
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Why does an Android keyboard need to see your camera, log files – and phone home to China? 50 million downloads http://m.theregister.co.uk/2016/06/07/android_keyboard_needs_to_see_camera_and_log_files/
" 为什么一个 Android 键盘 APP 还需要查看摄像头和日志文件,而且还发回数据到中国的服务器呢? 来自 TheRegister 的报道: https://t.co/TZovPly5P0"
-
[ Browser ] Mozilla fixes 13 vulnerabilities in #Firefox, including some that could lead to spoofing, clickjacking - http://ow.ly/lhLv3013yF3
"Mozilla Firefox 浏览器更新 47 版本,本次更新共修复了 13 个漏洞,来自 ThreatPost 的报道: https://t.co/9sudRW76sc"
-
[ Hardware ] Turn Smartphone Vibration Motor into Microphone to Spy on You : http://synrg.csl.illinois.edu/vibraphone/paperdocs/VibraPhone_nirupam.pdf (pdf) https://t.co/SSGl6FXEKF
"把智能手机振动马达变成可以监听你的麦克风, Paper ︰ https://t.co/pivqvtiABK https://t.co/SSGl6FXEKF"
-
[ iOS ] while stuck in Heathrow I uploaded slides of my talk on iOS malware at @ BSidesLondon https://speakerdeck.com/milkmix/ios-malware-myth-or-reality #malware
" iOS 恶意软件的神话和现实,来自 BSides 伦敦会议: https://t.co/fq0emsPM2o "
-
[ Malware ] On-Demand Polymorphic Code In Ransomware http://blog.fortinet.com/2016/06/07/real-time-polymorphic-code-in-ransomware
" 勒索软件中的实时多态代码,来自 Fortinet Blog: https://t.co/9Iz7W8JqUQ"
-
[ Malware ] Technical analysis and sinkhole data of Vawtrak : https://www.sophos.com/en-us/medialibrary/PDFs/technical%20papers/sophos-vawtrak-v2-sahin-wyke.pdf?la=en (pdf) https://t.co/z4HhHr1CSF
" Sophos 对银行恶意软件 Vawtrak v2 版本的分析报告: https://t.co/pyLosw0QnU https://t.co/z4HhHr1CSF"
-
[ OpenSourceProject ] Nice list on #firmware #reversing projects with walkthroughs: https://github.com/devttys0/binwalk/wiki/Projects-Using-Binwalk
" Projects Using Binwalk︰ https://t.co/uV60k8g4MX"
-
[ Popular Software ] Adobe Reader CoolType unlimited out-of-bounds stack manipulation via BLEND operator https://bugs.chromium.org/p/project-zero/issues/detail?id=258#c_ts1465322479
"Adobe Reader CoolType 字体库不受限地栈操作漏洞(CVE-2015-3052),来自 Project Zero Issue 258: https://t.co/svh3L5smdz"
-
[ Tools ] New blog post: SAMLReQuest Burpsuite Extention https://www.insinuator.net/2016/06/samlrequest-burpsuite-extention/
" BurpSuite SAMLReQuest 扩展: https://t.co/EDNYpgmc1u"
-
[ Windows ] Windows BITS ‘Notification’ Feature Used to Deliver Malware https://threatpost.com/windows-bits-notification-feature-used-to-deliver-malware/118555/
" Windows BITS 服务的通知功能被攻击者滥用,传播恶意软件,来自 ThreatPost 的报道: https://t.co/CLzxygEG1w"
-
[ Windows ] 15 Ways to Bypass the PowerShell Execution Policy https://blog.netspi.com/15-ways-to-bypass-the-powershell-execution-policy/ #powershell #dfir
" 绕过 PowerShell 执行策略限制的 15 种方式: https://t.co/atxzaLtMi7 "
-
[ Windows ] Win10, Registry, and fun with UCS/UTF16 http://www.hexacorn.com/blog/2016/06/07/win10-registry-and-fun-with-ucsutf16/ #DFIR #malware
"Windows 10、注册表以及 UCS/UTF16 编码格式: https://t.co/IwigkI0CvV "