Threat Hunting for Masquerading Windows Processes
An important aspect of effective threat hunting is to understand what is normal in an environment. If a threat hunter […]
An important aspect of effective threat hunting is to understand what is normal in an environment. If a threat hunter […]
[[Post was originally posted on 23rd May, 2017 at invadersam.com]] Microsoft Office Word / Wordpad remote code execution vulnerability allows […]
Most organizations face a barrage of attacks every day from threat actors around the globe. Among the various vectors, attackers […]
By Kush Wadhwa, NII Consulting Have you ever thought of hiding data in such a manner that it cannot be […]
Browser Reconnaissance and Ex-filtration via Adaptive Compression of Hypertext (BREACH) Attack: Previously we learnt how CRIME attacks SSL/TLS using SSL/TLS […]
It is a common technique for criminals to target gaming applications as a propagation vector for malware distribution. Recently, I observed just such a malicious Android app, which acted as an interesting information stealer and then self-destructed. I took this case to investigate further as an interesting research.
Introduction Digital forensics methods are often used to uncover evidence from electronic devices to get information and verify validity of […]
In a previous article, we have described the Shellshock vulnerability and in this article we show how to exploit this […]
by Chetan Gupta, NII Consulting Everyday millions of people surf the web using popular web browsers such as Microsoft Internet […]
In the previous parts of this blog series, I introduced the concept of writing a full-undetectable malware and about […]