
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Linux ] Compiled together a bunch of links related to Linux kernel exploitation: https://github.com/xairy/linux-kernel-exploitation
"Linux 内核 fuzzing 和漏洞利用的合集︰ https://t.co/1kPWInoDK6"
-
[ Linux ] 4 Ways to get Linux Privilege Escalation http://www.hackingarticles.in/4-ways-get-linux-privilege-escalation/
"4 种 Linux 提权方法: https://t.co/YhkWL9lbsx"
-
[ Malware ] Poison .JPG spreading ransomware through Facebook Messenger http://m.theregister.co.uk/2016/11/25/selfharming_jpg_hack_hole_may_be_key_to_lockys_fb_spread/
"在 Facebook 上利用 JPG 图片传播 Locky 勒索软件: https://t.co/WjKK4I5gzZ "
-
[ MalwareAnalysis ] Post-election hangover: Cybercriminals created #ransomware variants inspired byTrump-Merkel feud. Recent detections: http://bit.ly/2g6SD7h
"勒索软件回顾:2016年 11 月 7 日- 18日 ,来自 Trend Micro︰ https://t.co/y0HSn4p2Qp"
-
[ Others ] More SGX side channels & scheduling control (BTB & APIC): https://arxiv.org/abs/1611.06952 - looks like an interesting read
"Inferring Fine-grained Control Flow Inside SGX Enclaves with Branch Shadowing: https://arxiv.org/pdf/1611.06952v1.pdf"
-
[ Others ] You Got Uninitialized Kernel Memory : http://hacksys.vfreaks.com/You_Got_Uninitialized_Kernel_Memory.pdf (pdf) cc @ HackSysTeam
"HackSys Extreme Vulnerable Driver 及未初始化变量(PDF)︰ https://t.co/jZTYw265lQ"
-
[ Tools ] cve-search - a tool to perform local searches for known vulnerabilities: https://github.com/cve-search/cve-search
-
[ Attack ] 旧金山交通系统被黑,导致系统无法正常收费,全市免费出行一天: http://mashable.com/2016/11/27/san-francisco-muni-hacked/#jcA99YgY7EqI