TGTGInsighttelegram intelligenceLIVE / telegram public index
Back to channels
hackspace avatar

TGINSIGHT CHAT

hackspace

@hackspace

Technologies

hackspace

Subscribers161Current channel subscribers
Tracked posts1,013Indexed post count
Recent reach82Sum of recent post views
Recent posts

Recent posts

Tag: #turla · 1 posts

当前筛选 #turla清除筛选

Posted Jan 15

This blog post provides an in-depth analysis of #Turla's #Kazuar v3 loader and how it tries to slip past modern defenses: • Sideloading via MFC satellite DLLs • Control flow redirection trick (+ POC) • Patchless ETW and AMSI bypasses (+ POC) • Extensive COM usage for registry, file and folder operations (+ partial POC) • Strings encryption (+ IDAPython decryption script) • Including IOCs and Yara rules https://r136a1.dev/2026/01/14/command-and-evade-turlas-kazuar-v3-loader/

82 views