
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Attack ] State-sponsored hackers stole data from a half-billion accounts, @ yahoo confirms https://threatpost.com/500-million-yahoo-accounts-stolen-by-state-sponsored-hackers/120818/ via @ threatpost
"雅虎承认其 2014 年被黑,5 亿用户数据被国家资助的黑客偷走: https://t.co/gj7R15e3mo http://www.reuters.com/article/us-yahoo-cyber-idUSKCN11S16P "
-
[ Browser ] Just compiled a list of sensitive Windows APIs which MS Edge marks as invalid indirect call targets for CFG: https://gist.github.com/fdfalcon/ba8cbd042752c915ef2e1159917a33f4
" 被 MS Edge 浏览器 CFG 标记为 Invalid Indirect Call 的 API 列表︰ https://t.co/MANvA8pkCX"
-
[ Crypto ] tl;dr video of the sweet32 attack: On the Practical (In-)Security of 64-bit Block Ciphers https://www.cryptologie.net/article/373/tldr-of-the-sweet32-paper-on-the-practical-in-security-of-64-bit-block-ciphers/
"对 64 位分组密码的攻击 video: https://t.co/hsIPsvwSCd"
-
[ Hardware ] Open source CANBadger for car hacking (but gee, what else has a CANBus ?) here: https://gutenshit.github.io/CANBadger/ https://twitter.com/k8em0/status/778911155154776064
" CANBadger - Car Hacking 工具︰ https://t.co/APmOSEvC8O "
-
[ Linux ] Our #KASLR bypass #CCS16 paper online already https://gruss.cc/files/prefetch.pdf @ anders_fogh @ BloodyTangerine @ mlqxyz… https://twitter.com/i/web/status/778944479529021440
" 利用 Prefetch 指令绕过 Linux 内核 KASLR,Paper: https://gruss.cc/files/prefetch.pdf 之前作者公开过一个 PoC 代码: https://github.com/xairy/kaslr-bypass-via-prefetch "
-
[ macOS ] https://blog.flanker017.me/cve-2016-4697-buffer-overrun-in-macos-kernel-driver/ writeup for CVE-2016-4697 credited in macOS 10.12 bulletin
" macOS 驱动 AppleHSSPIHIDDriver _setReportGated 中的一个缓冲区越界访问漏洞(CVE-2016-4697),来自科恩实验室 Flanker: https://t.co/ou9qg2LBPt "
-
[ macOS ] OS X-KVM : Running Mac OS X El Capitan on KVM and QEMU : https://github.com/kholia/OSX-KVM https://t.co/XEbGKzh9gM
"Running Mac OS X 10.11.6 El Capitan on KVM + QEMU: https://t.co/EIsAbLkv7m https://t.co/XEbGKzh9gM"
-
[ Malware ] Malware Evades Detection with Novel Technique https://threatpost.com/malware-evades-detection-with-novel-technique/120787/
"恶意软件逃避检测的新思路: https://t.co/lpvLKKbwWu"
-
[ NetworkDevice ] Porting an exploit to a Netgear Router : http://www.contextis.com/resources/blog/porting-exploits-netgear-wnr2200/ https://t.co/eXQJnGP7jo
" 将一个 x86 Exploit 移植到 Netgear 路由器上︰ https://t.co/99SwNJhnAF "
-
[ OpenSourceProject ] OpenSSL Security Advisory [22 Sep 2016] : https://www.openssl.org/news/secadv/20160922.txt
"OpenSSL 昨天发布漏洞公告,修复多个漏洞: https://t.co/njvnRxLm1i"
-
[ Popular Software ] VMWare vprintproxy.exe heap buffer overflow TrueType font https://bugs.chromium.org/p/project-zero/issues/detail?id=849
"VMWare vprintproxy.exe 在处理 TrueType NAME Table 时发生堆缓冲区溢出漏洞(CVE-2016-7083): https://t.co/vBLW2zPYaL"
-
[ Tools ] SSH-Weak-DH - SSH Weak Diffie-Hellman Group Identification Tool http://www.kitploit.com/2016/09/ssh-weak-dh-ssh-weak-diffie-hellman.html
"为 SSH 服务器检查 DH exchange 配置的工具: https://t.co/PDiiIfCHzy"
-
[ Web Security ] .@ Drupal Patches Three Vulnerabilities in Core Engine: https://threatpost.com/drupal-patches-three-vulnerabilities-in-core-engine/120816/ via @ threatpost
"Drupal 修复了其内核中的三个漏洞,其中两个为严重级别: https://t.co/cqaozP0hHy"
-
[ Windows ] #Windows #Exploit interesting papers https://github.com/enddo/awesome-windows-exploitation/blob/master/README.md
" Awesome Windows Exploitation,关于 Windows 漏洞利用的一些精华文章和工具: https://t.co/fpu5VjHew4"
-
[ WirelessSecurity ] RF Signals - Automating the #Reverse Engineering Process https://github.com/tresacton/dspectrum http://ethicalhacker.io/post/150536211195/rf-signals-automating-the-reverse-engineering #SDR https://t.co/z4uKoWCJg9
"RF Signals 的自动化逆向分析:【video】: https://t.co/igUF9uMB0S ;【paper】: https://t.co/IECnaGZsTg "
-
[ Challenges ] “极棒跨次元CTF”初赛启动在即 | 激战48小时 : http://mp.weixin.qq.com/s?__biz=MzA3Nzc2MjIxOA==&mid=2650316727&idx=1&sn=9042136b5e48cf9d0aa5ac5aa0ee96d0&scene=1&srcid=09235b2mbDEbbFlZRcPQ3OCP “极棒跨次元CTF”已经于9月15日结束报名,初赛在9月23日晚8点正式开启。经过48小时的鏖战之后,80支参赛战队中只有四支强队会出现在极棒上海站的现场,10月24日进行终极对决。至于这次初赛结果,GeekPwn会在下周进行公布,在此预祝(上墙)参赛战队享受这场CTF探索之旅