HackTheBox Spooktrol 渗透实战:从任意文件读取到接管 C2
本文记录了 HackTheBox Spooktrol 靶机的一次完整渗透过程。攻击从 Web 服务中的目录穿越漏洞开始,通过任意文件读取获取 implant 可执行文件,并结合流量分析、Caido 代理劫持、Match & Replace 自动替换、Ghidra 静态逆向与 GDB 动态调试,逐步还原 implant 与 C2 Server 之间的任务通信机制。随后,利用文件上传能力写入 SSH
AI-generated phishing campaigns are rapidly evolving beyond traditional malware delivery, shifting the battleground directly into the web browser where attackers can hijack active sessions, bypass multi-factor authentication (MFA), and evade conventional endpoint security controls. This emerging threat model is forcing security operations centers (SOCs) to rethink how phishing attacks are detected, investigated, and contained, as […]
The post AI-Generated Phishing No Longer Needs Malware: It Can Steal Your Session Inside the Browser appeared first on Cyber Security News.