Latest News
Stay updated with the newest cybersecurity articles and insights.
Exchange Web Service (EWS) Development Guide 5 – exchangelib
Learn to use exchangelib for EWS development, automate email downloads, and extract attachments with Python. Includes code examples and tips.
Read Exchange Web Service (EWS) Development Guide 5 – exchangelibSteganography Techniques - LSB Steganography in PNG Files
Learn LSB steganography techniques to hide payloads in PNG files using IDAT chunks. Includes Python implementation and analysis tools.
Read Steganography Techniques - LSB Steganography in PNG FilesPenetration Techniques - Using netsh to Capture NTLMv2 Hash from File Server Connections
Learn to capture NTLMv2 hashes from file server connections using Windows netsh without third-party tools. Extract and crack passwords for internal network penetration testing.
Read Penetration Techniques - Using netsh to Capture NTLMv2 Hash from File Server ConnectionsUse Waitfor.exe to maintain persistence
Learn how to use Waitfor.exe for backdoor persistence in Windows. Explore exploitation techniques, POC details, and PowerShell integration for penetration testing.
Read Use Waitfor.exe to maintain persistenceUse powershell to find a writable windows service
Learn to use PowerShell to find writable Windows services for exploitation. Includes C# templates, SC command tips, and automated script development.
Read Use powershell to find a writable windows servicePenetration Basics - Obtaining Active Directory Information
Learn how to gather Active Directory info from inside and outside the domain using ldapsearch, PowerView, and C++ ADSI interfaces for penetration testing.
Read Penetration Basics - Obtaining Active Directory InformationServer Backup Manager Vulnerability Debugging Environment Setup
Learn to set up a vulnerability debugging environment for Server Backup Manager (SBM), including installation, debugging configuration, and user database file extraction.
Read Server Backup Manager Vulnerability Debugging Environment SetupAnalysis of CVE-2017-8360 (Keylogger in HP Audio Driver) Exploitation
Technical analysis of CVE-2017-8360 HP audio driver keylogger vulnerability, including exploitation methods, reproduction steps, and defense recommendations.
Read Analysis of CVE-2017-8360 (Keylogger in HP Audio Driver) ExploitationAdvanced Exploitation Techniques for Hidden Alternative Data Streams
Learn advanced techniques for exploiting and hiding Alternative Data Streams (ADS) in NTFS, including bypassing detection tools and executing payloads via WMI and PowerShell.
Read Advanced Exploitation Techniques for Hidden Alternative Data StreamsStudy Notes Weekly No.4(Use tracker to load dll & Use csi to bypass UMCI & Execute C# from XSLT file)
Learn to bypass Windows Device Guard using tracker.exe to load DLLs and csi.exe for application whitelisting bypass. Includes executing C# from XSLT files.
Read Study Notes Weekly No.4(Use tracker to load dll & Use csi to bypass UMCI & Execute C# from XSLT file)Mimilib Usage Analysis
Learn how to use Mimilib DLL's 6 key functions: SSP, PasswordChangeNotify, WinDbg extensions, and DnsPlugin for security testing and logging.
Read Mimilib Usage Analysis








