⤷ Title: Donut: Generates x86 and x64 position-independent shellcode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 08 Jan 2025 01:29:44 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Donut
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 08 Jan 2025 01:29:44 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Donut
Penetration Testing Tools
Donut: Generates x86 and x64 position-independent shellcode
Donut generates x86 and x64 position-independent shellcode that loads .NET Assemblies from memory and runs them with parameters
⤷ Title: New “TencShell” Malware Weaponizes Open-Source Rshell via Third-Party Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 18 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Malware #C2 Framework #Cato CTRL #Cyber Security #Donut Shellcode #infosec #Malware Analysis #Rshell #supply chain attack #TencShell #third_party risk #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 18 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Malware #C2 Framework #Cato CTRL #Cyber Security #Donut Shellcode #infosec #Malware Analysis #Rshell #supply chain attack #TencShell #third_party risk #threat intelligence
Daily CyberSecurity
New "TencShell" Malware Weaponizes Open-Source Rshell via Third-Party Access
Cato CTRL intercepts "TencShell," a new stealth malware derived from open-source Rshell. Attackers use third-party access to breach networks!
⤷ Title: China-Linked Hackers Deploy “TencShell” Backdoor via Faux Web Font Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
Information Security News
China-Linked Hackers Deploy "TencShell" Backdoor via Faux Web Font Files - Information Security News
In April 2026, threat intelligence specialists at Cato CTRL neutralized a sophisticated network intrusion attempt targeting a major multinational manufacturing enterprise. The adversaries sought to establish a persistent foothold within the corporate perimeter…
⤷ Title: TTF Trap Campaign Hides a Low-Detection Lua Loader Inside Fake TrueType Font Files
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 12:30:07 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Donut Shellcode #FortiGuard Labs #Lua Loader #phishing #Remcos #Snake Keylogger #TTF Trap #XWorm
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 12:30:07 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Donut Shellcode #FortiGuard Labs #Lua Loader #phishing #Remcos #Snake Keylogger #TTF Trap #XWorm
Daily CyberSecurity
TTF Trap Campaign Hides a Low-Detection Lua Loader Inside Fake TrueType Font Files
A global phishing campaign hides a low-detection Lua loader inside fake .ttf font files to drop Remcos, XWorm, Agent Tesla, and a Snake Keylogger. #LuaLoader #TTFTrap #Phishing #FortiGuard #Remcos…