wtorek, 23 czerwca 2020

WooPer - for Wordpress enumeration

Last time when I was looking for some new malware sample(s) I found that multiple websites (serving malicious content) are based on Wordpress. I was wondering why 'attacker' decided to try them as a jump host. Below you'll find few notes about it. Here we go...

sobota, 20 czerwca 2020

Reading malware - MS Office Macros

Yesterday I decided to visit this page again to see if I'll be able to find some 'fresh malicious files'. This time I was looking for some 'malwares' prepared for MS Office users. Below you will find the details. Here we go...

niedziela, 14 czerwca 2020

Reversing Drones - mission planning

During the weekend I decided to fly again... ;] This time to do that we'll use my new drone called Tello DJI. Below you will find few notes and some details. Here we go...

piątek, 12 czerwca 2020

Reversing Drones - quick intro

Last time I decided to finaly check some 'other machines' too - the flying one - drones ;). Below you will find few (first) notes about it. Here we go...

niedziela, 7 czerwca 2020

My Tomcat Host: 1 - CTF

Last time I found on VulnHub few new VMs. One of them was "My Tomcat Host:1". I decided to check it. Below you will find few notes about it. Here we go...

VulnUni CTF

It's been a while since I last time played CTFs from VulnHub so today we'll try something nice and easy - a CTF called VulnUni. Here we go...

niedziela, 24 maja 2020

Preloading Linux binaries

Using LD_PRELOAD to exploit/reverse binaries was presented to me in 2006. Below I will show you a very basic usage for some small example found online. Here we go...

poniedziałek, 18 maja 2020

Reading malware - unpacking ASPack 2.12

Today I decided to check some 'new samples available online' and that's how I found the one called "gwzsesxxgq.exe". Below you'll find the details. Here we go...

niedziela, 17 maja 2020

Reading malware - DDoS Perl Bot

It's been a while since I was reading (anything in) Perl ;) so during last lazy Sunday I decided to check one of the sample malware available here. Below you will find the details. Here we go...