腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ MalwareAnalysis ] Proofpoint 研究员发现首起使用假字体来逃避钓鱼检测的网络钓鱼活动: https://www.proofpoint.com/us/threat-insight/post/phishing-template-uses-fake-fonts-decode-content-and-evade-detection
-
[ ReverseEngineering ] 塔防游戏 Realm Defense by Babeltime 的爱好者逆向游戏挖掘漏洞的详细记录: https://medium.com/@xplodwild/turning-the-frustration-of-a-mobile-game-into-a-reverse-engineering-training-a9887043efdf
-
[ Tools ] dsym_obfuscate - 一款加密动态符号表,并在运行时恢复的工具 : https://github.com/elfmaster/dsym_obfuscate
-
[ Windows ] 针对 Windows 内置功能中可能导致恶意代码持久化的介绍: http://www.hexacorn.com/blog/2019/01/05/beyond-good-ol-run-key-part-100/