Today, we're kicking off the first phase of the research preview for Model Hardware Standard (MHS): a new standard for AI agents to safely operate physical equipment in scientific research and advanced manufacturing.
Read more: https://t.co/XQ2y9EW7Af
VulnCheck recently uncovered ENDLESSDOORS, a pre-installed command-and-control implant in Zbtlink router firmware that phones home and can provide remote root access.
Read the full research from CTO @Junior_Baines: https://t.co/G61mpuhjbM
DynLoader
A modular Windows loader focused on EDR evasion Built with indirect syscall (Tartarus Gate / Hell’s Gate), Manual PE parsing & Section mapping, API hashing & Dynamic resolution, fileless HTTP delivery (AES encrypted option), & more :)
https://t.co/N0wpp3yRMA
Have you noticed that those deep-dive stories about complex Windows malware have pretty much vanished, especially in recent years? It feels like the era of "blockbuster" Windows malware has just gone silent, and this blog post tries to give some answers why.
https://t.co/sFsf3uPm5o
Introducing Cyllex - Advanced APT Emulation Framework.
https://t.co/WeF9QBYGcQ
I've been working on this for a while, pouring real effort and love into it. Not a quick release, I'm going step by step, building something solid. Some of the current features include:
▸ APT database with real-world campaign emulation
▸ Cross-platform agents via binary patching
▸ Agent, Agentless (WinRM/SSH), and Cloud execution
▸ Direct shell access for real-time interaction
▸ Interactive MITRE ATT&CK detection coverage tracking
▸ Calendar-based campaign scheduling
▸ Webhook notifications (Slack, Teams...)
▸ Robust TTPs: On-Premise (Windows/Linux), Cloud, and Containers
I'll be sharing updates as the project evolves. Thank you, and happy new year!
Checked out the new website (https://t.co/6mhn9Od1ni) for "Rootkits and Bootkits: Reversing Modern Malware and Next Generation Threats" by @vxradius , @sergeybratus and me.
The new book is in progress, stay tuned!
🚀 𝗧𝗵𝗲 𝗘𝗗𝗥 𝗖𝗼𝗺𝗽𝗮𝗿𝗶𝘀𝗼𝗻 𝗦𝗲𝗿𝘃𝗶𝗰𝗲 𝗶𝘀 𝗼𝗳𝗳𝗶𝗰𝗶𝗮𝗹𝗹𝘆 𝗹𝗶𝘃𝗲!
This is the evolution of the EDR Telemetry Project, expanding everything people valued there into a full, feature-level comparison across multiple EDR products.
What it delivers:
• Analyst-led, hands-on evaluations
• Real capabilities, not marketing claims
• Clear breakdowns of strengths, gaps, and implementation details
• A practical handbook that empowers consultants, SOC leads, architects, and security teams to save significant time and money on evaluations.
🔥 𝗙𝗼𝗿 𝘁𝗵𝗲 𝗹𝗮𝘂𝗻𝗰𝗵 𝗽𝗲𝗿𝗶𝗼𝗱, 𝗲𝗮𝗿𝗹𝘆 𝗮𝗱𝗼𝗽𝘁𝗲𝗿𝘀 𝗰𝗮𝗻 𝘀𝗲𝗰𝘂𝗿𝗲 𝗹𝗶𝗳𝗲𝘁𝗶𝗺𝗲 𝗮𝗰𝗰𝗲𝘀𝘀.
If you want the full background and context, here’s the introductory blog, which also includes tips on choosing the best EDR for your needs:
https://t.co/0mEay5EXA4