⤷ Title: DAMASCENED PEACOCK: NCSC Uncovers Sophisticated Malware Targeting UK MOD
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #COM Hijack #cyber_espionage #cybersecurity #DAMASCENED PEACOCK #malware #Malware Analysis #NCSC #spear_phishing #UK MOD
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #COM Hijack #cyber_espionage #cybersecurity #DAMASCENED PEACOCK #malware #Malware Analysis #NCSC #spear_phishing #UK MOD
Daily CyberSecurity
DAMASCENED PEACOCK: NCSC Uncovers Sophisticated Malware Targeting UK MOD
The NCSC reveals DAMASCENED PEACOCK, a sophisticated malware targeting the UK MOD, using spear-phishing, code signing, and COM Hijacking.
⤷ Title: Windows 11 Privilege Escalation Flaws Uncovered: CVE-2025-24076 and CVE-2025-24994
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 16 Apr 2025 00:34:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #COM Server #Compass Security #CVE_2025_24076 #CVE_2025_24994 #cybersecurity #DLL hijacking #Microsoft #Microsoft Patch Tuesday #Mobile devices #privilege escalation #security advisory #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 16 Apr 2025 00:34:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #COM Server #Compass Security #CVE_2025_24076 #CVE_2025_24994 #cybersecurity #DLL hijacking #Microsoft #Microsoft Patch Tuesday #Mobile devices #privilege escalation #security advisory #Windows 11
Daily CyberSecurity
Windows 11 Privilege Escalation Flaws Uncovered: CVE-2025-24076 and CVE-2025-24994
Discover how Windows 11 vulnerabilities CVE-2025-24076 and CVE-2025-24994 allow unprivileged users to gain system privileges via DLL hijacking.
⤷ Title: Novel Attack Uses Teams Phishing and Zero-Day TypeLib Hijacking
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Apr 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #COM hijacking #cybersecurity #malware #Microsoft Teams #persistence #phishing #TypeLib Hijacking
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Apr 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #COM hijacking #cybersecurity #malware #Microsoft Teams #persistence #phishing #TypeLib Hijacking
Daily CyberSecurity
Novel Attack Uses Teams Phishing and Zero-Day TypeLib Hijacking
New attack campaign uses Microsoft Teams phishing and a novel TypeLib COM hijacking technique for persistence, targeting finance sector.
⤷ Title: CVE-2025-3200: Wiesemann & Theis Com-Server Devices Exposed by Deprecated TLS Protocols
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:32:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CERT@VDE #COM Server #Com_Server Security Flaw #Critical Infrastructure Cybersecurity #CVE_2025_3200 #industrial automation #Industrial Security #security advisory #TLS 1.0 #TLS 1.1 #TLS Vulnerability #Wiesemann & Theis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:32:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CERT@VDE #COM Server #Com_Server Security Flaw #Critical Infrastructure Cybersecurity #CVE_2025_3200 #industrial automation #Industrial Security #security advisory #TLS 1.0 #TLS 1.1 #TLS Vulnerability #Wiesemann & Theis
Daily CyberSecurity
CVE-2025-3200: Wiesemann & Theis Com-Server Devices Exposed by Deprecated TLS Protocols
CERT@VDE reveals CVE-2025-3200 in Wiesemann & Theis devices: outdated TLS protocols expose Com-Server models to interception and man-in-the-middle attacks.
⤷ Title: Spyndicapped: COM ViewLogger — new malware keylogging technique
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 11 May 2025 00:15:07 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #COM ViewLogger
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 11 May 2025 00:15:07 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #COM ViewLogger
Penetration Testing Tools
Spyndicapped: COM ViewLogger — new malware keylogging technique
MS UIA (Microsoft User Interface Automation) is a special framework designed to automate the use of the Windows GUI.
⤷ Title: TransferLoader Malware Unmasked: IPFS-Enabled Loader Deploys Ransomware and Backdoors with Obfuscation Precision
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:33:00 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #backdoor #COM hijacking #IPFS C2 #malware loader #Morpheus ransomware #TransferLoader #Zscaler ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:33:00 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #backdoor #COM hijacking #IPFS C2 #malware loader #Morpheus ransomware #TransferLoader #Zscaler ThreatLabz
Daily CyberSecurity
TransferLoader Malware Unmasked: IPFS-Enabled Loader Deploys Ransomware and Backdoors with Obfuscation Precision
Zscaler reveals TransferLoader: a stealthy malware using IPFS and obfuscation to drop ransomware and backdoors. A new threat in the wild since 2025.
⤷ Title: ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 25 May 2025 01:30:03 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #.NET #code injection #COM #cybersecurity #exploit #LSASS #PPL #reflection #Windows Security
Penetration Testing Tools
ComDotNetExploit: PoC for Windows PPL Bypass via COM-to-.NET
ComDotNetExploit is a C++ PoC demonstrating PPL bypass in Windows using COM-to-.NET redirection and reflection for code injection.
⤷ Title: COMmander: Unmasking Hidden Threats in Windows with Deep RPC/COM Monitoring
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 03:11:02 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM #cybersecurity #ETW #Low_Level Monitoring #malware analysis #RPC #security tool #Threat Detection #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 03:11:02 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM #cybersecurity #ETW #Low_Level Monitoring #malware analysis #RPC #security tool #Threat Detection #Windows Security
Penetration Testing Tools
COMmander: Unmasking Hidden Threats in Windows with Deep RPC/COM Monitoring
COMmander is a lightweight, practical tool that monitors deep-seated RPC and COM activities in Windows, designed to detect subtle, invisible threats that bypass traditional security.
⤷ Title: COMmander: Lightweight C# Tool Boosts Defensive RPC/COM Telemetry
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 10:15:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C++ #COM #Commander #cyber defense #ETW #RPC #security tool #Telemetry #Threat Detection #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 20 Nov 2025 10:15:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C++ #COM #Commander #cyber defense #ETW #RPC #security tool #Telemetry #Threat Detection #windows
Penetration Testing Tools
COMmander: Lightweight C# Tool Boosts Defensive RPC/COM Telemetry
COMmander is a new, lightweight C# tool that leverages the Windows RPC ETW provider to enrich defensive telemetry, enabling granular detection of RPC/COM events.
⤷ Title: BitlockMove: New PoC for Covert Lateral Movement via BitLocker DCOM Hijacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:32:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BitlockMove #COM Hijacking #cybersecurity #DCOM #Defensive Telemetry #Lateral Movement #Proof of Concept #Red Team #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 21 Nov 2025 10:32:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BitlockMove #COM Hijacking #cybersecurity #DCOM #Defensive Telemetry #Lateral Movement #Proof of Concept #Red Team #Windows Security
Penetration Testing Tools
BitlockMove: New PoC for Covert Lateral Movement via BitLocker DCOM Hijacking
"BitlockMove" PoC demonstrates a novel lateral movement technique abusing BitLocker DCOM/COM hijacking to execute code in a logged-in user's session without credential theft.
⤷ Title: Silent Pivot: Exploiting SpeechRuntimeMove for Stealthy Lateral Movement via DCOM
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 04:57:03 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #DCOM #DLL Sideloading #Lateral Movement #post_exploitation #red teaming #Remote Registry #SpeechRuntime #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 17 Dec 2025 04:57:03 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #DCOM #DLL Sideloading #Lateral Movement #post_exploitation #red teaming #Remote Registry #SpeechRuntime #Windows Security
Penetration Testing Tools
Silent Pivot: Exploiting SpeechRuntimeMove for Stealthy Lateral Movement via DCOM
SpeechRuntimeMove abuses DCOM and COM hijacking to execute code in an active user's session, bypassing the need for a full system takeover.
⤷ Title: The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
Penetration Testing Tools
The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
In October 2025, experts at Kaspersky Lab uncovered a new wave of targeted attacks attributed to the ForumTroll
⤷ Title: Academic Ambush: How the Forum Troll APT Hijacks Scholars’ Systems via Fake Plagiarism Reports
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:44:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Academic Espionage #APT #COM hijacking #Forum Troll #kaspersky #malware #phishing #Russian Research #social engineering #Tuoni Framework
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:44:58 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Academic Espionage #APT #COM hijacking #Forum Troll #kaspersky #malware #phishing #Russian Research #social engineering #Tuoni Framework
Daily CyberSecurity
Academic Ambush: How the Forum Troll APT Hijacks Scholars' Systems via Fake Plagiarism Reports
The Forum Troll APT is targeting Russian scholars with highly personalized phishing lures and the Tuoni framework disguised as plagiarism reports.
⤷ Title: The API Assassin: How “LOLAPI” Unmasks the Native Commands Turning Windows and Cloud Against You
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:10:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #.NET reflection #API abuse #AWS #Azure #Cloud metadata #COM objects #cyber security news 2026 #GCP #Living_off_the_land #LOLAPI #Magic Claw #Windows API #WMI
Penetration Testing Tools
The API Assassin: How "LOLAPI" Unmasks the Native Commands Turning Windows and Cloud Against You
Magic Claw’s LOLAPI repository catalogs over 50 native Windows and Cloud APIs used by hackers to bypass WDAC and EDR. See the 2026 guide to stealthy API abuse.
⤷ Title: Windows Internals (COM objects)
════════════════════════
𐀪 Author: Makarios Mamdouh
════════════════════════
ⴵ Time: Sun, 15 Mar 2026 09:53:28 GMT
════════════════════════
⌗ Tags: #incident_response #windows_internals #cybersecurity #hacking #com_objects
════════════════════════
𐀪 Author: Makarios Mamdouh
════════════════════════
ⴵ Time: Sun, 15 Mar 2026 09:53:28 GMT
════════════════════════
⌗ Tags: #incident_response #windows_internals #cybersecurity #hacking #com_objects
Medium
Windows Internals
What is COM objects?
⤷ Title: Beyond Static Analysis: Hunt, Filter, and Confirm Hijacks with DLLHijackHunter
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 08:38:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #Cybersecurity 2026 #DLL hijacking #DLLHijackHunter #Pentesting Tools #privilege escalation #red teaming #UAC bypass #Vulnerability Discovery #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 04 May 2026 08:38:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #COM Hijacking #Cybersecurity 2026 #DLL hijacking #DLLHijackHunter #Pentesting Tools #privilege escalation #red teaming #UAC bypass #Vulnerability Discovery #Windows Security
Penetration Testing Tools
Beyond Static Analysis: Hunt, Filter, and Confirm Hijacks with DLLHijackHunter
Stop chasing false positives. DLLHijackHunter automates the discovery, canary validation, and scoring of Windows DLL hijacking vulnerabilities in real-time.
⤷ Title: Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
════════════════════════
𐀪 Author: Gyaneshchand
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 14:43:58 GMT
════════════════════════
⌗ Tags: #com_olho #ssrf_walkthrough #ssrf #ctf_walkthrough
Medium
Server-Side Request Forgery (SSRF) to Local File Read: A Deep Dive into a CTF Challenge
Welcome back, hackers! 👋