Some fun lately with custom payloads

Doing some testing on new AV. Been reading a lot about custom payloads. I now many of these are old, but the ideas may still be new to others.
Here are some of the more recent reads ......


http://e-spohn.com/blog/2012/08/02/pe-crypters-hyperion/

https://www.christophertruncer.com/bypass-antivirus-with-meterpreter-as-the-payload-hyperion-fun/

http://www.exploit-monday.com/2011/11/powersyringe-powershell-based-codedll.html

http://colesec.inventedtheinternet.com/obfuscating-meterpreter-payloads-with-veil/

http://colesec.inventedtheinternet.com/hacking-with-powershell-powersploit-and-invoke-shellcode/

https://github.com/rapid7/metasploit-framework/wiki/How-payloads-work

https://www.citadelo.com/en/how-we-bypassed-nod32-and-hacked-a-paranoid-customer-2/


Course Review: Ethical Hacking For Beginners

course:
https://stackskills.com/p/ethical-hacking-for-beginners

Overall verdict: Stay Away.
Better course for the money, adn this is not that expensive, so please let that tell you something.


Basic lectures are wrong in this course. The information presented about traceroute and DNS is just plain wrong in this course. Everything else is not that much different form similar coursework available from other sources. My suggestion is to look elsewhere.

Avanti Markets Breach

http://www.avantimarkets.com/notice-of-data-breach/

Etheream heist

Hacker Uses A Simple Trick to Steal $7 Million Worth of Ethereum Within 3 Minutes http://thehackernews.com/2017/07/ethereum-cryptocurrency-heist.html

Anthem Breach Settlement

Anthem Agrees to Settle 2015 Data Breach for $115 Million https://threatpost.com/anthem-agrees-to-settle-2015-data-breach-for-115-million/126527/