Machine_learning-based_ransomware_detect.pdf
1 MB
#Research
"Machine Learning-based Ransomware Detection Using Low-level Memory Access Patterns Obtained From Live-forensic Hypervisor", 2022.
📰
📚
"Machine Learning-based Ransomware Detection Using Low-level Memory Access Patterns Obtained From Live-forensic Hypervisor", 2022.
📰
📚
ebpf_offensive_rootkit.pdf
5.4 MB
#Research
#Malware_analysis
"An analysis of offensive capabilities of eBPF and implementation of a rootkit", 2022.
]-> A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities:
https://github.com/h3xduck/TripleCross
📰
📚
#Malware_analysis
"An analysis of offensive capabilities of eBPF and implementation of a rootkit", 2022.
]-> A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities:
https://github.com/h3xduck/TripleCross
📰
📚
AMSI_Bypass.pdf
1.3 MB
#Offensive_security
Black Hat Asia 2022:
"AMSI Unchained: Review of Known AMSI Bypass Techniques and Introducing a New One".
📰
📚
Black Hat Asia 2022:
"AMSI Unchained: Review of Known AMSI Bypass Techniques and Introducing a New One".
📰
📚
DKIM.pdf
1.5 MB
#Research
"A Large-scale and Longitudinal Measurement Study of DKIM Deployment", ВUSENIX Security, 2022.
📰
📚
⌨
"A Large-scale and Longitudinal Measurement Study of DKIM Deployment", ВUSENIX Security, 2022.
📰
📚
⌨
TG1021 - Praying Mantis Threat Actor (2021).pdf
797.2 KB
#Research
"HDiff: A Semi-automatic Framework for Discovering Semantic Gap Attack in HTTP Implementations", IEEE/IFIP 2022.
]-> Repo: https://github.com/mo-xiaoxi/HDiff
📰
📚
"HDiff: A Semi-automatic Framework for Discovering Semantic Gap Attack in HTTP Implementations", IEEE/IFIP 2022.
]-> Repo: https://github.com/mo-xiaoxi/HDiff
📰
📚
NIST_SP_800_219.pdf
2.3 MB
#Infosec_Standards
NIST SP 800-219:
"Automated Secure Configuration Guidance from the macOS Security Compliance Project (mSCP)", June 2022.
📰
📚
NIST SP 800-219:
"Automated Secure Configuration Guidance from the macOS Security Compliance Project (mSCP)", June 2022.
📰
📚