deep Dive Into GitHub User Information Retrieval
In the vast realm of GitHub, the ability to glean information about users can be invaluable for various purposes. 'OSGINT: A Deep Dive into GitHub User Information Retrieval' introduces an innovative tool that harnesses the power of open-source intelligence to extract detailed profiles from GitHub usernames and emails. Join us as we explore the features, requirements, and mechanics of...
WcamPhish – Unauthorized Remote Camera Access via Link
Introduction WcamPhish is a method for capturing images of a target's webcam or front camera on a phone. In order to create a link that we can send to the target over the internet, WcamPhish hosts a fake website on a PHP server that was custom-built. If the target agrees, the website requests their camera permission, and this tool then...
Shaco – C linux agent for the Havoc framework
Shaco Shaco is a simple C Linux agent for the Havoc framework, available at https://github.com/HavocFramework/Havoc. Utilizing a hardcoded socket, Shaco communicates with the server over HTTP. Commands This is the list of commands that the agent supports: shell { command } upload { localfile remotefile } download { remotefile } - download file from remote sleep { time } jitter { time } cd { path } -...
TRY HARDER: A Cybersecurity Retro Game for OSCP Preparation
Table of Contents Introduction Objective Features Installation How to Play Game Mechanics Mission Contents Contribution License Credits Introduction "Try Harder" is a cybersecurity retro game created by Milosilo. It offers an immersive experience and a retro aesthetic while simulating 100 actual scenarios to aid in your exam preparation for the Offensive Security Certified Professional (OSCP). Gain a point by correctly executing real commands and moving on to the next host. Objective The main...
Impulse Denial-of-service ToolKit
Modern Denial-of-service ToolKit Main Window Methods- MethodTargetDescriptionSMSPHONESends a massive amount of SMS messages and calls to a single targetEMAILEMAILSends a massive amount of Email messages to a targetNTPIP:PORTA SYN flood (half-open attack) is a type of denial-of-service (DDoS) attack that aims to make a server unavailable to legitimate traffic by consuming all available server resources.SYNIP:PORTA UDP flood is a type of denial-of-service...
Exploring the Inextricable Link Between Digital Forensics and Cybersecurity
Cybercrime grows in scope and complexity as technology becomes more widely used worldwide. Businesses are being targeted by cybercriminals more than ever before, and it is anticipated that the yearly cost of ransomware will be over $265 billion by 2031. A VPN is a basic need in today's digital landscape to have some security online. However, not only does this...