unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
IoCs (Indicators of Compromise) for the Coruna iOS iPhone Web Malware Client Side Exploits Serving Web Malware Exploitation Kit
嗯,用户让我帮忙总结一下这篇文章的内容,控制在100个字以内,而且不需要用“文章内容总结”之类的开头。首先,我需要仔细阅读用户提供的文章内容。 看起来这篇文章主要讨论的是一个针对iOS设备的恶意软件活动,特别是Corona iOS客户端的漏洞。文章里提到了很多MD5、SHA-1和SHA-256的哈希值,这些应该是用来识别恶意软件样本的。此外,还有大量的域名和URL链接,这些域名似乎在传播恶意软件。 用户可能是一位安全研究人员或者IT专业人士,他们需要快速了解这篇文章的核心内容。因此,总结的时候要突出关键点:恶意软件活动、iOS漏洞、相关哈希值和域名。同时,要确保语言简洁明了,不超过100个字。 我应该避免使用技术术语过多,但又要准确传达信息。比如,“详细分析”可以概括整个研究过程,“相关哈希值”则涵盖了文章中提到的各种加密哈希。最后,“多个域名传播”说明了攻击者的基础设施情况。 综合考虑后,我会把重点放在活动类型、受影响的系统、技术细节以及传播方式上,这样用户就能迅速抓住文章的主要内容。 </think> 该文章详细分析了近期公开的Corona iOS客户端漏洞及其相关网络钓鱼活动,涉及多个JavaScript恶意负载的哈希值和用于传播恶意软件的活跃域名及URL链接。...
2026-3-13 11:4:0 | 阅读: 23 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
htmlhxxp
xyzhxxp
comhxxp
b27
jshxxp
When Data Mining Conti Leaks Leads to Actual Binaries and to a Hardcoded C2 With an Encryption Key on Tripod.com - Part Two
嗯,用户让我帮忙总结一篇文章的内容,控制在100字以内,而且不需要特定的开头。我得先仔细看看这篇文章讲的是什么。 看起来这篇文章是关于Conti勒索软件样本的分析。作者通过数据挖掘Conti泄露的信息,找到了一个恶意软件样本,并详细分析了它的结构和行为。文章提到了资源提取、反分析检查、RC4解密过程以及有效载荷的执行。此外,还讨论了存储机制、数据加密分析、读取操作、数据库格式以及外泄机制。 我需要把这些关键点浓缩到100字以内。首先,确定主要部分:样本分析、解密过程、存储机制和攻击特征。然后,用简洁的语言把这些部分连接起来。 可能会这样写:文章分析了Conti勒索软件样本的结构和行为,包括资源提取、RC4解密和有效载荷执行。它揭示了恶意软件如何使用Registry和INI文件存储数据,并讨论了其反分析技术和攻击特征。 检查一下字数,确保不超过限制,并且内容准确传达文章的核心信息。 </think> 文章分析了Conti勒索软件样本的结构和行为,包括资源提取、RC4解密和有效载荷执行。它揭示了恶意软件如何使用Registry和INI文件存储数据,并讨论了其反分析技术和攻击特征。...
2026-3-7 17:43:0 | 阅读: 33 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
payload
analysis
rsrc
database
0x4b60
Dissecting the RAMP (Russian Anonymous Marketplace) Ransomware Forum - An Analysis
Dear blog readers,I just did the impossible but I'll leave a set of photos and personally identifia...
2026-2-24 22:38:0 | 阅读: 23 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
2405
8100
5ca1
log185
flankerster
Looking for a Python Developer or a Team of Python Developers
Dancho正在寻求一位经验丰富的Python开发者或团队合作完成其"Web Forensics Hash Matching and Hash Similarity Project"项目。该项目旨在将国际域名cTLD数据录入MySQL数据库,并每日新增350,000个新注册域名。Dancho已独自完成初步工作,并希望引入专业代码和Flask web应用仪表盘功能。有意者可通过邮箱联系他获取源代码和数据库副本。...
2025-6-11 20:1:0 | 阅读: 34 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
python
database
flask
spare
developers
Where Is Anton Nikolaevich Korotchenko (Антон Николаевич Коротченко) Also Known as Koobface Botnet Master KrotReal? - Part Five
文章描述了Koobface僵尸网络创建者Anton Korotchenko(KrotReal)在2011年拥有合法Facebook账户的事实,并揭示了他在2025年与合伙人Olesya Lyashenko共同经营Born To Earn CO. LTD.公司及其相关社交媒体账号和网站的信息。...
2025-5-20 10:59:0 | 阅读: 21 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
koobface
facebook
hxxp
krotreal
nikolaevich
Inside the Yekaterinburg's Based Plastika Recording Studio - The Primary Producer of Conti Ransomware Gang's Marketing and Advertising Creative
叶卡捷琳堡的Plastika录音工作室负责Conti勒索软件团伙的广告和营销创意制作,展示了其内部运作及负责人Linkvil(Евгений Самсонов)的工作情况,并提供了相关视频和照片样本。...
2025-5-14 21:41:0 | 阅读: 23 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
recording
ransomware
advertising
creative
Astalavista.com - Second Official Re-Launch
宣布Astalavista.com第二次官方重新发布,邀请访问其论坛社区并注册账户。该平台提供独立安全咨询、威胁情报分析及竞争情报研究服务,以互动报告形式呈现无偏见且定制化评估。联系邮箱:[email protected]...
2025-5-8 22:14:0 | 阅读: 29 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
astalavista
analysis
competitive
unbiased
A Full List of Dark Web Onion URLs from the recent LockBit Compromise
文章披露了LockBit勒索软件集团近期遭受的数据泄露事件,公布了其多个Dark Web Onion网站链接及相关内部通信信息。...
2025-5-8 16:24:0 | 阅读: 35 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
onionhxxp
lockbit
ransomware
A Full List of BitCoin Addresses from the Recent Lockbit Compromise
Dear blog readers,The following is a full list of all the LockBit BitCoin addresses found based on...
2025-5-8 04:2:0 | 阅读: 21 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
On The Hunt for Cyber Jihadists on the Dark Web - An Analysis
这篇文章介绍了在暗网上定位网络圣战分子基础设施的研究成果,包括Al-Raud、I'lam和Fahras等组织的Monero捐赠地址、Dark Web Onion链接及相关域名。...
2025-5-7 11:31:0 | 阅读: 44 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
hxxp
raud
fahras
zahxxp
monero
Profiling a Currently Active Portfolio of High-Profile Cybercriminal Jabber and XMPP Accounts Including Email Address Accounts - Part Seven
文章探讨了网络犯罪的多样性与复杂性,包括钓鱼邮件结合漏洞利用、银行木马、SQL注入攻击、数据库泄露事件(如保加利亚NAP记录)、勒索软件(如Black Basta)以及早期网络攻击案例等。...
2025-5-7 11:30:0 | 阅读: 32 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
ransomware
exposing
basta
dear
readers
Dissecting the Bybit Cryptocurrency Exchange Malicious UI Spoofing Javascript
作者分析了Bybit交易所的恶意UI欺骗JavaScript代码,并提取了其中包含的多个URL和Ethereum地址,揭示了攻击者可能的身份和行为模式。...
2025-2-26 20:38:0 | 阅读: 33 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
hxxp
comhxxp
iohxxp
nextjs
malicious
Exposing the Black Basta Ransomware Group - Part Four
UPDATED:Exposing the Black Basta Ransomware GroupExposing the Black Basta Ransomware Group - Part T...
2025-2-25 10:14:0 | 阅读: 19 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
basta
ransomware
twoexposing
dear
Exposing the Black Basta Ransomware Group - Part Three
作者揭露Black Basta勒索软件集团的活动,并分享了相关数据泄露事件、合作项目进展及新项目的成果。...
2025-2-22 10:33:0 | 阅读: 31 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
readers
dear
basta
ransomware
exposing
Exposing the Black Basta Ransowmare Group - Part Two
UPDATED:Exposing the Black Basta Ransomware GroupExposing the Black Basta Ransomware Group - Part T...
2025-2-22 10:33:0 | 阅读: 54 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
hxxp
443hxxp
comhxxp
rdweb
owa
Exposing the Black Basta Ransowmare Group - Part Two
Dear blog readers,I just picked up the Black Basta Ransomware group's internal leaked communication...
2025-2-21 12:54:0 | 阅读: 65 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
hxxp
443hxxp
comhxxp
rdweb
owa
Exposing the Black Basta Ransomware Group
文章揭露了Black Basta勒索软件集团,并通过样本照片展示其活动。同时提供安全咨询和威胁情报分析服务,帮助客户应对新兴威胁。...
2025-2-21 12:0:0 | 阅读: 28 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
ransomware
security
competitive
insightful
client
A Peek Inside the Current State of BitCoin Exchanges
Dear blog readers,In this post I'll provide some actionable intelligence on the current state of a...
2025-1-16 23:49:0 | 阅读: 31 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
iohxxp
comhxxp
exchanges
217
245
A Peek Inside the Current State of BitCoin Mixers
Dear blog readers,In this post I'll provide some actionable intelligence on the current state of ac...
2025-1-16 23:49:0 | 阅读: 28 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
iohxxp
comhxxp
moneyhxxp
coinomize
231
Profiling the iSpoof Cybercrime Enterprise
Dear blog readers,In this post I decided to take a look at the hxxp://ispoof.cc cybercrime enterpri...
2025-1-16 23:49:0 | 阅读: 15 |
收藏
|
Dancho Danchev's Blog - ddanchev.blogspot.com
hxxp
203
ispoof
247104
73172
Previous
3
4
5
6
7
8
9
10
Next