腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] 在 Android 浏览器中滥用 JavaScript 接口用法: https://speakerdeck.com/rotlogix/portals-abusing-javascript-interface-usage-in-android-browsers
-
[ IoTDevice ] 设备编程 wiki 发布,包含对操作 EPROMs,PALs 以及其它芯片的介绍: http://proghq.org/wiki/Main_Page
-
[ MalwareAnalysis ] 反病毒事件分析备忘单 v1.2: https://www.nextron-systems.com/2018/05/12/new-antivirus-event-analysis-cheat-sheet-version-1-2/
-
[ Popular Software ] Electron 的 nodeIntegration 属性修改限制被绕过导致的远程代码执行漏洞披露(CVE-2018-1000136): https://www.trustwave.com/Resources/SpiderLabs-Blog/CVE-2018-1000136---Electron-nodeIntegration-Bypass/
-
[ ReverseEngineering ] 一份逆向工程入门指南: https://puri.sm/posts/primer-to-reverse-engineering/
-
[ Tools ] Multiverse - 非启发式的静态二进制重写器: https://github.com/utds3lab/multiverse
-
[ Tools ] Debian-GNU-Linux-Profiles - Debian GNU/Linux 系统上的服务搭建手册: https://github.com/hardenedlinux/Debian-GNU-Linux-Profiles
-
-