
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Security "Crypto" provider deprecated in Android N http://android-developers.blogspot.co.uk/2016/06/security-crypto-provider-deprecated-in.html
" Android N 将要废弃 SHA1PRNG 算法以及 Crypto Provider,来自官方 Blog: https://t.co/l2QejUMtOV "
-
[ Android ] [BLOG] Codeinspect: The all-in-one Platform for Android App Analysis http://forensics.spreitzenbarth.de/2016/06/12/codeinspect-the-all-in-one-platform-for-android-app-analysis/ by @ m_spreitz
" Codeinspect - Android APP 综合分析平台: https://t.co/8E6A75NZvh "
-
[ Attack ] 51 Million iMesh Accounts Available on Black Market https://threatpost.com/51-million-imesh-accounts-available-on-black-market/118609/
"5100 万 iMesh 帐户信息在黑市售卖: https://t.co/onGPJKcDb6"
-
[ Cloud ] switchd - An OpenFlow implementation for OpenBSD http://www.openbsd.org/papers/bsdcan2016-switchd.pdf #unix #sysadmin #CloudComputing
"switchd - OpenBSD OpenFlow 控制器和虚拟交换机的实现: https://t.co/KUE2s6ralc 除此之外, BSDCan 2016 会议的其他几篇议题资料也可以下载: https://www.openbsd.org/papers/ "
-
[ Defend ] On the Effectiveness of Intel's CET Against Code Reuse Attacks https://forums.grsecurity.net/viewtopic.php?f=7&t=4490
" grsecurity 论坛关于 Intel CET 有效性的讨论: https://t.co/279eqoC6da"
-
[ Fuzzing ] FlashFuzzr v1.0 release: https://pastebin.com/raw/CC6UPcbZ Example Usage: https://www.youtube.com/watch?v=T-Z9_HmM5UY to compile + exec: gcc -o h h.c -std=gnu11 ./h
"FlashFuzzr - 自动化地 Fuzz 基于 Flash 的 XSS 漏洞 ︰ https://t.co/Afx0pXrhRQ 其中硬编码了一个可能存在 XSS 的 API 列表"
-
[ Industry News ] Morgan Stanley to Pay $1 Million Penalty Over Customer Data Theft | http://SecurityWeek.Com http://ow.ly/kUZh3019D8h
"摩根斯坦利银行因客户数据被窃被罚款 100 万美元: https://t.co/73Ity5M10n https://t.co/MpYDfb13pS"
-
[ iOS ] Remove Built-in Apps From the Home Screen on Your iOS Device With iOS 10 Beta: http://daringfireball.net/linked/2016/06/13/ios-10-remove-apps
" iOS 10 Beta 版将支持删除内置应用: https://support.apple.com/en-gb/HT204221 "
-
[ Linux ] Analysis and exploitation of a Linux Kernel Vulnerability (CVE-2016-0728) http://perception-point.io/2016/01/14/analysis-and-exploitation-of-a-linux-kernel-vulnerability-cve-2016-0728/
" Linux 内核 Keyrings 引用泄漏漏洞的分析和利用(CVE-2016-0728),来自 Perception Point Blog: https://t.co/aKi32MHDEv"
-
[ Mac OS X ] Apple file system guide - https://developer.apple.com/library/prerelease/content/documentation/FileManagement/Conceptual/APFS_Guide/GeneralCharacteristics/GeneralCharacteristics.html#//apple_ref/doc/uid/TP40016999-CH2-SW1 #apfs
" Apple 文件系统官方文档库: https://t.co/trjBObi6Os "
-
[ Mac OS X ] Uncovering OS X Hypervisor.Framework - https://developer.apple.com/library/mac/documentation/DriversKernelHardware/Reference/Hypervisor/ - https://veertu.com/uncovering-os-x-hypervisor-framework/
" 揭秘 Mac OS X Hypervisor 框架: https://t.co/RP6xNU7M9F https://t.co/LgUAgmLiTo"
-
[ Malware ] Dissection of Fileless In-Memory Macro/PowerShell Attacks http://bit.ly/25Y7vsi @ PhysicalDrive0 @ DEYCrypt @ subTee @ kfalconspb @ GossiTheDog
" 基于宏/PowerShell的纯内存型恶意代码分析: https://t.co/jdrXkrnKC3 "
-
[ Malware ] New post: FLocker Mobile Ransomware Crosses to Smart TV http://bit.ly/1UN8Yd0 @ TrendMicro
" FLocker 手机勒索软件开始'跨平台'至智能电视了,来自 TrendMicro Blog: https://t.co/VFVgG4JMOE "
-
[ Malware ] Combo of Zeus and Carberp Trojans Discovered with Self-Spreading Capabilities http://news.softpedia.com/news/combo-of-zeus-and-carberp-trojans-discovered-with-self-spreading-capabilities-505153.shtml
" Bolek 木马(Zeus 和 Carberp 的组合)最近被发现的样本出现了类蠕虫自我传播的功能,来自 SoftPedia 的报道: https://t.co/7rb0eSY6Xl "
-
[ Network ] Verizon Wireless Network Extender multiple vulnerabilities https://www.kb.cert.org/vuls/id/458007
"Verizon 无线网络扩展器存在多个漏洞,来自 US CERT: https://t.co/GnuUJBmpOI"
-
[ Network ] Updated API-DNSDumpster so it now retrieves the network mapping image! https://github.com/PaulSec/API-dnsdumpster.com https://t.co/Q4nrkpLD5D
" API-DNSDumpster - 获取网络拓扑结构的工具: https://t.co/mAuhazswlS "
-
[ OpenSourceProject ] Published my Hacking Mattermost slides, if anyone's interested. https://speakerdeck.com/addelindh/hacking-mattermost-an-assessment-of-an-open-source-messaging-platform-for-hipsters-security-fest-2016
" 开源消息传输平台 Mattermost 安全评估报告: https://t.co/4HvWZEhXW1"
-
[ Others ] Oh hello - apple neural network documentation. https://developer.apple.com/reference/accelerate/1912851-bnns
" 介绍 Apple 神经网络实现和使用方法的文档: https://t.co/3NvVGWRYLi"
-
[ Others ] If you would be so kind, please send a Pwnie Awards nomination for #Stagefright http://pwnies.com/nominations/ Best server side? MMS exploits ftw?
" Pwnie 大奖开始接收提名申请了: https://t.co/3C9G3qMwXu "
-
[ Pentest ] New #nmap NSE to detect and exploit vulnerable #ClamAV servers. 0day courtesy of @ nitr0usmx. http://seclists.org/nmap-dev/2016/q2/201 https://t.co/zL2alGD2Nf
" 用于检测和攻击 ClamAV 服务器(命令执行漏洞)的 Nmap 脚本: https://t.co/mb2jpUCI7e https://t.co/zL2alGD2Nf"
-
[ Popular Software ] Samsung SW Update - Insecure ACLs on SW Update Service Directory - EoP… http://goo.gl/fb/AlzXpq #FullDisclosure
" 三星软件更新服务存在目录 ACL 权限设置不当的漏洞,成功利用可以实现本地 SYSTEM 提权,来自 FullDisclosure 的公告: https://t.co/kUvKIVlRxX "
-
[ Popular Software ] vmware + linux 3.x poc https://cyseclabs.com/blog/vmware-linux-poc
"VMware 在模拟性能计数器的实现中存在 Bug,影响 Linux 3.x 版本(附 PoC): https://t.co/xZ0o1PP2c6"
-
[ Popular Software ] Foxit PDF Reader heap-based memory corruption https://bugs.chromium.org/p/project-zero/issues/detail?id=741#c_ts1465823495
"福昕 PDF 阅读器堆内存破坏漏洞,来自 Project Zero Issue 741: https://t.co/Q04FOEmCn6"
-
[ SecurityProduct ] New blog post by @ BrandonPrry - Finding pearls; fuzzing ClamAV https://foxglovesecurity.com/2016/06/13/finding-pearls-fuzzing-clamav/
" Fuzzing ClamAV,Finding Pearls: https://t.co/o2HkthrZ0d"
-
[ Tools ] Sorted out steps to use @ capstone_engine from Windows drivers in Visual Studio 2015. https://github.com/tandasat/cs_driver. Capstone is awesome.
" 在 Windows 驱动中使用 Capstone 反汇编引擎的示例项目, GitHub Repo: https://t.co/Aef18QkgV2 "
-
[ Tools ] Search secrets on Github; AWS keys, tokens, password, certificates, etc. https://github.com/apuigsech/seekret
" seekret - 在 GitHub 上搜索敏感信息的工具,包括密钥、Token、证书等: https://t.co/gd3p9Pbmkn"
-
[ Web Security ] CM Ad Changer 1.7.7 Wordpress Plugin - Cross Site Scripting Web Vulnerability http://goo.gl/fb/GaU0nE #FullDisclosure
" Wordpress 插件 CM Ad Changer 1.7.7 版本 XSS 漏洞,来自 FullDisclosure 的公告: https://t.co/IZnIijkJTr "
-
[ Windows ] Short blog post on Wmic command line usage: https://www.xorrior.com/wmic-the-enterprise/
" Wmic 命令行用法 ︰ https://t.co/6pa3Ii9gXM"
-
[ Windows ] Good link. More stuff in "Some Recommendations Regarding Windows 10 Privacy Settings" https://www.ernw.de/download/newsletter/ERNW_Newsletter_52_Win10_Priv_v1.0_signed.pdf https://twitter.com/simonroses/status/742269519960412160
" Windows 10 隐私保护推荐配置,来自 ERNW: https://t.co/Ou50bplK5n https://t.co/BkDCOpBMkU"