Sinisterly
Extreme Security - Printable Version

+- Sinisterly (https://sinister.li)
+-- Forum: General (https://sinister.li/Forum-General)
+--- Forum: The Lounge (https://sinister.li/Forum-The-Lounge)
+---- Forum: Achievements (https://sinister.li/Forum-Achievements)
+---- Thread: Extreme Security (/Thread-Extreme-Security)



Extreme Security - Killpot - 01-30-2016

So recently someone managed to break Ven0m's security by using OllyDbg to dump all the data we pass through WriteProcessMemory (Which we use to write the dll bytes into the target process). 

So I kicked it into overdrive and in the matter of 3 days have completely educated myself about WinAPI, ManualMapping and a few select WinAPI functions that will prevent any possible leaks in the future.

I plan to make a visual gif of this later on but for now I'll make a step by step of what happens.

  1. Client injects a Native Bootstrap into target process to allow Code Caving for Managed Libraries
  2. Client injects managed library
  3. Bootstrap invokes main method of Managed Library
  4. Managed Library uses System.IO.Pipes to open a memory stream between it and the client
  5. Client transfers the hack data and decryption key etc. to the managed library after it verifies it's identity.
  6. Managed Library Allocates, Code Caves, then uses memcpy to relocate the hack bytes into the target process
  7. Managed Library and Bootstrap are UNLOADED from the target process and all that remains is the hack
It brings a tear to my eye thinking about how secure it is. But I still have more plans to increase security as I still know of a few holes where it could fail. 

But until then ;_;7 you beautiful piece of art.


RE: Extreme Security - Para - 01-30-2016

Interesting, best of luck in not getting cracked again.


RE: Extreme Security - Red_SF - 02-02-2016

Very nice killpot :p If i have time as i have been busy (first time on since the 29th) i could talk to a few people and see if they would be interested in trying to crack into Ven0m and then let me know if they do and how etc so i can forward it back to you. I will PM if i remember to do it.


RE: Extreme Security - Skryptec - 02-02-2016

Very nice man.

This is really interesting actually Tongue


RE: Extreme Security - Killpot - 02-02-2016

(02-02-2016, 10:01 PM)Raymond Reddington Wrote: Very nice killpot :p If i have time as i have been busy (first time on since the 29th) i could talk to a few people and see if they would be interested in trying to crack into Ven0m and then let me know if they do and how etc so i can forward it back to you. I will PM if i remember to do it.

Haha ok, don't have them do it just yet, I have yet to actually complete this, I had it working, but then it didn't work for anyone else because of .Net Framework issues, so I'm just coding it all in C++.


RE: Extreme Security - Red_SF - 02-03-2016

(02-02-2016, 10:20 PM)Killpot Wrote: Haha ok, don't have them do it just yet, I have yet to actually complete this, I had it working, but then it didn't work for anyone else because of .Net Framework issues, so I'm just coding it all in C++.

Ahh okay lmao no worries :p


RE: Extreme Security - z3tz - 02-04-2016

finally nice great job


RE: Extreme Security - ɘxɘ - 02-04-2016

What brings a tear to my eye is you'll always be a better coder than me. :noh: My little @Killpot growing up. I'll still be better at security though, even better than @Sky perhaps?


RE: Extreme Security - Mafia - 02-04-2016

Wow, Killpot you suck at coding!! I knew you couldn't do it Wink joking. Hopefully we can integrate the new system ASAP.


RE: Extreme Security - Killpot - 02-04-2016

(02-04-2016, 02:33 AM)Chill Wrote: Wow, Killpot you suck at coding!! I knew you couldn't do it Wink joking. Hopefully we can integrate the new system ASAP.

Well maybe we'll be able to once you quit jacking my fucking avatar (>.>)