reconcore
1.82K subscribers
1.08K photos
159 videos
296 files
2.4K links
#pentest #vulnerability #research #malware #analysis #redteam #blueteam #tools #cve #rce #lpe

#offensivesecurity #methods #technique

The channel does not call for any action.
The posts are taken from public sources.
The @reconcore is not responsible.
Download Telegram
SilentButDeadly
A network communication blocker specifically designed to neutralize EDR/AV software by preventing their cloud connectivity using Windows Filtering Platform (WFP). This version focuses solely on network isolation without process termination. Blog

#github #tools #wfp #av #edr @reconcore
🔥2😱1
DefenseDroid MH-1M: A 1.34 Million-Sample Comprehensive Multi-Feature Android Malware Dataset for ML, Deep Learning, LLMs, and Threat Intelligence Research
Through DefenseDroid, we tend to gift a machine learning-based system for the detection of malware on android devices. DefenseDroid will effectively identify, detect, categorize apps and safeguard android mobile devices from malicious apps thus avoiding any stealing or misuse of the user’s data by using an easy user interface. In our project, a code behavior signature-based malware detection framework mistreatment associate degree LSTM rule is planned, which might sight malicious code and their variants effectively in runtime and extend malware characteristics information dynamically.

#github #research #android #malware @reconcore
HexStrike AI MCP Agents
advanced MCP server that lets AI agents (Claude, GPT, Copilot, etc.) autonomously run 150+ cybersecurity tools for automated pentesting, vulnerability discovery, bug bounty automation, and security research. Seamlessly bridge LLMs with real-world offensive security capabilities. www.hexstrike.com/

#github #offensivesecurity #tools #llm @reconcore
Machine_Learning_Systems.pdf
40.9 MB
Machine Learning Systems:
Principles and Practices of Engineering Artificially Intelligent Systems
School of Engineering and Applied Sciences Harvard University. Nov 2025
This book bridges the gap between theoretical foundations and practical engineering, emphasizing the systems perspective required to build effective AI solutions. Unlike resources that focus primarily on algorithms and model architectures, this book highlights the broader context in which ML systems operate, including data engineering, model optimization, hardware-aware training, and inference acceleration

#aiops #secops #mlsecops #book #engineering @reconcore
22
Bypassing CDN WAFs With Alternate Domain Routing

I will provide a summary, and please read the full blog post to learn the concept. This technique is inspired by the idea in this tweet.

How this attack works?
Imagine that the #CDN acts as a trusted proxy between you and the target web server (the "origin"). In this setup the origin server trusts requests coming from the CDN’s IP range, so it only accepts traffic that appears to come from the CDN. If you (the attacker) want to talk to the origin, you must route your request through the CDN. The CDN receives your request, filters and checks it (to ensure it isn’t flagged as malicious), then forwards it to the origin server.

Now imagine a scenario where you’ve found the origin’s IP, but direct communication won’t work, because the origin expects only requests coming from the CDN’s IP range. However, if you register an account with the same CDN provider, turn off the WAF in your account, and point your CDN configuration at that origin IP, then you can send requests via the CDN to the origin (WAF IS OFF!). Since the origin sees that the request appears to come from the CDN, it will accept it!


Tools for deploying the infrastructure and scanning for affected origins:

cdn-proxy & cdn-scanner: Github

#infosec #cybersecurity #bypass #tools #bugbounty #waf @reconcore
11
CVE-2025-50168: Windows 11 LPE Exploit
Windows win32kbase Type Confusion Local Privilege Escalation Vulnerability (CVSS 8.8). Pwn2Own Berlin 2025 winning bug. Blog

#cve #lpe #exploit @reconcore
🔥1
A Chrome zero-day (CVE-2025-2783) was exploited to deliver spyware built by Memento Labs — the firm behind past government surveillance tools.

One click in Chromium = full sandbox escape.
#analysis #zeroday #offensivesecurity @reconcore
🤯2
Containerized Red Team Tools
Containers are an effective way to configure, deploy, and use Red Team tools

#github #redteam #tools @reconcore
OPEN SOURCE MALWARE
A community database, API and collaboration platform to help identify and protect against open source malware

#opensource #malware #cybersecurity @reconcore
Fuzz Forge
AI-powered workflow automation and AI Agents for AppSec, Fuzzing & Offensive Security Official site

#appsec #fuzz #fuzzing #llm #tools #offensivesecurity @reconcore