malware
#Google #Chrome silently installs a 4 GB AI model on your device without consent. At a billion-device scale the climate costs are insane.
https://www.thatprivacyguy.com/blog/chrome-silent-nano-install/
I just posted this in a github issue for wyng_backup...
👉 I don't care about the pretense, pretexts or excuses they use for their window dressing; A spyware vendor is a spyware vendor, and a despot is a despot. Microsoft betrays users' trust at an immense scale.
Therefore I would like to leave this MS-owned site for someplace more ethical. The first alternative that comes to mind is CodeBerg; it serves projects more demanding than mine so I think it will be fine. Suggestions for other sites are welcome!
#microsoft #spyware #malware #wyng #github #codeberg
1. 首字母大写
2. 数字放后面
3. 特殊符号放结尾
4. 喜欢 ! @ # $
5. 喜欢年份、生日、昵称
你踩了几个坑......我1245都中......
New, from me: The Kimwolf Botnet is Lurking in Corporate, Govt. Networks
A new Internet-of-Things botnet called Kimwolf has spread to more than 2 million devices, forcing infected systems to participate in massive distributed denial-of-service (DDoS) attacks and to relay other malicious and abusive Internet traffic. Kimwolf’s ability to scan the local networks of compromised systems for other IoT devices to infect makes it a sobering threat to organizations, and new research reveals Kimwolf is surprisingly prevalent in government and corporate networks.
https://krebsonsecurity.com/2026/01/kimwolf-botnet-lurking-in-corporate-govt-networks/
New blog post!
This time I talk about my new favorite evasive shellcode loader, Charon. I give a brief overview about what it does, how it works and which techniques it uses.
Also a brief addendum for enjoyers of bloated Implants such as Sliver.
https://ti-kallisti.com/general/ms/descending-into-hades.html
#InfoSec #Malware #Shellcode #RedTeam #RedTeaming #Pentesting #Charon #Sliver #Merlin #Mythic
So, one of my resolutions this year was to write more code.
I love to break stuff, but last year I reignited my passion for coding and I would really love to contribute to the community that has given me so much and continues to do so.
And contributing works a lot better by creating, rather than breaking.
So I created a codeberg account. And I already have a first repo published!
I called it Axmar.
Axmar is a C# implementation of the SilentHarvest technique that was published last year.
It uses backup access and rarely used APIs to (mostly) stealthily read the local credentials database in Windows system.
Enjoy!
https://codeberg.org/Ti-Kallisti/Axmar
#foss #coding #infosec #malware #pentesting #redteaming #codeberg #windows #csharp