screen capture

Winsage
December 11, 2025
ShareX is a versatile screen capture tool that offers various image capture methods, including capturing the entire screen, a specific window, or a designated region, and it can also record videos. It includes powerful editing tools that allow users to add shapes and text, crop areas, incorporate emoji stickers, and blur or pixelate sensitive information. ShareX enables direct uploads to third-party platforms like Google Drive and Imgur, enhancing productivity for visual communication.
Tech Optimizer
December 9, 2025
The author created a custom reverse TCP payload using Python, packaged it into an .elf executable, and tested its stealthiness against antivirus software. The payload included functionalities such as webcam snapshots, keylogging, screen capture, and file transfers. Established tools for obfuscation often triggered antivirus alerts, prompting the author to develop a custom solution to avoid signature-based detection, maintain behavioral control, and gain insights into detection engines. The payload was designed to connect back to the attacker's machine and execute commands, while the listener processed incoming data. After compiling the binary, it was submitted to VirusTotal, where only four out of 64 antivirus engines flagged it, indicating that custom code can bypass many next-gen antivirus products.
Tech Optimizer
November 14, 2025
A recent malware campaign has seen attackers disguising the DarkComet remote access trojan as Bitcoin-related applications to target cryptocurrency users. DarkComet RAT allows attackers to gain extensive control over compromised systems, despite its original creator discontinuing it years ago. The malware features capabilities such as keystroke logging, file theft, webcam surveillance, and remote desktop control, posing significant risks to users. The malicious file was distributed as a compressed RAR archive named “94k BTC wallet.exe,” which helps evade email filters. Security analysts at Point Wild discovered that the malware ensures persistence by copying itself to %AppData%RoamingMSDCSCexplorer.exe and creating a registry key for automatic execution at system startup. It attempts to connect to a command-and-control server at kvejo991.ddns.net over TCP port 1604. The malware injects its payload into legitimate Windows processes to perform keylogging and screen capture while remaining undetected. Captured keystrokes are stored in log files and exfiltrated through the command-and-control channel. Users are advised to avoid downloading cryptocurrency tools from untrusted sources and to keep security software updated.
Winsage
November 13, 2025
Windows 11 includes the Snipping Tool for screen capture, but ShareX offers more advanced features. ShareX allows users to capture the entire screen, a specific window, or a designated region, and it can also record videos. It includes a suite of editing tools that enable users to add shapes and text, crop images, incorporate emoji stickers, and blur or pixelate sensitive information. After editing, ShareX allows users to upload their content to third-party platforms like Google Drive and Imgur directly from the app.
Winsage
November 6, 2025
Windows offers built-in tools for screen recording, specifically the Game Bar and the Snipping Tool. The Game Bar, available in Windows 10 and 11, allows users to record screen activity, activate the microphone, and save recordings in MP4 format. To use the Game Bar, navigate to Settings > Gaming > Captures, and recordings are saved in the user folder under VideosCaptures. Users can start recording by pressing the Record button or using the shortcut Windows key + Alt + R. The Snipping Tool in Windows 11 can also record screens, requiring version 22621.1344 or higher. Users can launch it, define the recording area, and manage audio settings before and during recording. Recorded videos can be edited, saved, or shared directly from the respective tools.
AppWizard
October 24, 2025
Google is introducing a new native color picker tool called "EyeDropper," expected to launch with Android 17. This tool will provide a system-wide API that allows apps to let users select colors from their screens and retrieve their values. Currently, Android does not have a built-in color picker, which EyeDropper aims to address. The EyeDropper API will enable developers to integrate a color picker into their applications easily, streamlining development and reducing app sizes. It operates through a specific Intent (android.intent.action.OPENEYEDROPPER) that opens the EyeDropper app to capture the current screen. Users can select colors using a cursor and apply their choices back to the originating app. The EyeDropper app will also adapt its interface based on connected peripherals, switching between desktop and touchscreen modes. While it has appeared in the Android Canary update, it is not expected to be included in the upcoming Android 16 updates, with the earliest availability likely coinciding with Android 17. There are no official plans for rolling out EyeDropper to existing devices via a Google Play System Update.
Winsage
October 19, 2025
Windows 11 includes the Snipping Tool for screen capture, but ShareX is a more robust alternative. ShareX offers various image capture methods, including full screen, specific windows, and designated regions, as well as video recording capabilities. It features a suite of editing tools that allow users to add shapes and text, crop images, incorporate emoji stickers, and blur or pixelate sensitive information. ShareX also enables direct uploads to platforms like Google Drive and Imgur, enhancing workflow efficiency. The author first used ShareX in 2021 and found it significantly improved productivity.
Tech Optimizer
September 5, 2025
A new cyber threat actor, TAG-150, has emerged since March 2025, utilizing a sophisticated multi-tiered infrastructure and custom malware, including CastleLoader, CastleBot, and CastleRAT. TAG-150's infrastructure consists of four tiers, including command-and-control servers and intermediary layers to obscure operations. The CastleRAT trojan, available in Python and C variants, features advanced capabilities such as stealth evasion, system information collection, and remote surveillance functions. TAG-150 employs phishing techniques and fraudulent domains to compromise victims, achieving a 28.7% infection rate among those who interact with their schemes. The group utilizes privacy-focused services and frequently relocates its infrastructure to evade detection. Experts recommend proactive measures to counteract TAG-150's activities, including blocking identified infrastructure and monitoring for data exfiltration. Indicators of compromise include specific IP addresses associated with CastleLoader.
Search