Тёмный
MalwareCube
MalwareCube
MalwareCube
Подписаться
Cybersecurity, tech, stuff.
this one-liner will crash your system
7:09
3 месяца назад
How to Pivot and Tunnel on the OSCP
16:23
6 месяцев назад
How to Fix and Debug Exploit Code
15:03
6 месяцев назад
NahamCon CTF 2023 - Ninety One
1:02
Год назад
NahamCon CTF 2023 - Glasses
4:05
Год назад
NahamCon CTF 2023 - Fast Hands
2:22
Год назад
Комментарии
@lightningdev1
@lightningdev1 Час назад
I got the same email. John Hammond made a video about the same "fake captcha" phishing attempt this week too. Was funny to see it in the wild literally the day after watching that video.
@neikidev
@neikidev 14 часов назад
Hey, great video! Saw myself in the VT community tab :D Keep it up!
@MalwareCube
@MalwareCube 14 часов назад
no way, that's really cool! Thank you.
@aimenatwi
@aimenatwi 23 часа назад
I laughed so hard when i saw "press pasta then enter" asking me to run your malware on my computer for you is crazy lol
@dakota9821
@dakota9821 12 часов назад
Fr
@IndustryOfMagic
@IndustryOfMagic День назад
5:48 19/96 vendors spam it malicious and -50 community score for me on virustotal at the moment of writing this comment
@MalwareCube
@MalwareCube 18 часов назад
And still climbing!
@IndustryOfMagic
@IndustryOfMagic День назад
5:48 19/96 vendors spam it malicious and -50 community score for me on virustotal at the moment of writing this comment
@readysetexploit
@readysetexploit День назад
Literally at 3:20 I noticed the creation date and 4 seconds late you pointed that out, awesome And woah that captcha and JS was wild Thank you for this great contribution to the community
@MalwareCube
@MalwareCube День назад
Thank you! I got lucky with this sample, it was the perfect amount of clever and entertaining
@zerosploit
@zerosploit 2 дня назад
got the same email but mine was from 'thehackingsage/hacktronian'
@aakashraman274
@aakashraman274 2 дня назад
Great video Andrew, its so unique what Copy Paste can do! John Hammond covered the same technique too!
@NoNoandNo-no
@NoNoandNo-no 5 дней назад
Hi Andrew, I wanted to ask this during the Cyber Mentor live session, but I missed the notification, unfortunately. Do I need to learn Python and scripting for a SOC analyst role? If so, where should I start?
@MalwareCube
@MalwareCube 5 дней назад
@NoNoandNo-no yeah it can be useful as you progress in the SOC or move into more engineering roles. I wouldn't put it as a requirement as an entry level analyst (meaning I think there are other areas that should take priority first) but you'll sometimes see it as a "nice to have " on job postings. I can only suggest TCM's python course as personally I haven't taken any others to compare, but I thought it was a great foundation.
@k_usuan
@k_usuan 19 дней назад
Very good walkthrough . Bravo
@ImTheMrFoxman
@ImTheMrFoxman 2 месяца назад
How well does port scanning run through this? Still hot garbage, or does this work a lot better?
@MalwareCube
@MalwareCube 2 месяца назад
It's way faster than some of the other methods. And you can still run syn scans through it, which if I remember correctly is a limitation with something like Chisel.
@tennesseetuned
@tennesseetuned 2 месяца назад
THHHEEE new standard.
@DanT89
@DanT89 2 месяца назад
thanks for this video, this is exactly what i needed. setting up tunnelling feels so confusing for me and you've covered everything i need in this video.
@MalwareCube
@MalwareCube 2 месяца назад
Thanks, I'm so glad to hear! Tunneling can be really confusing and fortunately Ligolo makes it as simple as possible.
@nightwing09x
@nightwing09x 2 месяца назад
Hey man, nice vid, didn't realize Ligolo makes it so simple!
@patsplat
@patsplat 3 месяца назад
Very cool! Great video
@JarppaGuru
@JarppaGuru 3 месяца назад
one liner admin is better
@MalwareCube
@MalwareCube 3 месяца назад
?
@Markadown
@Markadown 3 месяца назад
This was pretty cool.
@matthewperiut7508
@matthewperiut7508 3 месяца назад
Tested it on my macbook which is bsd based, and surprisingly there was a level of protection, so it didn't crash my system interestingly enough! Great video!
@keshamix_
@keshamix_ 3 месяца назад
Greta video, honestly. Well-spoken, confident, nice editing. Wish you look at growing big
@ZaynorMC
@ZaynorMC 3 месяца назад
Why make it so unnecessarily complex? Just keep it simple and run "make -j"
@nikhils7583
@nikhils7583 3 месяца назад
This was nice.😅
@W0lfCL
@W0lfCL 3 месяца назад
I don't get why there's a pipilne there. Like I always thought that command1 | command2 redirects the output of the command1 to the input of the command2 Why is it :|: and not something like :&&: ???
@MalwareCube
@MalwareCube 3 месяца назад
Great question, and you're correct about the pipe. In this case, the actual data or output being passed through the pipe is not used. If a process takes nothing into stdin, you can still pipe to it. Using && would make the second call dependent on the successful completion of the first call, and so the pipe is used to execute both recursive calls in parallel without conditions. To your point, ":(){ :&:; }; :" will also work in most cases.
@W0lfCL
@W0lfCL 3 месяца назад
@@MalwareCube thx for making this clear
@Dan-vu3vt
@Dan-vu3vt 3 месяца назад
Making that function more readable is an awesome way of teaching what it does.
@boas_
@boas_ 3 месяца назад
So basically a nuclear bomb
@olifloof
@olifloof 3 месяца назад
iirc most distros using systemd mitigate forkbombs by setting a ulimit
@MalwareCube
@MalwareCube 3 месяца назад
Yep, you can set limits on systemd unit files, and you can also set a ulimit to a smaller value in login scripts.
@li-lunarink
@li-lunarink 3 месяца назад
why no comments man
@readysetexploit
@readysetexploit 4 месяца назад
I just tried this out using your video. What a game changer! Thanks!
@MalwareCube
@MalwareCube 4 месяца назад
W00t! I'm super glad it was helpful, that's awesome to see
@readysetexploit
@readysetexploit 6 месяцев назад
Loved the idea of showing WireShark, I don’t see that being showcased enough when debugging why scripts don’t work out of the box
@Sam_A2
@Sam_A2 6 месяцев назад
Love this video man, keep it up!
@MalwareCube
@MalwareCube 6 месяцев назад
Thank you, sincerely!
@mindwaves90
@mindwaves90 8 месяцев назад
This is the best walkthrough, thanks man
@user-by6zz7wq9n
@user-by6zz7wq9n 9 месяцев назад
Thank you for the walkthrough! It was realy clear, and you made it easy to understand the meaning of each step (I find it most important)
@xenotrixx
@xenotrixx 9 месяцев назад
Thank you for your nice Video. :)
@jtwilkins
@jtwilkins 9 месяцев назад
This was an amazing presentation. This task was a huge boring wall of text, there is no way I would have done this without your help. Thank you.
@jasonlayton8760
@jasonlayton8760 9 месяцев назад
thorough but bit long for beginners
@cryptoflashbkk
@cryptoflashbkk 9 месяцев назад
Excellent walkthrough.. thanks a lot!!
@wolfyyybandz
@wolfyyybandz 9 месяцев назад
great walkthrough Thumbs up!
@m.af.i.a
@m.af.i.a 9 месяцев назад
💥
@playfulsteps9249
@playfulsteps9249 9 месяцев назад
Superb presentation with great tips, hints, explanations, deep dives, and process flow! Subscribed!
@cHK91129
@cHK91129 9 месяцев назад
Thank you!