
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Browser ] UWP 和 Edge 的 Localhost 网络隔离,来自 James Forshaw: https://tyranidslair.blogspot.com/2018/07/uwp-localhost-network-isolation-and-edge.html
-
[ Forensics ] taskmgr.exe 的命令行参数研究: http://www.hexacorn.com/blog/2018/07/22/taskmgr-exe-slashing-numbers/
-
[ Fuzzing ] 对 XML 格式的 Fuzz 测试: http://www.agarri.fr/docs/XML_Fuzzing-NullCon2017-PUBLIC.pdf
-
[ Industry News ] 攻击者利用 Huawei HG532 路由器的 CVE-2017-17215 漏洞一天内控制了超过 18000 台路由: https://www.bleepingcomputer.com/news/security/router-crapfest-malware-author-builds-18-000-strong-botnet-in-a-day/
-
[ iOS ] 在 Qemu 中成功启动 iOS 内核: https://worthdoingbadly.com/xnuqemu2/ https://worthdoingbadly.com/xnuqemu/
-
[ Malware ] 攻击者使用 GoogleUserContent 免费托管隐藏了恶意软件的图像: https://blog.sucuri.net/2018/07/hiding-malware-inside-images-on-googleusercontent.html
-
[ MalwareAnalysis ] 使用标准 Linux 工具进行恶意文档分析: https://isc.sans.edu/diary/23900
-
[ Others ] All Your GPS Are Belong To Us : Towards Stealthy Manipulation of Road Navigation Systems,针对地面导航系统的秘密操控 : https://people.cs.vt.edu/gangwang/sec18-gps.pdf
-
[ Others ] 深入理解 .NET Core 平台的内部实现系列文章: Part 1: https://mijailovic.net/2018/06/06/sha256-armv8/ Part 2: https://mijailovic.net/2018/06/18/aes-armv8/ Part 3: https://mijailovic.net/2018/07/05/generated-code/
-
[ Tools ] Photon - 轻量级 Web 爬虫,从网站中提取 URL、文件、端点等信息: https://github.com/s0md3v/Photon
-
[ Windows ] awesome-windows-kernel-security-development - 优秀 Windows 内核安全方向资源收集仓库: https://github.com/ExpLife0011/awesome-windows-kernel-security-development
-
-
-
[ Pentest ] 利用 DOCX 文档远程模板注入执行宏: http://blog.redxorblue.com/2018/07/executing-macros-from-docx-with-remote.html
-
-
-
-
[ Vulnerability ] 微软新发布了一组安装包,而这些新程序是使用有漏洞的老编译环境编译的,导致程序本身会受到 dll 劫持漏洞的影响: http://seclists.org/fulldisclosure/2018/Jul/70
-
-
-
[ Web Security ] 低严重性漏洞到高严重性漏洞的转变 - Self-XSS & CSRF & OAuth: https://www.noob.ninja/2018/07/escalating-low-severity-bugs-to-high.html