腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Metaphor - a (real) real-life Stagefright exploit (bypassed ASLR for Stagefright) : https://raw.githubusercontent.com/NorthBit/Public/master/NorthBit-Metaphor.pdf cc: @ _arkon
"Metaphor - 为 Stagefright 写一个能绕过 ASLR 的 Exploit(CVE-2015-3864,PDF): https://t.co/L9szXJrXic 这篇 Paper 的作者为 NorthBit 团队"
-
[ Browser ] This Chrome high severity bug I've reported 21 days ago is fixed ublink::PaintArtifact::appendToWebDisplayItemList https://gist.github.com/revskills/a40e500bb3d987acb5af
"21 天前 revskills 报告给 Chrome 的 UAF 漏洞被修复了, 漏洞 Crash 调用栈信息: https://t.co/1dXGIVJN5E"
-
[ Debug ] @ standa_t http://code.google.com/p/hyperdbg
"hyperdbg - 基于硬件虚拟化的内核调试器, Google Code: https://code.google.com/archive/p/hyperdbg/ "
-
[ Exploit ] Understanding the Heap & Exploiting Heap Overflows : http://www.mathyvanhoef.com/2013/02/understanding-heap-exploiting-heap.html #b2b
"堆溢出漏洞及其利用(Linux), 2013 年的一篇 Blog: https://t.co/L9enM9I5Ia "
-
[ Linux ] Nice article on 'breaking' kernel aslr for Linux: https://github.com/xairy/kaslr-bypass-via-prefetch by @ andreyknvl
"通过 Prefetch 指令绕过 Linux 内核 KASLR, PoC: https://t.co/kaD6NjzVOo"
-
[ Mac OS X ] OS X Hardening Guide (written for Mountain Lion, but most points still apply) https://www.ernw.de/download/hardening/ERNW_Checklist_OSX_Hardening.pdf [PDF] https://t.co/ao7zMjQtTO
"OS X 10.8 安全加固指南,2013 年的一篇 Paper: https://t.co/Cqqm0PYN4V [PDF] https://t.co/ao7zMjQtTO"
-
[ Others ] CacheKit: Evading Memory Introspection Using Cache Incoherence : http://www.cs.wm.edu/~ksun/publications/CacheKit-eurosp2016.pdf (pdf)
"CacheKit: 利用缓存不一致性逃逸内存自省,Paper: https://t.co/ZPUqfErxQL "
-
[ ThirdParty ] Malformed Private Keys Lead To Heap Corruption In Openssl’s B2i_pvk_bio : https://wartalker.me/a/56d62d1aeff2a2688884a075
"特殊构造的私钥文件可以触发 OpenSSL B2i_pvk_bio 函数堆破坏, Blog: https://t.co/sfAWELLF9m"
-
[ Tools ] Trillium Toolkit Leads to Widespread Malware https://blogs.mcafee.com/mcafee-labs/trillium-toolkit-leads-widespread-malware/
"Trillium 工具可以生成恶意软件下载器, 攻击者常常使用这个工具,上周 Trillium v3 版本刚刚被破解: https://t.co/1tB3TSmXO2"
-
[ Tools ] Ransomware tracker : https://ransomwaretracker.abuse.ch/
"勒索软件跟踪器: https://t.co/UCKJ1EvWKq"