
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Our #ndss2017 paper on Android malware detection is available here http://ow.ly/piT0307h8o4
"通过建立行为模型的 Markov 链来检测 Android 恶意软件(Paper): https://t.co/VTCm8k1WSU"
-
[ Android ] Android - Stack overflow in WifiNative::setHotlist https://bugs.chromium.org/p/project-zero/issues/detail?id=958
"Android WifiNative::setHotlist 栈溢出 poc(CVE-2016-6772 ): https://t.co/9Cwxjq9xTp"
-
[ Browser ] Microsoft Edge: Uninitialized Memory in SIMD.toLocaleString https://bugs.chromium.org/p/project-zero/issues/detail?id=961
"Microsoft Edge SIMD.toLocaleString 未初始化内存调用(CVE-2016-7286): https://t.co/xO5JbUeztj"
-
[ Browser ] A Collection of Javascript Engine Vulnerability Trigger PoCs https://github.com/tunz/js-vuln-db
" 三个 JS 引擎(JavaScriptCore、ChakraCore、V8)的多个漏洞 PoC 收集 : https://t.co/LwGjLKEkE3"
-
[ Linux ] New BlackArch Linux ISOs (2016.12.20) released! https://goo.gl/fb/OiHoZk #FullDisclosure
"BlackArch Linux ISOs 新版发布: https://t.co/EAmq9KJnJh "
-
[ Linux ] My first contribution to @ welivesecurity: http://www.welivesecurity.com/2016/12/20/new-linuxrakos-threat-devices-servers-ssh-scan/ #Linux #Malware
"新 Linux/Rakos 威胁: 设备及服务器遭受 SSH 扫描爆破攻击: https://t.co/sQA1rMCRKR "
-
[ Linux ] Programming Anti-Reversing Techniques for Linux https://github.com/antire-book/dont_panic
"使用多种逆向对抗技术的 Linux bind shell 后门: https://t.co/PUYzQJQzMc "
-
[ Malware ] New post: Alice: A Lightweight, Compact, No-Nonsense ATM Malware http://bit.ly/2hmvPRc @ TrendMicro
"TrendMicro 发现新 ATM 恶意软件家族 Alice: https://t.co/bGBF1g645K "
-
[ Mobile ] #OWASP #Mobile #Security Testing Guide - Full List of Test Cases plus Excel Checklist https://github.com/OWASP/owasp-mstg/blob/master/all_tests.md https://t.co/exDPzfOXAw
"OWASP 移动安全测试指南: https://t.co/AGHynifgn2"
-
[ Others ] As usual, Fabrice Bellard is a total bad ass. 128-bit RISC-V emulator that boots Linux: http://bellard.org/riscvemu/
"RISCVEMU -- 基于 RISC-V 架构的系统模拟器︰ https://t.co/2wWMl3r5ua"
-
[ Others ] GNU Hurd 0.9 is out… 2016 keeps on giving. https://www.gnu.org/software/hurd/news/2016-12-18-releases.html
"GNU Hurd 0.9 发布: https://t.co/WXyrPeiQDB"
-
[ Others ] New @ IOActive blog: @ reversemode finds security #vulns in airline in-flight entertainment systems http://ioac.tv/2hTbByT #aviationsecurity
"Hacking 飞机上的空中娱乐系统: https://t.co/RkosUimk35 "
-
[ Others ] My @ HackSysTeam HEVD kernel exploits (written in Python) for Win7 SP1 x86 are here: https://github.com/theevilbit/exploits/tree/master/HEVD
"HackSysTeam HEVD 驱动漏洞的利用代码︰ https://t.co/J5rDwncnWI"
-
[ Others ] Download, Decompress, Execute #mimikatz in MSBUild.exe from URL on cmd line. https://gist.github.com/subTee/d32a4912b2798197663e883ea6a68937 Thanks to @ xorrior for param example
"从 URL 参数中下载并解压缩 mimikatz: https://t.co/JVNtS4rfQl"
-
[ Popular Software ] [ERPSCAN-16-035] SAP Solman - user accounts disclosure https://goo.gl/fb/FGZgVZ #FullDisclosure
"SAP Solman 存在用户帐户泄露漏洞(CVE-2016-10005): https://t.co/N2OuiJv6I4 "
-
[ SecurityReport ] 2016 was “the year of ransomware.” Our Threats Report details the year's technical advances and vendor responses:… https://twitter.com/i/web/status/811085250138882048
"McAfee 发布 12 月威胁报告: https://t.co/C3KKXRj1bt"
-
[ Tools ] fssb : Filesystem Sandbox for Linux : https://github.com/adtac/fssb
"fssb -- 通过系统调用拦截实现的 Linux 低等级文件系统沙盒︰ https://t.co/DSR7VeoO05"
-
[ Tools ] #SpamScope v1.3rc1 released with #thug analysis: https://goo.gl/u6R54i Special thanks to @ angelodellaera #Security #Malware #spam
"SpamScope -- 垃圾邮件分析工具: https://github.com/SpamScope/spamscope"
-
[ Vulnerability ] w00t w00t! Our #NDSS17 paper “Stack Bounds Protection with Low Fat Pointers” is finally out! Check it out at https://t.co/ueDL3wo6KQ
"Stack Bounds Protection with Low Fat Pointers(Paper): https://t.co/ueDL3wo6KQ"
-
[ Windows ] WMI (Windows Management Instrumentation) offense,defense & forensics : https://www.fireeye.com/content/dam/fireeye-www/global/en/current-threats/pdfs/wp-windows-management-instrumentation.pdf (pdf)
"WMI 攻防与取证(PDF)︰ https://t.co/hMHy66ifhy "
-
[ Backdoor ] Safari Plugins-View-Page Stored XSS Vulnerabilities: http://xisigr.com/x/safari-plugins-view-page-stored-xss-vulnerabilities/
-
[ Mac OS X ] CVE-2016-7595 Apple macOS/iOS CoreText OTL::GPOS::ApplyPairPos 越界访问漏洞分析: https://security.tencent.com/index.php/blog/msg/111
-
[ Vulnerability ] OpenSSH 版本<= 7.3 远程代码执行漏洞(CVE-2016-10009): http://www.securityfocus.com/bid/94968/info?from=groupmessage&isappinstalled=0&winzoom=1