COMpromise - 再次写入 Registry,第 4 部分
【翻译】The Key to COMpromise - Writing to the Registry (again), Part 4 — NeodymeCOMpromise - 利用 TOCTOU
阅读全文【翻译】The Key to COMpromise - Writing to the Registry (again), Part 4 — NeodymeCOMpromise - 利用 TOCTOU
阅读全文【翻译】Bypass AMSI in 2025 - r-tec Cyber Security引言自从我发表第一篇关于绕过 Antimalware Scan Interface (AMSI) 的博客文章
阅读全文【翻译】Pwn everything Bounce everywhere all at once (part 2) - Quarkslab's blog 在这系列文章中,我们描述了在一次"假定被入侵"
阅读全文Pwn everything Bounce everywhere all at once (part 1) - Quarkslab's blog本文描述了在一次"假定已被入侵"的安全审计中,我们如何通
阅读全文【翻译】Streamlining vulnerability research with IDA Pro and Rust - hn security "反叛者崛起,我们已做出牺牲如同鬼魂般被击倒血液
阅读全文【翻译】Exploit Development Investigating Kernel Mode Shadow Stacks on Windows简介不久前我在加利福尼亚的 SANS HackFes
阅读全文【翻译】Introduction to eBPF for Windows在 Linux 世界中,eBPF技术已经存在多年。它的目的是允许编写在 Linux 内核中运行的程序。然而,与标准内核模块相反,
阅读全文【翻译】Exploring NTDS.dit – Part 1 Cracking the Surface with…NTDS.dit 是存储 Windows Active Directory (AD)
阅读全文【翻译】Making a Mimikatz BOF for Sliver C2 that Evades Defender大家好,今天我想展示如何修改 Sliver C2 中的 Mimikatz Bea
阅读全文【翻译】Advanced Active Directory Persistence Techniques: Can dMSA Be Abused委派托管服务账户 (dMSA) 于 Windows Se
阅读全文