NoGoolag
4.54K subscribers
13.2K photos
6.93K videos
587 files
14.1K links
Live free!

๐Ÿ“ก @NoGoolag

FAQ:
http://t.me/NoGoolag/169

โ˜…Group:
https://t.me/joinchat/nMOOE4YJPDFhZjZk

๐Ÿ“ก @Libreware

๐Ÿ“ก @TakeBackOurTech

๐ŸฆŠ @d3_works

๐Ÿ“š @SaveAlexandria

๐Ÿ’ฏ % satire OSINT
Download Telegram
MERCENARY MAYHEM
A technical analysis of Intellexa's PREDATOR spyware - 2023
https://blog.talosintelligence.com/mercenary-intellexa-predator/

Spyware suppliers take great care to make the final payloads difficult to detect, obtain, analyze and protect against by creating deployment sequences that often require little or no user interaction. The delivery mechanism is usually an exploit chain that can start a zero-click exploit, like #FORCEDENTRY, which is produced by Israeli spyware firm #NSO Group, or with a link that the victim is tricked into clicking (i.e., a โ€œone-clickโ€ exploit), like the one created by the surveillance company Cytrox to deploy their own spyware known as โ€œPREDATOR.โ€ (Note: #Cytrox is owned by Intellexa, which sells the #PREDATOR spyware.)

#spyware #israel
Dissecting TriangleDB, a Triangulation spyware implant | Securelist โ€“ June 2023


Over the years, there have been multiple cases when iOS devices were infected with targeted spyware such as Pegasus, Predator, Reign and others. Often, the process of infecting a device involves launching a chain of different exploits, e.g. for escaping the iMessage sandbox while processing a malicious attachment, and for getting root privileges through a vulnerability in the kernel. Due to this granularity, discovering one exploit in the chain often does not result in retrieving the rest of the chain and obtaining the final spyware payload.In 2021, analysis of iTunes backups helped to discover an attachment containing the FORCEDENTRY exploit. However, during post-exploitation, the malicious code downloaded a payload from a remote server that was not accessible at the time of analysis. Consequently, the analysts lost โ€œthe ability to follow the exploit.โ€

#FORCEDENTRY #Ios #TriangleDB