
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Browser ] New challenge "The XSS Metaphor" by @ kinugawamasato @ filedescriptor & me is out. Have a great and productive week :) https://html5sec.org/minichallenges/5
" HTML5 小挑战 5 - The XSS Metaphor : https://t.co/Vyj6bciLKn"
-
[ Defend ] Cheaply blocking APT & #malware like a boss: just spawn fake process that they fear... https://gist.github.com/x0rz/e8b36fee33b87aa7e4e5dfd4c0cfc1a6 https://t.co/uy5ccagQdD
"对抗 APT 和恶意软件最廉价的方式 - 起一个他们害怕的假进程名字,如 idag.exe,ollydbg.exe 等: https://t.co/deQXApAFft https://t.co/uy5ccagQdD"
-
[ Linux ] Slides from my @ BSidesNOLA talk now available at http://www.deer-run.com/~hal/DontKnowJack-bash_history.pdf
" 'Jack,你并不了解 bash_history' - 来自 BSidesNOLA 会议的演讲: https://t.co/xQR7zTTg1w"
-
[ Linux ] Synchronization primitives in the Linux kernel (Part 2) - Queued Spinlocks: https://github.com/0xAX/linux-insides/blob/master/SyncPrim/sync-2.md ,P1 : https://0xax.gitbooks.io/linux-insides/content/SyncPrim/sync-1.html cc: @ 0xAX
"Linux 内核同步原语之排队自旋锁, Part 2: https://t.co/s9cN5lF7aA Part 1 : https://t.co/kntK6Gwpp6 "
-
[ Linux ] Guide to building a Linux router from scratch : http://arstechnica.com/gadgets/2016/04/the-ars-guide-to-building-a-linux-router-from-scratch/
"从零开始构建一个 Linux 路由器 ︰ https://t.co/ky6612CwGN "
-
[ MalwareAnalysis ] New article on my blog (after more than 2 years of inactivity) ! http://aassfxxx.infos.st/article26/breaking-cerber-strings-obfuscation-with-python-and-radare2 (yeah @ radareorg bindings rocks :D)
"反混淆 Cerber 勒索软件加密的字符串: https://t.co/jRUnJgnYOA "
-
[ Network ] MaSSHandra 2.3.1 for Windows, Linux and Mac OSX is now available. Get it now at http://www.masshandra.com https://t.co/jwkADG0Bvh
"免费的 3D 网络拓扑图编辑工具 MaSSHandra 更新 2.3.1 版本,该工具支持 Windows、Linux、OS X: https://t.co/kx5lyQ3inw https://t.co/jwkADG0Bvh"
-
[ Network ] Tools to detect BGP prefix hijacking & other routing anomalies https://labs.ripe.net/Members/guillaume_valadon/tools-to-parse-bgp-archives
"可以用来检测 BGP 前缀劫持和其他路由异常的工具: https://t.co/8MVPWBSIrl"
-
[ Operating System ] OS Development Series: http://www.brokenthorn.com/Resources/OSDevIndex.html - very nice!
"BrokenThorn 公司的操作系统开发系列教程 ︰ https://t.co/qSxh0ER4Rd "
-
[ Others ] The Secret Life of ActionScript : http://infiltratecon.com/archives/The%20Secret%20Life%20of%20ActionScript_Natalie_Silvanovich.pdf (Slides) cc: @ natashenka
"ActionScript 的秘密生活 , 来自 Project Zero Natalie Silvanovich 在 Infiltrate 2016 会议的演讲︰ https://t.co/4MdJlXt09t "
-
[ Others ] A Python Interpreter Written in Python : http://aosabook.org/en/500L/pages/a-python-interpreter-written-in-python.html
"Byterun - 用 Python 语言写的 Python 解释器 ︰ https://t.co/K3lcw8WxFQ "
-
[ Pentest ] Compromising Domain Admin in VOIP Pentest : http://c0d3xpl0it.blogspot.in/2016/04/compromising-domain-admin-in-voip.html cc: @ c0d3xpl0it
"在内网 VOIP 渗透测试时,攻破域控制器, Blog︰ https://t.co/oJrJcSQsxf "
-
[ Pentest ] Meterpreter stage AV/IDS evasion with powershell : https://arno0x0x.wordpress.com/2016/04/13/meterpreter-av-ids-evasion-powershell/
"用 PowerShell 实现逃逸反病毒软件、IDS 的检测: https://t.co/Q4eft2sk7a"
-
[ ReverseEngineering ] Swift Reversing : http://infiltratecon.com/archives/swift_Ryan_Stortz.pdf (Slides)
"Swift 语言逆向, 来自 Infiltrate 2016 会议 ︰ https://t.co/pIP2hOxgMc "
-
[ ReverseEngineering ] X64 Deep Dive : http://www.codemachine.com/article_x64deepdive.html
"X64 Deep Dive - 来自 Code Machine 的文章,介绍 x64 代码执行的一些关键点:编译器优化、异常处理、参数传递和获取︰ https://t.co/he8zqrAZJZ"
-
[ Tools ] GitHub - Gregwar/fatcat: FAT filesystems explore, extract, repair, and forensic tool https://github.com/Gregwar/fatcat
"fatcat - FAT 文件系统查看、提取、修复、审计工具, Github Repo: https://t.co/Q0wUF8zTwG"
-
[ Tools ] Decrypter Available for AutoLocky, Locky Ransomware Copycat : https://decrypter.emsisoft.com/autolocky
"AutoLocky 勒索软件的解密工具下载 ︰ https://t.co/Kesu1Cn2u0"
-
[ Windows ] MS published an article about Windows & VAX VMS father http://news.microsoft.com/features/the-engineers-engineer-computer-industry-luminaries-salute-dave-cutlers-five-decade-long-quest-for-quality/
"微软发表了一篇文章:工程师的工程师 - Dave Cutler 对品质执着追求的 50 年, Dave Cutler 是 VMS 和 Windows NT 的首席设计师: https://t.co/DS5uTzlsU5"
-
[ WirelessSecurity ] #BSidesCbr slide handouts are here https://drive.google.com/open?id=0BzKQjeC0jfmDaEhrUTQzc2JYdTg (warning nearly 30MB).
"来自 Stingrays 的威胁, Stingrays 是一种手机信号拦截器, 来自 BSidesCbr 会议: https://t.co/iBu7PetrpA。"