
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Browser ] Chrome Web Authentication API 将支持 Touch ID 作为平台身份验证器: https://www.chromestatus.com/feature/5962264427364352
-
[ Browser ] Exploiting unknown browsers and objects,作者通过自己的工具,去测试了一些未知的浏览器引擎,研究了跨域相关的问题: https://portswigger.net/kb/papers/exploitingunknownbrowsers.pdf
-
[ Debug ] 执行自动化调试任务的 PyKD 库介绍系列文章,Part 1: https://www.zerodayinitiative.com/blog/2018/7/19/mindshare-an-introduction-to-pykd
-
[ Linux ] Linux 提权命令指南: https://guif.re/linuxeop
-
[ macOS ] macOS 上的攻击行为检测 Part 2: https://posts.specterops.io/hunting-for-bad-apples-part-2-6f2d01b1f7d3
-
[ MalwareAnalysis ] 卡巴斯基对 macOS 木马 Calisto 的分析: https://securelist.com/calisto-trojan-for-macos/86543/
-
[ MalwareAnalysis ] 逆向分析 marveloptics.com 上的恶意 JS 脚本: https://blog.jse.li/posts/marveloptics-malware/
-
[ MalwareAnalysis ] PaloAlto Unit 42 团队发现新的 Mirai 和 Gafgyt IoT/Linux 僵尸网络活动: https://researchcenter.paloaltonetworks.com/2018/07/unit42-finds-new-mirai-gafgyt-iotlinux-botnet-campaigns/
-
[ Popular Software ] CVE-2018-2894 WebLogic 未授权访问致任意文件上传/RCE漏洞检查脚本 : https://github.com/LandGrey/CVE-2018-2894/
-
[ Tools ] ISO7816Analyzer - 7816 通讯的协议解析插件: https://github.com/nezza/ISO7816Analyzer
-
[ Tools ] dotnet-core-assembly-loading - 使用 .NET Core 加载程序集的示例项目: https://github.com/richlander/dotnet-core-assembly-loading/blob/master/src/gutenapp/gutenapp/Program.cs
-
[ Tools ] JS Sniffer - 偷取电子商务数据的框架: https://www.volexity.com/blog/2018/07/19/js-sniffer-e-commerce-data-theft-made-easy/
-
[ Tools ] KdExploitMe - Windows 内核驱动漏洞利用练习项目: https://github.com/clymb3r/KdExploitMe
-
[ Tools ] Robber - 用于查找易受 DLL 劫持的可执行文件的工具: https://github.com/MojtabaTajik/Robber
-
[ Vulnerability ] RSA Archer 多漏洞披露(CVE-2018-11059、CVE-2018-11060): http://seclists.org/fulldisclosure/2018/Jul/69
-
[ Vulnerability ] Microsoft Translator Hub 自动语言翻译系统越权删除任意项目漏洞披露: https://haiderm.com/how-i-was-able-to-delete-13k-microsoft-translator-projects/
-
[ Web Security ] Google Sites SSRF 漏洞详情披露,利用该漏洞成功访问到 Google 生产网络: https://opnsec.com/2018/07/into-the-borg-ssrf-inside-google-production-network/
-
[ Windows ] Windows 10 预览版 17713+ 中 Microsoft Edge 引入新的组策略和 MDM 配置,允许IT管理员管理全屏模式、打印、收藏夹栏、历史记录、新标签页、扩展等: https://docs.microsoft.com/en-us/microsoft-edge/deploy/new-policies