⤷ Title: ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
Penetration Testing Tools
ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
ComDotNetExploit is a C++ PoC demonstrating PPL bypass in Windows using COM-to-.NET redirection and reflection for code injection.
⤷ Title: COMmander: Unmasking Hidden Threats in Windows with Deep RPC/COM Monitoring
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 03:11:02 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM #cybersecurity #ETW #Low_Level Monitoring #malware analysis #RPC #security tool #Threat Detection #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 03:11:02 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM #cybersecurity #ETW #Low_Level Monitoring #malware analysis #RPC #security tool #Threat Detection #Windows Security
Penetration Testing Tools
COMmander: Unmasking Hidden Threats in Windows with Deep RPC/COM Monitoring
COMmander is a lightweight, practical tool that monitors deep-seated RPC and COM activities in Windows, designed to detect subtle, invisible threats that bypass traditional security.
⤷ Title: COMmander: Lightweight C# Tool Boosts Defensive RPC/COM Telemetry
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 10:15:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C++ #COM #Commander #cyber defense #ETW #RPC #security tool #Telemetry #Threat Detection #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 10:15:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C++ #COM #Commander #cyber defense #ETW #RPC #security tool #Telemetry #Threat Detection #windows
Penetration Testing Tools
COMmander: Lightweight C# Tool Boosts Defensive RPC/COM Telemetry
COMmander is a new, lightweight C# tool that leverages the Windows RPC ETW provider to enrich defensive telemetry, enabling granular detection of RPC/COM events.
⤷ Title: BitlockMove: New PoC for Covert Lateral Movement via BitLocker DCOM Hijacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:32:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BitlockMove #COM Hijacking #cybersecurity #DCOM #Defensive Telemetry #Lateral Movement #Proof of Concept #Red Team #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:32:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BitlockMove #COM Hijacking #cybersecurity #DCOM #Defensive Telemetry #Lateral Movement #Proof of Concept #Red Team #Windows Security
Penetration Testing Tools
BitlockMove: New PoC for Covert Lateral Movement via BitLocker DCOM Hijacking
"BitlockMove" PoC demonstrates a novel lateral movement technique abusing BitLocker DCOM/COM hijacking to execute code in a logged-in user's session without credential theft.
⤷ Title: Silent Pivot: Exploiting SpeechRuntimeMove for Stealthy Lateral Movement via DCOM
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 04:57:03 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #DCOM #DLL Sideloading #Lateral Movement #post_exploitation #red teaming #Remote Registry #SpeechRuntime #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 04:57:03 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #DCOM #DLL Sideloading #Lateral Movement #post_exploitation #red teaming #Remote Registry #SpeechRuntime #Windows Security
Penetration Testing Tools
Silent Pivot: Exploiting SpeechRuntimeMove for Stealthy Lateral Movement via DCOM
SpeechRuntimeMove abuses DCOM and COM hijacking to execute code in an active user's session, bypassing the need for a full system takeover.
⤷ Title: The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
Penetration Testing Tools
The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
In October 2025, experts at Kaspersky Lab uncovered a new wave of targeted attacks attributed to the ForumTroll
⤷ Title: Academic Ambush: How the Forum Troll APT Hijacks Scholars’ Systems via Fake Plagiarism Reports
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:44:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Academic Espionage #APT #COM hijacking #Forum Troll #kaspersky #malware #phishing #Russian Research #social engineering #Tuoni Framework
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:44:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Academic Espionage #APT #COM hijacking #Forum Troll #kaspersky #malware #phishing #Russian Research #social engineering #Tuoni Framework
Daily CyberSecurity
Academic Ambush: How the Forum Troll APT Hijacks Scholars' Systems via Fake Plagiarism Reports
The Forum Troll APT is targeting Russian scholars with highly personalized phishing lures and the Tuoni framework disguised as plagiarism reports.
⤷ Title: The API Assassin: How “LOLAPI” Unmasks the Native Commands Turning Windows and Cloud Against You
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
Penetration Testing Tools
The API Assassin: How "LOLAPI" Unmasks the Native Commands Turning Windows and Cloud Against You
Magic Claw’s LOLAPI repository catalogs over 50 native Windows and Cloud APIs used by hackers to bypass WDAC and EDR. See the 2026 guide to stealthy API abuse.
⤷ Title: Windows Internals (COM objects)
════════════════════════
𐀪 Author: Makarios Mamdouh
════════════════════════
ⴵ Time: Sun, 15 Mar 2026 09:53:28 GMT
════════════════════════
⌗ Tags: #incident_response #windows_internals #cybersecurity #hacking #com_objects
════════════════════════
𐀪 Author: Makarios Mamdouh
════════════════════════
ⴵ Time: Sun, 15 Mar 2026 09:53:28 GMT
════════════════════════
⌗ Tags: #incident_response #windows_internals #cybersecurity #hacking #com_objects
Medium
Windows Internals
What is COM objects?
⤷ Title: Beyond Static Analysis: Hunt, Filter, and Confirm Hijacks with DLLHijackHunter
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 08:38:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #Cybersecurity 2026 #DLL hijacking #DLLHijackHunter #Pentesting Tools #privilege escalation #red teaming #UAC bypass #Vulnerability Discovery #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 08:38:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #Cybersecurity 2026 #DLL hijacking #DLLHijackHunter #Pentesting Tools #privilege escalation #red teaming #UAC bypass #Vulnerability Discovery #Windows Security
Penetration Testing Tools
Beyond Static Analysis: Hunt, Filter, and Confirm Hijacks with DLLHijackHunter
Stop chasing false positives. DLLHijackHunter automates the discovery, canary validation, and scoring of Windows DLL hijacking vulnerabilities in real-time.
⤷ Title: Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
Medium
Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
Welcome back, hackers! 👋