腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Autopwn every Android device on your network using BetterCap and the "addJavascriptInterface" vulnerability. http://www.evilsocket.net/2016/01/18/autopwn-every-android-device-on-your-network-using-bettercap-the-and-addjavascriptinterface-vulnerability/
"通过 BetterCap 工具和 'addJavascriptInterface' 漏洞自动攻击网络内的所有 Android 设备: https://t.co/rjan3R1P39"
-
[ Android ] Android Xposed Module to bypass SSL certificate validation (Certificate Pinning) - https://github.com/ac-pm/SSLUnpinning_Xposed
"SSLUnpinning_Xposed - 用于劫持 Android SSL 流量的 Xposed 模块,劫持是通过 Hook SSL 相关的类实现的: https://t.co/EgdVOzpKTk"
-
[ Android ] Targeted Mobile Implants in the Age of Cyber-Espionage https://kas.pr/tbn4 by @ dimitribest
"网络间谍时代的定向手机攻击,来自 Kaspersky Blog: https://t.co/dqbYzfjQyp "
-
[ Android ] Mobile Security News Update January 2016 https://www.mulliner.org/blog/blosxom.cgi/security/mobile_security_news_update_January2016.html #theyearjuststarted
"2016 年 1 月份的移动安全动态,来自 mulliner Blog: https://t.co/m9hRFd4n2L "
-
[ Attack ] Malicious Code Analysis on Ukraine's Power Grid Incident : http://blog.knownsec.com/wp-content/uploads/2016/01/Malicious-Code-Analysis-on-Ukraines-Power-Grid-Incident-L150113.pdf (pdf)
"乌克兰电力中断事件的恶意代码分析,来自知道创宇: (PDF) https://t.co/uq1DMsjk5c 关于此事件,还有一篇绿盟科技的 Blog 参考阅读: http://blog.nsfocus.net/ukraine-power-plant-attack-analysis-protection-programs/ "
-
[ Attack ] Attack against Ukrainian airport's network may be linked to power grid malware, say authorities http://www.reuters.com/article/us-ukraine-cybersecurity-malware-idUSKCN0UW0R0
"乌克兰当局声明:乌克兰机场的攻击事件与电力攻击事件有关,而攻击乌克兰机场的服务器来自俄罗斯: https://t.co/YMEW4GmKx5"
-
[ Browser ] List of chrome protocol handlers extracted from Google Chrome source code https://gist.github.com/ethicalhack3r/ed3c628e684d9817d28c
"从 Google Chrome 浏览器的源码中导出的协议 Handlers 列表: https://t.co/6ERO60QpvO "
-
[ Cloud ] Security Vulnerabilities in Cloud Application http://goo.gl/9Hl3qq #CloudComputing #ApplicationSecurity #NetworkSecurity #Vulnerabilities
"部署在云上的应用程序的安全漏洞,来自 InfoSec 2015 年 11 月份的一篇 Blog: https://t.co/9dn6sZYBsg "
-
[ Crypto ] Crypto trivia: constructing the Dual EC backdoor (http://vnhacker.blogspot.com/2016/01/constructing-dual-ec-backdoor.html) and exploiting the math bug in Go (http://vnhacker.blogspot.com/2016/01/exploiting-mathrsa-bug-in-go.html)
"构造 Dual EC(双椭圆曲线)后门: https://t.co/n31PWkObXR 通过 Go 语言攻击这个后门: https://t.co/kXmAUJIhLB "
-
[ Hardware ] Insecure by Design: Using Human Interface Devices to exploit SCADA systems https://www.researchgate.net/profile/Leandros_Maglaras/publication/279178281_Insecure_by_Design_Using_Human_Interface_Devices_to_exploit_SCADA_systems/links/558c33ac08ae40781c204141.pdf
"设计上就不安全: 利用人机接口设备攻击 SCADA 系统,来自英格兰德蒙福特大学的 Paper: https://t.co/RNxN7zcVE2"
-
[ Hardware ] Chameleon : Emulates Contactless Smart Cards ,read RFID tags and sniff RF data : https://github.com/skuep/ChameleonMini https://t.co/5ghUJXADqr
"Chameleon - 非接触式智能卡模拟器: https://t.co/5ghUJXADqr https://t.co/mdTdNeFp9C"
-
[ Hardware ] August Smart Lock Teardown https://medium.com/@ use_ruki/august-teardown-6274a7858338#.wpgqumxhr
"August/Lockitron/Goji 三款电子智能锁拆解,来自 Medium Blog: https://t.co/nCGA6ke14C"
-
[ Others ] Obfuscated RCE backdoor via IRC in alternate blockchains lucky7coin and torcoin https://github.com/alerj78/lucky7coin/issues/1
"隐藏在 IRC 代码中的 RCE 后门: https://t.co/lOCk3ezujA"
-
[ Pentest ] CrisPY : A exploiter kit written in python w/ various latest exploits and tools written in python,perl,bash : https://github.com/ChaitanyaHaritash/CrisPY
"CrisPY - 漏洞攻击工具,集成了多个最新的 Exploit: https://t.co/DFlwvnCnvB"
-
[ Tools ] Fast Incident Response: a cybersecurity incident management platform https://github.com/certsocietegenerale/FIR
"FIR - 安全事件应急响应管理平台: https://t.co/SlxFofjWvo"
-
[ Tools ] Tracking Hacked Websites using Shodan: http://buff.ly/1Qhzu0k
"如何通过 Shodan 跟踪被黑的网站: https://t.co/O4xkwSP8LU"
-
[ Tools ] JReFrameworker : A practical tool for creating Managed Code Rootkits (MCRs) in the Java Runtime Environment : https://github.com/benjholla/JReFrameworker
"JReFrameworker: 在 JRE 环境中创建托管代码 Rookit 的工具: https://t.co/xGN7OoRZjK"
-
[ Tools ] DbDat - Database Assessment Tool (also a framework for creating additional database checks) https://github.com/foospidy/DbDat
"DbDat - 数据库安全评估工具,检查包括:数据库的配置、权限的分配、用户的配置等: https://t.co/zXgOVY4X9p"
-
[ Tools ] GUEB - Static analyzer of Use-After-Free on binary : https://github.com/montyly/gueb
"GUEB - 二进制 UAF 漏洞静态检测、分析工具: https://t.co/N4c4hIWFqL"
-
[ Tools ] New blog post: Creating an automated sandbox on the fly with Noriben #DFIR #Malware http://www.ghettoforensics.com/2016/01/creating-malware-sandbox-in-seconds.html
"利用 Noriben 工具快速构建一个恶意软件自动化分析沙箱系统: https://t.co/ln7V8KEfI7 "
-
[ Vulnerability ] Analysis of sys_dynlib_prepare_dlclose PS4 kernel heap overflow http://cturt.github.io/dlclose-overflow.html
"Sony PS4 内核系统调用 sys_dynlib_prepare_dlclose 中存在堆溢出漏洞, 对该漏洞的分析 Blog: https://t.co/6iTjMX9FRt "
-
[ Vulnerability ] payatu/CVE-2015-6086 - HTML - GitHub http://gettopical.com/github/c2b8ecea7528b9726ed760ad2b729598?src=twitter via @ HackSysTeam
"IE CDOMStringDataList::InitFromString 在处理换行和空白字符时存在越界读漏洞(CVE-2015-6086, MS15-112),利用这个漏洞可以绕过 ASLR,该漏洞影响 IE9 ~ IE11, 来自 payatu 的 Exploit PoC: https://github.com/payatu/CVE-2015-6086 "
-
[ Web Security ] Yahoo Mail stored XSS could compromise email accounts ($10k #bugbounty). Proof of concept JS virus https://klikki.fi/adv/yahoo.html
"雅虎邮箱存储型 XSS PoC,该漏洞获得了雅虎的 10K 美元奖励: https://t.co/LlQXEwYSzC "
-
[ Web Security ] Creating your Own Simple Exploit Module for a Remote Code Execution in Web Apps http://goo.gl/PxJjix #PenetrationTesting #AccessControl
"为你的 Web 远程代码执行漏洞写一个简单的 Exploit 模块,来自 InfoSec Blog: https://t.co/USGo4sdvOo "
-
[ Windows ] Microsoft security bulletin is clearly high on DLL hijacking bugs these days. Here is my research from 2012: http://2012.zeronights.org/includes/docs/Esage.pdf
"这些天微软安全公告中 DLL 劫持的 Bug 数量比较多, Alisa Esage 2012 年在 ZeroNights 会议上的演讲:《On non existent 0days, stable binary exploits and user interaction》: https://t.co/58o4AM1OGa"