腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Attrack ] Sandworm Team and the Ukrainian Power Authority Attacks http://www.isightpartners.com/2016/01/ukraine-and-sandworm-team/
"Sandworm 团队与乌克兰电力攻击事件 https://t.co/n5Og7AEMD6"
-
[ Forensics ] Windows Registry Auditing Logging Cheat Sheet : http://static1.squarespace.com/static/552092d5e4b0661088167e5c/t/568e98f1c21b869cfadbf3e7/1452185841782/Windows+Registry+Auditing+Cheat+Sheet+ver+1.1+Jan+2016.pdf (pdf)
"Windows 注册表审计备忘单: (PDF) https://t.co/1H3Xdg6EgV"
-
[ Others ] An Introduction to Writing Systems & Unicode : https://r12a.github.io/scripts/tutorial/index
"书写系统与 Unicode 介绍: https://t.co/lNs4lMSUN1"
-
[ Others ] Insecurity Cameras and Mobile Apps: Surveillance or Exposure? - https://www.nowsecure.com/blog/2016/01/06/insecurity-cameras-and-mobile-apps-surveillance-or-exposure/index.html
"不安全的照相机和手机应用: 监视或暴露? https://t.co/qXrAHR1278"
-
[ Others ] Slides of #realworldcrypto talk "An update on the backdoor in Juniper’s ScreenOS" "https://cseweb.ucsd.edu/~hovav/dist/rwc16.pdf [PDF] https://t.co/KAGQhJpQC6
"Juniper ScreenOS 的后门更新(PDF),介绍 Juniper 设备中登陆和随机数加密相关的后门问题: https://t.co/VFtGIrj2Xq https://t.co/KAGQhJpQC6"
-
[ Others ] [BLOG] Clang Hardening Cheat Sheet: discover clang and ld's options to harden your binaries http://blog.quarkslab.com/clang-hardening-cheat-sheet.html
"Clang 安全加固手册: https://t.co/vZnU1Ajb8i"
-
[ Others ] Getting Remote Code Exec and Remote Enrollment on FingerTec Biometric Access Control Devices : https://digital-panther.com/2016/01/fingertec-rce
"在 BioScrypt V-Flex 生物识别读卡器上实现远程代码执行 : https://t.co/MFGvrJYeQI"
-
[ Popular Software ] VMware issues patch for guest privilege escalation flaw http://www.vmware.com/security/advisories/VMSA-2016-0001.html#sthash.2rpN8XTR.dp https://t.co/rfaZtqjJg5
"VMware 修复了一个 Guest 提权漏洞(CVE-2015-6933): https://t.co/j0cwovPAqd https://t.co/rfaZtqjJg5 "
-
[ Tools ] PyAna - Analyzing the Windows shellcode : https://github.com/PyAna/PyAna
"PyAna - 基于 Unicorn 引擎,分析 Shellcode 的工具: https://t.co/NjafKLn88F"
-
[ Windows ] Confirmed: How to stop Windows 10 forcing itself onto your PC http://m.theregister.co.uk/2016/01/08/windows_10_upgrade_blocker/
"如何阻止 Windows 7/8 系统中强制推送 Windows 10 https://t.co/HVIlURdc6U"
-
[ Windows ] DLL Injection (Part 1): SetWindowsHookEx : https://warroom.securestate.com/dll-injection-part-1-setwindowshookex/ , (Part 2): Create Remote Thread and More : https://warroom.securestate.com/dll-injection-part-2-createremotethread-and-more/
"DLL 注入 Part 1: SetWindowsHookEx : https://t.co/VdmtibyXKe Part 2: 创建远程线程 : https://t.co/i1bNJX1VDv"