GhostLock Exploits Windows API to Disrupt File Access

Meet GhostLock, a proof-of-concept that cleverly exploits Windows API to disrupt file access, causing operational downtime without data loss, similar to the impact of ransomware. By manipulating the CreateFileW sharing parameter, GhostLock effectively locks files, leaving other processes in the dark with a sharing violation error.

https://osintsights.com/ghostlock-exploits-windows-api-to-disrupt-file-access?utm_source=mastodon&utm_medium=social

#WindowsApi #Ghostlock #DisruptionTactics #Proofofconcept #EmergingThreats

GhostLock Exploits Windows API to Disrupt File Access

Learn how GhostLock exploits Windows API to disrupt file access and find out how to protect your systems from this new threat, read more now.

OSINTSights
🖥️ Ah, the timeless Windows API, now hailed as the beacon of cross-platform success—because who doesn't love a #security checkpoint masquerading as a browser test? 🙄 Just enable #JavaScript and voilà, you're a cross-platform genius! 😂
https://retrocoding.net/windows-api-is-successful-cross-platform-api #WindowsAPI #crossplatform #humor #technews #HackerNews #ngated

how it feels to program with the win32 api

#win32 #windows #windowsapi #win32api

One Open-source Project Daily

Explorer++ is a lightweight and fast file manager for Windows

https://github.com/derceg/explorerplusplus

#1ospd #opensource #cplusplus #filemanager #windows #windowsapi
GitHub - derceg/explorerplusplus: Explorer++ is a lightweight and fast file manager for Windows

Explorer++ is a lightweight and fast file manager for Windows - derceg/explorerplusplus

GitHub

Windows API Arsenal

Interactive index of Windows APIs for reverse engineers: search, filter by category, and use Chain Analysis mapped to ATT&CK

https://blog.fautl.com/api-list.html

#WindowsAPI #Reversing

Windows API Arsenal - FAUT.L Reverse Engineering Reference

Protecting your devices from information theft-Keylogger detection using Windows API behaviors: https://www.elastic.co/security-labs/protecting-your-devices-from-information-theft-keylogger-protection

#threatdetection #windowsapi #keylogger

Protecting your devices from information theft — Elastic Security Labs

In this article, we will introduce the keylogger and keylogging detection features added this year to Elastic Defend (starting from version 8.12), which is responsible for endpoint protection in Elastic Security.

So in a Windows program, is the WndProc meant to be re-entrant? Documentation I can find doesn't appear to mention it either way...

#WindowsAPI #C++ #Dev
TryHackMe | Cyber Security Training

TryHackMe is a free online platform for learning cyber security, using hands-on exercises and labs, all through your browser!

TryHackMe