腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ APT ] 使用 Bare Metal 分析 APT28 使用的沙盒逃逸技术: https://www.joesecurity.org/blog/5948900200243450848
-
[ APT ] AREA41 - Lazarus 组织针对金融机构的攻击剖析: https://www.slideshare.net/SeongsuPark8/area41-anatomy-of-attacks-aimed-at-financial-sector-by-the-lazarus-group-104315358/1
-
[ Conference ] Openwall 开放 2001 to 2018 年间的演讲议题: http://www.openwall.com/presentations/
-
[ Hardware ] 发现和绘制使用USB设备创建的隐藏网络: https://www.exploit-db.com/docs/english/44947-discovering-and-plotting-hidden-networks-created-with-usb-devices.pdf
-
[ Hardware ] Intel SGX 技术总览 Part 1 - SGX Internals: https://blog.quarkslab.com/overview-of-intel-sgx-part-1-sgx-internals.html
-
[ iOS ] multi_path-with-remount - iOS 11.3.X multi_path 漏洞利用: https://github.com/razmashat/multi_path-with-remount
-
[ Language ] 讨论 .NET 的 JIT 和 CLR 两个组件之间的相互作用,它们如何协同工作: http://mattwarren.org/2018/07/05/.NET-JIT-and-CLR-Joined-at-the-Hip/
-
-
[ MachineLearning ] 神经网络的对抗性重编程(paper): https://arxiv.org/pdf/1806.11146.pdf
-
[ ReverseEngineering ] 佳能 DSLR 蓝牙远程协议逆向工程: https://iandouglasscott.com/2018/07/04/canon-dslr-bluetooth-remote-protocol/
-
[ Rootkit ] 从错误内存转储中检测 rootkit: https://exatrack.com/public/Memdump_NDH_2018.pdf
-
[ Tools ] AWS 安全检测相关的项目列表: https://github.com/stuhirst/awssecurity/blob/master/arsenal.md
-
[ Tools ] RemoteRecon - 后渗透测试工具: https://github.com/xorrior/RemoteRecon
-
[ Web Security ] 比特币赌博网站 bustabit 价值 $12,000 的点击劫持、XSS以及拒绝服务漏洞详情: https://samcurry.net/the-12000-intersection-between-clickjacking-xss-and-denial-of-service/
-
[ Web Security ] OWASP AppSecEU 2018 - 攻击"现代" Web技术: https://www.slideshare.net/fransrosen/attacking-modern-web-technologies
-
-
[ Firmware ] An Attempt to port linuxboot to Dell Latitude E7240,将 LinuxBoot 移植到 Dell Latitude E7240: https://github.com/hardenedlinux/Debian-GNU-Linux-Profiles/blob/master/docs/hardened_boot/linuxboot-attempt.md
-
[ Linux ] 使用 Linux 容器快速搭建测试实验环境: https://www.trustedsec.com/2018/07/building-a-quick-lab-environment-with-linux-containers/
-
[ MalwareAnalysis ] 我们是如何发现感染数以万计 Fortnite 玩家的病毒的: https://blog.rainway.io/how-we-discovered-a-virus-infecting-tens-of-thousands-of-fortnite-players-e5dd6fe1ff55
-
[ MalwareAnalysis ] Rakhni 木马做了诸多更新,并且加入了加密货币挖矿的功能: https://securelist.com/to-crypt-or-to-mine-that-is-the-question/86307/
-
-
-