Installation Guide for the Latest Weekly Version of Kali Linux and VPN Connection to Hack The Box

Installation Guide for the Latest Weekly Version of Kali Linux and VPN Connection to Hack The Box

Installation Guide for the Latest Weekly Version of Kali Linux and VPN Connection to Hack The Box Kali Linux is maintained and released by OffSec, serving as the core platform for penetration testing and cybersecurity training. Compared to the regular stable version, the Weekly version synchronizes the latest tool updates and security fixes in the … Read more

Comprehensive Guide to Kali Linux Penetration Testing: From OWASP Top 10 to Enterprise-Level Red Team Practices

Comprehensive Guide to Kali Linux Penetration Testing: From OWASP Top 10 to Enterprise-Level Red Team Practices

1. Core Value and System Features of Kali Linux Penetration Testing Kali Linux, as the benchmark operating system in the field of penetration testing, demonstrates its core value in three aspects: tool integration, coverage of testing scenarios, and legal compliance. The system comes pre-installed with over 600 specialized tools, covering 12 categories including information gathering, … Read more

New Fileless VShell Attack on Linux Systems

New Fileless VShell Attack on Linux Systems

Recently, a new type of fileless attack on Linux systems has emerged, which we have named “VShell“. The attackers employ fileless attack techniques, utilizing carefully crafted RAR filenames to trigger malicious code without explicit user execution. This type of attack does not rely on traditional software vulnerabilities but exploits common filename handling oversights in Linux … Read more

MultiFuzz: A Dense Retrieval-based Multi-Agent System for Network Protocol Fuzzing

MultiFuzz: A Dense Retrieval-based Multi-Agent System for Network Protocol Fuzzing

Basic Information Original Title: MultiFuzz: A Dense Retrieval-based Multi-Agent System for Network Protocol Fuzzing Original Authors: Youssef Maklad, Fares Wael, Ali Hamdi, Wael Elsersy, Khaled Shaban Affiliations: MSA University, Giza, Egypt (first four authors) Qatar University, Doha, Qatar (Khaled Shaban) Keywords: Protocol Fuzzing, Cybersecurity, Finite State Machine, Reverse Engineering, Large Language Models, Multi-Agent Systems, Dense … Read more

Cybersecurity: Safeguarding Home Security in the Era of Smart Homes

Cybersecurity: Safeguarding Home Security in the Era of Smart Homes

Click the blue text to follow us Smart Home Era Building a Strong Network Security Defense for Homes From smart speakers to smart cameras, numerous devices are connected to the internet, bringing convenience to life, but also introducing security risks. Frequent issues such as hacking and privacy breaches, how can we protect our home network … Read more

Top 20 Kali Linux Tools in 2021

Top 20 Kali Linux Tools in 2021

The 20 Kali Linux penetration tools discussed in this article are selected based on the <span>most commonly used</span> and <span>most favored</span> criteria. Therefore, some excellent tools may not be included. If you have better suggestions, please leave a comment for us to make corrections! Kali-Linux-tools Information Gathering Tools 01 traceroute <span>traceroute</span> is a tool used … Read more

The Traps in Filenames: A New Type of Linux Malware Attack Chain Exposed

The Traps in Filenames: A New Type of Linux Malware Attack Chain Exposed

As digital life becomes increasingly prevalent, attackers are continuously innovating their methods. Recently, cybersecurity researchers disclosed a highly covert new attack chain that delivers the open-source backdoor program VShell through phishing emails targeting female consumers in China, showcasing yet another evolution in the propagation of Linux malware. 1. Hidden Secrets in Filenames Researchers at Trellix … Read more

The Roots of the Crisis in Security Operations Centers (SOC) and Solutions for Breakthrough

The Roots of the Crisis in Security Operations Centers (SOC) and Solutions for Breakthrough

Despite major enterprises investing millions of dollars or RMB in Security Operations Centers (SOC) and advanced detection technologies, data breaches remain frequent and are on the rise. Based on practical experience, currently, only about 5% of SOCs can effectively respond to increasingly complex identity-based attacks. This is not a technical flaw, but a paradigm issue—we … Read more

The IoT Under Siege: The Resurgence of the Mirai-Based Gayfemboy Botnet

The IoT Under Siege: The Resurgence of the Mirai-Based Gayfemboy Botnet

Researchers at FortiGuard Labs have tracked a new wave of activity from the Gayfemboy botnet. This malware exploits known vulnerabilities in DrayTek, TP-Link, Raisecom, and Cisco devices, showcasing evolved attack strategies and a resurgence in activity. The Gayfemboy botnet was first discovered in February 2024, leveraging not only the code from the basic version of … Read more

New Standards for IoT Home Appliance Cybersecurity Released

New Standards for IoT Home Appliance Cybersecurity Released

New Standards for IoT Home Appliance Cybersecurity Released According to China Quality News, recently, the IoT Home Appliance Cybersecurity Standards and Certification Rules were officially released, drafted by the China Quality Certification Center, the China Household Electrical Appliances Research Institute, the Fifth Research Institute of the Ministry of Industry and Information Technology, the Jiangsu Electronic … Read more