<feed xmlns="http://www.w3.org/2005/Atom"> <id>https://d3ext.github.io/</id><title>D3Ext</title><subtitle>My own blog.</subtitle> <updated>2024-11-20T14:47:40+00:00</updated> <author> <name>D3Ext</name> <uri>https://d3ext.github.io/</uri> </author><link rel="self" type="application/atom+xml" href="https://d3ext.github.io/feed.xml"/><link rel="alternate" type="text/html" hreflang="en" href="https://d3ext.github.io/"/> <generator uri="https://jekyllrb.com/" version="4.3.4">Jekyll</generator> <rights> © 2024 D3Ext </rights> <icon>/assets/img/favicons/favicon.ico</icon> <logo>/assets/img/favicons/favicon-96x96.png</logo> <entry><title>Course Review - HackTheBox Bug Bounty Hunter</title><link href="https://d3ext.github.io/posts/htb-bug-bounty-hunter/" rel="alternate" type="text/html" title="Course Review - HackTheBox Bug Bounty Hunter" /><published>2024-11-20T00:00:00+00:00</published> <updated>2024-11-20T14:44:28+00:00</updated> <id>https://d3ext.github.io/posts/htb-bug-bounty-hunter/</id> <content src="https://d3ext.github.io/posts/htb-bug-bounty-hunter/" /> <author> <name>D3Ext</name> </author> <summary>Introduction Hi there! Today I bring you a review of a the Bug Bounty Hunter course offered by HackTheBox (HTB), which I have recently completed. I will discuss its main aspects, price and subscriptions, its content, the certification, my personal opinion, if it’s worth or not, and more. Having said so, let’s start with this review. Course main aspects First of all, this is a course aimed t...</summary> </entry> <entry><title>Malware Development 17 - Introduction to offensive Nim</title><link href="https://d3ext.github.io/posts/malware-dev-17/" rel="alternate" type="text/html" title="Malware Development 17 - Introduction to offensive Nim" /><published>2024-10-05T00:00:00+00:00</published> <updated>2024-10-05T10:25:59+00:00</updated> <id>https://d3ext.github.io/posts/malware-dev-17/</id> <content src="https://d3ext.github.io/posts/malware-dev-17/" /> <author> <name>D3Ext</name> </author> <category term="Malware Development" /> <summary>Introduction Hi there! Some days back I thought about learning a new language that could was powerful, lightweight, modern and easy to learn. Finally, I decided that Nim was the language I was looking for. As the official page says: Nim is a statically typed compiled systems programming language. It combines successful concepts from mature languages like Python, Ada and Modula. It’s able to g...</summary> </entry> <entry><title>Malware Development 16 - Process Hollowing (Golang)</title><link href="https://d3ext.github.io/posts/malware-dev-16/" rel="alternate" type="text/html" title="Malware Development 16 - Process Hollowing (Golang)" /><published>2024-10-01T00:00:00+00:00</published> <updated>2024-10-01T00:00:00+00:00</updated> <id>https://d3ext.github.io/posts/malware-dev-16/</id> <content src="https://d3ext.github.io/posts/malware-dev-16/" /> <author> <name>D3Ext</name> </author> <category term="Malware Development" /> <summary>Introduction Hi there! After almost one year since last post, today we will be discussing a well-known technique used by Red Teamers and malware developers to make shellcode injection a little bit more OPSEC, this technique is called Process Hollowing. And, in a few words, it is used to replace the executable section of a legitimate process with malicious code, generally a PE. Explanation D...</summary> </entry> <entry><title>Malware Development 15 - Using Hooka and Maldev for Malware Dev (Golang)</title><link href="https://d3ext.github.io/posts/malware-dev-15/" rel="alternate" type="text/html" title="Malware Development 15 - Using Hooka and Maldev for Malware Dev (Golang)" /><published>2023-10-13T00:00:00+00:00</published> <updated>2023-10-13T00:00:00+00:00</updated> <id>https://d3ext.github.io/posts/malware-dev-15/</id> <content src="https://d3ext.github.io/posts/malware-dev-15/" /> <author> <name>D3Ext</name> </author> <category term="Malware Development" /> <summary>Introduction Hi there! This post is definitely much more special for me since today we’ll use two different tools/projects I’ve coded and are published on my Github, to develop malware in an easier way. If you want to check them out before reading the post, this are the official repositories: Hooka and maldev First Example In this first part of the post, we are going to create a shellcode l...</summary> </entry> <entry><title>Malware Development 14 - UAC bypass privilege escalation (Golang)</title><link href="https://d3ext.github.io/posts/malware-dev-14/" rel="alternate" type="text/html" title="Malware Development 14 - UAC bypass privilege escalation (Golang)" /><published>2023-09-16T00:00:00+00:00</published> <updated>2023-09-16T00:00:00+00:00</updated> <id>https://d3ext.github.io/posts/malware-dev-14/</id> <content src="https://d3ext.github.io/posts/malware-dev-14/" /> <author> <name>D3Ext</name> </author> <category term="Malware Development" /> <summary>Introduction Hi hackers! In this posts we’ll see how threat actors can approach default Windows misconfigurations to elevate from common user to Administrator privileges by bypassing UAC Only for educational purposes Explanation First of all, what is UAC? User Account Control is a security feature implemented in various versions of Windows, starting with Windows Vista and continuing in...</summary> </entry> </feed>
