■■□□□ [Tool] Sliver: Open source cross-platform adversary emulation/red team framework, it can be used by organizations of all sizes to perform security testing. Sliver’s implants support C2 over Mutual TLS (mTLS), WireGuard, HTTP(S), and DNS and are dynamically compiled with per-binary asymmetric encryption keys. https://github.com/BishopFox/sliver https://t.me/cKure/13105
All posts in Uncategorized
October 27, 2023 at 11:57AM
■■■■■ curlshell: An encrypted reverse TCP shell through a proxy (using only cURL tool). It allows an attacker to access a remote shell (sh) when the remote system can access the Internet via a Proxy only (or the filesystem is mounted read-only/noexec). The target only needs to have curl and sh installed. Python is not…
October 27, 2023 at 11:54AM
■■■■□ CVE-2023-5360: Auto shell upload WordPress royal elementor 1.3.78 shell upload. https://github.com/phankz/Worpress-CVE-2023-5360 https://t.me/cKure/13102
October 27, 2023 at 10:18AM
■■□□□ HTTP/2 Rapid Reset (CVE-2023-44487) https://thehackernews.com/2023/10/record-breaking-100-million-rps-ddos.html https://t.me/cKure/13101
October 27, 2023 at 09:58AM
■■■□□ Tool: OWASP Maryam is a modular open-source framework based on OSINT and data gathering. It is designed to provide a robust environment to harvest data from open sources and search engines quickly and thoroughly. https://github.com/saeeddhqan/Maryam https://t.me/cKure/13100
October 26, 2023 at 09:57PM
■■■■□ OSINT: Interesting thread in Israel-Palestine war at Gaza. https://twitter.com/earshot_ngo/status/1715381907230232929 https://t.me/cKure/13099
October 26, 2023 at 08:55PM
■■■■■ ZerohDay: Samsung Galaxy S23 hacked twice on first day of Pwn2Own Toronto. https://www.bleepingcomputer.com/news/security/samsung-galaxy-s23-hacked-twice-on-first-day-of-pwn2own-toronto/ https://t.me/cKure/13098
October 26, 2023 at 08:55PM
● Pwn2Own Toronto [Day 1] [Day 2] https://youtu.be/xc1yERrNMjA https://t.me/cKure/13096
October 26, 2023 at 10:20AM
■■■■□ Citrix Bleed exploit lets hackers hijack NetScaler accounts. https://www.bleepingcomputer.com/news/security/citrix-bleed-exploit-lets-hackers-hijack-netscaler-accounts/ https://t.me/cKure/13092
October 26, 2023 at 08:35AM
■■■■□ Privacy: Examining Predator Mercenary Spyware. https://securityboulevard.com/2023/10/examining-predator-mercenary-spyware/ https://t.me/cKure/13091
