Posted in

Golang Slack钓鱼载荷:伪装为通知Webhook,自动提取Slack API Token并回传至HTTPS C2(含OAuth2 scope权限逃逸)

第一章:Golang Slack … Golang Slack钓鱼载荷:伪装为通知Webhook,自动提取Slack API Token并回传至HTTPS C2(含OAuth2 scope权限逃逸)Read more

Posted in

golang攻击脚本网络层隐身术:TCP Fast Open + QUIC伪装 + DNS-over-HTTPS C2通信(附Wireshark流量特征对比图)

第一章:golang攻击脚本的基 … golang攻击脚本网络层隐身术:TCP Fast Open + QUIC伪装 + DNS-over-HTTPS C2通信(附Wireshark流量特征对比图)Read more