Cordyceps: C++ self-Injecting dropper based on various EDR evasion techniques. This project consists of a simple C++ self-Injecting dropper focused on EDR evasion. To implement it, I have combined the use of Windows Thread Pooling to hide the call stack and the use of indirect syscalls to avoid hooking in the NTDLL. https://github.com/pard0p/Cordyceps https://t.me/cKure/13001
All posts tagged hack
October 13, 2023 at 12:20PM
■■■■□ PoC for CVE-2023-42820 JumpServer Password Reset Vulnerability. https://github.com/C1ph3rX13/CVE-2023-42820 https://t.me/cKure/13000
October 13, 2023 at 11:08AM
■□□□□ Former Palo Alto Networks employees launch security startup, raise $51 million. https://www.sdxcentral.com/articles/news/with-a-gutsy-approach-to-security-process-mining-startup-raises-51m/2023/10/ https://t.me/cKure/12999
October 13, 2023 at 11:07AM
■■■□□ Platypus Finance suffers more than $2 million exploit on Avalanche: PeckShield. https://www.theblock.co/post/256074/platypus-finance-exploit-avalanche https://t.me/cKure/12998
October 13, 2023 at 11:07AM
■■□□□ The BBC’s Marianna Spring specializes in branding average citizens as conspiracy theorists and potential terrorists for questioning official claims. When caught lying about her own professional record to advance her ambitions, she says she thought her deceit “wouldn’t be a big deal.” https://thegrayzone.com/2023/09/09/bbc-disinformation-disinfo-bio/ https://t.me/cKure/12997
October 13, 2023 at 10:53AM
■□□□□ Disinformation emerging from Palestine-Israel conflict. 40 baby story origins and propaganda. Source of dubious ‘beheaded babies’ claim is Israeli settler leader who incited riots to ‘wipe out’ Palestinian village The editor of the above website has an interview with AlJazeera. Link of interview: https://t.me/thegrayzonenews/500 https://t.me/cKure/12996
October 12, 2023 at 11:53PM
■■■■□ Stored XSS at nordvpn.com. https://hackerone.com/reports/1841042 https://t.me/cKure/12995
October 12, 2023 at 11:04PM
■■■■□ Demystifying the “SVCHOST.EXE” Process and Its Command Line Options. https://nasbench.medium.com/demystifying-the-svchost-exe-process-and-its-command-line-options-508e9114e747 https://t.me/cKure/12994
October 12, 2023 at 08:31PM
■■■■□ Palestine-Israel Cyber-War: Hamas-linked Al-Aqsa TV was hacked by Israeli forces. Messages were broadcast calling on residents to evacuate their homes and go to a protected area because there will be severe attacks – against the background of images of destruction in Gaza. https://t.me/cKure/12991
October 12, 2023 at 08:04PM
■■■■■ How Serious Is The New Curl [CVE-2023-38545] Vulnerability? https://www.intruder.io/blog/curl-high-rated-cve-2023-38545 https://t.me/cKure/12990
