Cyber Security Consultant | Security Researcher

Do you know the exact location? I was trying to find the exact position by identifying the camera’s location using the road, sun, and mountains. I found these three red circles as possible locations, but the road still doesn’t match any of them.
1
30
Replying to @tdatwja
interesting It abuses a ZEON signed program to perform DLL sideloading of a hidden DLL.
1
4
226
Replying to @Haus3c
Unfortunately, you can’t!
2
371
Replying to @7N7
Damn, too many things waiting for you down there it almost gave me brain damage.
1
1
216
Replying to @IntelOpsV3 @dulls
I see this is how it started by phishing his friends.😭
2
259
Replying to @AUZombie
This is their builder. You can see the features since it checks authentication on the client side if you set the response of /api/users to true.
2
2
185
Replying to @hackerfantastic
For real, I have no idea how this got a CVE, there is literally no impact, 0 in cvss
1
3
202
Replying to @0xmadvise
really wish I could too, and watch out this car is waiting for you outside when you finish .

ALT Ford Expedition Platinum Ford GIF

1
1
56
Replying to @sixtyvividtails
File Explorer trying to sort files by Date Modified in 1582

ALT Walter White Breaking Bad GIF

1
2
201
Replying to @C5pider
yeah avast will do the job by unlocking a few 0-days on your device, you're typically safer without it 🤣
1
9
1,101
Replying to @akaclandestine
you guys should be careful this project configuration file contains a command that executes before the build starts and dropping vb and powershell into the temp directory ... CC @malwrhunterteam @banthisguy9349 @RussianPanda9xx
3
8
480
Replying to @0xmadvise
when 100% is reached

ALT Open Up Coming In GIF

1
1
90
@_devonkerr_ i don't think you'll be able to load a revoked driver. You can load a driver with an expired certificate, but not a revoked one you can't. An error will appear, like this
1
1
114
Replying to @_JohnHammond
He didn’t even try to hide the telegram bot token. 😅
3
264
Replying to @malwrhunterteam
The malformed pixels at the bottom indicate potential data injection. Upon analysis, we can find a PowerShell command that decodes a Base64 encoded PE file and executes it.
5
921
And since it's an arbitrary file deletion, we can easily use it to exploit the MSI installer rollback to achieve privilege escalation :) github.com/ZeroMemoryEx/IObi…
Shoutout to the homies at "IObit Malware Fighter". Their IMFForceDelete driver is so wildly vulnerable, and poorly written, you can have their driver arbitrarily delete any file on the machine with 0 privileges and literally 1 line of code Thanks @_mmpte_software for sharing
5
78
328
33,425
Replying to @banthisguy9349
Indeed, i see the admin was already hacked a few months ago. I assume they didn't change the password!
2
277
Replying to @sixtyvividtails
I see. Prob should also be used inside the try-except block, Thanks for your note! I'll try this scenario when I get some time. btw I've also added a little fun part where, if an access violation exception occurs, the driver will terminate the caller Haha
1
3
264
Replying to @eversinc33
^_^
24
2,820
Replying to @vxunderground
using automatic sample submission to steal your data

ALT Troll Face GIF

7
469
Replying to @vxunderground
meanwhile the SOC team

ALT spongebob squarepants sleeping GIF

2
238

ALT Futurama Buy GIF

1
93
Replying to @MSNightmare2000

ALT Troll Trollge GIF

1
206
Replying to @q8fawazo
Pullman Paris Tour Eiffel, 18 Avenue De Suffren, 22 Rue Jean Rey Entrée Au, 75015 Paris, France
1
1
624
Replying to @C5pider

ALT Windows Cpp GIF