Official VirusTotal Plugin for IDA Pro 7
https://blog.virustotal.com/2020/02/official-virustotal-plugin-for-ida-pro-7.html
https://blog.virustotal.com/2020/02/official-virustotal-plugin-for-ida-pro-7.html
Virustotal
Official VirusTotal Plugin for IDA Pro 7
ATTENTION : In order to use the content search functionality you will need to have access to VT Intelligence . If you want to jump str...
x0rro — A PE/ELF/MachO Crypter for x86 and x86_64 Based on Radare2
https://iwantmore.pizza/posts/x0rro.htmlDetecting Memory Corruption Bugs With HWASan
https://android-developers.googleblog.com/2020/02/detecting-memory-corruption-bugs-with-hwasan.html?m=1
https://android-developers.googleblog.com/2020/02/detecting-memory-corruption-bugs-with-hwasan.html?m=1
Android Developers Blog
Detecting Memory Corruption Bugs With HWASan
Posted by Evgenii Stepanov, Staff Software Engineer, Dynamic Tools Native code in memory-unsafe languages like C and C++ is often vuln...
Bypassing User Group Policy
https://medium.com/tenable-techblog/bypass-windows-10-user-group-policy-and-more-with-this-one-weird-trick-552d4bc5cc1b
https://medium.com/tenable-techblog/bypass-windows-10-user-group-policy-and-more-with-this-one-weird-trick-552d4bc5cc1b
Medium
Bypass Windows 10 User Group Policy (and more) with this One Weird Trick
I‘m going to share an (ab)use of a Windows feature which can result in bypassing User Group Policy (as well as a few other interesting…
SQLi blinder
Framework for blind boolean-based sql injections explotation.
https://github.com/sorokinpf/sqli_blinder
Framework for blind boolean-based sql injections explotation.
https://github.com/sorokinpf/sqli_blinder
GitHub
GitHub - sorokinpf/sqli_blinder: Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit.
Framework for blind boolean-based sql injections exploatation. Use it if sqlmap does shit. - sorokinpf/sqli_blinder
The Missing LNK — Correlating User Search LNK files
https://www.fireeye.com/blog/threat-research/2020/02/the-missing-lnk-correlating-user-search-lnk-files.html
https://www.fireeye.com/blog/threat-research/2020/02/the-missing-lnk-correlating-user-search-lnk-files.html
Google Cloud Blog
The Missing LNK — Correlating User Search LNK files | Mandiant | Google Cloud Blog
UTM is a full featured virtual machine host for iOS. In short, it allows you to run Windows, Android, and more on your iPhone and iPad.
https://github.com/utmapp/UTM
https://github.com/utmapp/UTM
GitHub
GitHub - utmapp/UTM: Virtual machines for iOS and macOS
Virtual machines for iOS and macOS. Contribute to utmapp/UTM development by creating an account on GitHub.
Introduction To Modern Routing For Red Team Infrastructure - using Traefik, Metasploit, Covenant and Docker
https://khast3x.club/posts/2020-02-14-Intro-Modern-Routing-Traefik-Metasploit-Docker/
https://khast3x.club/posts/2020-02-14-Intro-Modern-Routing-Traefik-Metasploit-Docker/
QSynth - A Program Synthesis based Approach for Binary Code Deobfuscation
https://archive.bar/pdfs/bar2020-preprint9.pdf
https://archive.bar/pdfs/bar2020-preprint9.pdf
A curated list of threat detection and hunting resources
https://github.com/0x4D31/awesome-threat-detection
https://github.com/0x4D31/awesome-threat-detection
GitHub
GitHub - 0x4D31/awesome-threat-detection: ✨ A curated list of awesome threat detection and hunting resources 🕵️♂️
✨ A curated list of awesome threat detection and hunting resources 🕵️♂️ - 0x4D31/awesome-threat-detection
CVE-2020-0688: REMOTE CODE EXECUTION ON MICROSOFT EXCHANGE SERVER THROUGH FIXED CRYPTOGRAPHIC KEYS
https://www.thezdi.com/blog/2020/2/24/cve-2020-0688-remote-code-execution-on-microsoft-exchange-server-through-fixed-cryptographic-keys
https://www.thezdi.com/blog/2020/2/24/cve-2020-0688-remote-code-execution-on-microsoft-exchange-server-through-fixed-cryptographic-keys
Zero Day Initiative
Zero Day Initiative — CVE-2020-0688: Remote Code Execution on Microsoft Exchange Server Through Fixed Cryptographic Keys
This most recent Patch Tuesday, Microsoft released an Important-rated patch to address a remote code execution bug in Microsoft Exchange Server. This vulnerability was reported to us by an anonymous researcher and affects all supported versions of Microsoft…