Time's up - full source code linked below.
ASSETS LEFT IN NOBITEX ARE NOW ENTIRELY OUT IN THE OPEN.
بازمانده دارایی های شما در نوبیتکس هم اکنون در معرض دید و خطر هستند
But before that, lets meet Nobitex from the inside:
Exchange Deployment (1/8)
NEW: 🇮🇷 Iranian crypto exchange Nobitex was exploited for $81.7M, including Bitcoin that was permanently burned.
🇮🇱 Pro-Israel hacker group Predatory Sparrow claims responsibility and vows to release Nobitex’s source code and internal data within 24 hours, warning remaining assets are at risk.
🚨 WARNING: Another Chrome zero-day exploited in the wild.
Google just patched CVE-2025-5419 — a high-severity V8 engine flaw found by its own Threat Analysis Group.
Attackers are already using it via malicious HTML pages.
Update Chrome NOW | Read: https://t.co/OgAGwctPpI
🚨 Asian Cyber Security Challenge (ACSC) is back!
🗓️ Aug 16 (Sat) 12:00 – Aug 17 (Sun) 12:00 JST
🌏 Hosted by 5 non-ASEAN ICC countries (Team ASEAN launched!)
🎮 Open to all, but finalists must be nationals of those 5.
📜 Selection rules coming soon!
🔗 https://t.co/CBvVR0NI4o
Newer variants of the #BPFDoor has an interesting modification made that avoids detections looking for processes with raw sockets. The kernel reports SOCK_DGRAM rather then rather loud "SOCK_RAW". Here we have a sample found in the recent SKT telco breach. (1/20)
Yes, appears to be another DPRK sample. C2 passed as an arg to this binary. Leverages CURL API's. Executes data written to /Users/Shared/.<random> with popen(). Imported function calls aren't resolved at first, requires following jumps to clean up and rename.
We now have a @metasploit exploit in the pull queue for that Oracle Access Manager vuln, CVE-2021-35587. You can check it out here: https://t.co/awXwpTq2wr
In 2020, I solved a gnarly reverse engineering challenge in PlaidCTF. Only 9 teams solved.
It's a huge pile of Typescript. Everything is named after a fish.
The catch? There's no code, only types. How do they perform computation using just the type system?
(Spoiler: Circuits!)
🇰🇵 Sekoia #TDR team investigated a malicious campaign that employs fake job interview websites to deliver backdoors on Windows and macOS - #GolangGhost using #ClickFix tactic. Dubbed #ClickFake Interview, this campaign has been attributed to #Lazarus APT
https://t.co/4MWmTdXnAI
I made a plugin for HxD that's helpful for CTF players. Now you can copy as string, Python array, or base64. Finally, no more cyberchef for base64<->hex. Download it here https://t.co/nT2uR76Z4I
Attack and Defense Around #PowerShell Event Logging: from V2 to V6 (and PWSH that increase your attack surface) - both #BlueTeam and #RedTeam point of views :)
https://t.co/Yh625X2rNc
+ #Microsoft#Security Security Advisory #CVE-2018-8415: https://t.co/DRJkpIyRk1
It was after I solved Remote originally that RoguePotato was released by @decoder_it and @splinter_code. I realized too late last week that Remote was a good target, hence the follow up post. I'll also look at how @ippsec ran it and why that worked.
https://t.co/MLYAuNYC14