informationsecurity

Coerced Potato Reflective DLL – Unveiling Privilege Escalation From NT Service To SYSTEM

Privilege escalation from NT Service to SYSTEM using SeImpersonateToken privilege and MS-RPRN functions. Heavily based Reflective Loader from Install Clone…

1 year ago

Exploiting CVE-2023-49103: A Python Script for Rapid phpinfo() Detection

PoC for the CVE-2023-49103 Overview This Python script is designed to efficiently process a large list of URLs to check…

1 year ago

InfoSec Black Friday Deals – “Friday Hack Fest” 2023 Edition

All the deals for InfoSec related software/tools this Black Friday / Cyber Monday. Researcher was a little late getting started…

1 year ago

AWS Kill Switch: Enhancing Cloud Security with Rapid Incident Response Tools

AWS Kill Switch is a Lambda function (and proof of concept client) that an organization can implement in a dedicated…

1 year ago

eBPF Tools: Revolutionizing System Monitoring with Advanced PTY Sniffing Techniques

This piece talks about eBPF tools and shows how they can be used to improve system monitoring by keeping track…

1 year ago

Dynmx Prototype: An Advanced API Call Trace Analysis Tool for Malware Detection

dynmx (spoken dynamics) is a signature-based detection approach for behavioural malware features based on Windows API call sequences. In a simplified way,…

1 year ago

JSON Crack: Transform Your Data into Interactive Visualizations

An innovative, open source data visualization app. Brings data to life through captivating graphs. JSON Crack (jsoncrack.com) JSON Crack is…

1 year ago

Karton-Pcap-Miner: Streamlining Network Indicator Extraction from PCAPs

Karton-Pcap-Miner is a strong program that quickly pulls network indicators from analysis PCAP files." It works with MWDB without any…

1 year ago

Crawlector – Empowering Threat-Hunting With Advanced Web Scanning And Detection

Crawlector (the name Crawlector is a combination of Crawler & Detector) is a threat-hunting framework designed for scanning websites for malicious objects. Note-1:…

1 year ago

31 Tips from Inon Shkedy’s Challenge – Mastering API Security

This challenge is Inon Shkedy's 31 days API Security Tips -API TIP: 1/31- Older APIs versions tend to be more…

1 year ago