home.social

#cortexxdr — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cortexxdr, aggregated by home.social.

  1. nice

    "Identifying the algorithm, key, and IV was relatively straightforward with assistance from an LLM."

    A hardcoded string is present in the binary, but only a portion of it is used as the key (maybe this is supposed to be a obfuscation technique): :ablobspin: :ah:
    👇
    labs.infoguard.ch/posts/decryp

    #cortexxdr #cyberveille

  2. Tiens, jolie démo et trouvaille!

    l'équipe redteam d' Infoguard 🫕 a décortiqué le système de communication pour la prise de contrôle à distance de l'EDR de Palo Cortex pour la détourner en mode Living-off-the-Land
    👇
    labs.infoguard.ch/posts/abusin

    .
    .
    .
    .
    The only hurdle is that Cortex has default rules to block and detect when its own processes are started by a non-standard parent process
    Bypasses for these rules will not be published in this post. 😈 😢

    #CyberVeille #CortexXDR