
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Browser ] Recent publications on browser fingerprinting & protection: http://yinzhicao.org/TrackingFree/crossbrowsertracking_NDSS17.pdf at #ndss17 and https://www.datenzone.de/blog/wp-content/uploads/2016/10/Disguised-Chromium-Browser-Robust-Browser-Flash-and-Canvas-Fingerprinting-Protection.pdf from #wpes16
"跨浏览器指纹追踪技术(PDF)︰ https://t.co/DvPGMek2Wl 浏览器指纹防护技术(PDF): https://t.co/sWRKFvCWMH "
-
[ Crypto ] Security Through Transparency http://dlvr.it/N5YLvD https://t.co/whVt8TKgeQ
"Google 认为解决安全通信的方式是密钥透明度(Through Transparency),介绍: https://t.co/D1fWYugX8Q ; Github: https://github.com/google/key-transparency/"
-
[ Exploit ] Catching Exploit Kit Landers https://blog.opendns.com/2017/01/11/catching-exploit-kit-landers/
"捕获 Exploit Kit 着陆器: https://t.co/efvEPGafut"
-
[ Industry News ] Godaddy has issued at least 8850 SSL certificates without validating anything : https://groups.google.com/forum/?hl=en#!msg/mozilla.dev.security.policy/Htujoyq-pO8/uRBcS2TmBQAJ
"Godaddy 在没有对域名做充分验证的情况下,颁布了至少 8850 份 SSL 证书︰ https://t.co/0jkacfjN77"
-
[ Industry News ] Scoop: Israeli mobile phone forensics firm Cellebrite hacked. 900GB of data. Hacker passed the data to Motherboard… https://t.co/UM7bxaTF8g
"曾帮 FBI 解锁 Apple 手机的 Cellebrite 公司被黑,900 GB 用户信息、技术数据遭窃: https://t.co/UM7bxaTF8g"
-
[ Linux ] Very interesting ELF research: https://nebelwelt.net/publications/files/17NDSS.pdf
" ELF 研究:Loader 是如何背叛你的︰ https://t.co/J48ni56HqP"
-
[ Malware ] New Variant of Ploutus ATM Malware Observed in the Wild in Latin America http://www.fireeye.com/blog/threat-research/2017/01/new_ploutus_variant.html
"新型 Ploutus ATM 恶意软件变种被发现: https://t.co/sKivB02VOn "
-
[ MalwareAnalysis ] Our blog on #EyePyramid, includes 183 malware hashes https://securelist.com/blog/incidents/77098/the-eyepyramid-attacks/
"恶意软件 EyePyramid 分析: https://t.co/ndiUrrkeFR 技术细节: https://github.com/eyepyramid/eyepyramid"
-
[ Network ] [CVE-2016-1247 Update] #Nginx - Root #PrivEsc - #Gentoo #Linux also affected - #exploit #infosec #itsecurity #0day https://t.co/VpYGUWfqjW
"Nginx (Debian-based + Gentoo distros) root 权限提升: https://t.co/VpYGUWfqjW"
-
[ Others ] How to write a research paper: a guide for software engineers & practitioners. https://docs.google.com/presentation/d/1LGcM3Jmd5ZkoYfn1Bph4W4-lYQD0lDnrtOKe3IpTiAs/edit?usp=sharing /cc @ inwyrd
"如何写一份研究报告: https://t.co/TFzY6W0ayz"
-
[ Others ] A new collection of security links [156] ~ http://www.wawaseb.com/lutile/wsl156.php "Anger is more useful than despair." Terminator 3
"Wawa Security Links: https://t.co/qPFKmlSm0 "
-
[ Others ] Hijacking Broken Nameservers to Compromise Your Target https://thehackerblog.com/respect-my-authority-hijacking-broken-nameservers-to-compromise-your-target/
"劫持 Nameserver 来控制你的目标: https://t.co/45ouioGxJf"
-
[ Pentest ] Blogged about an interesting thick client pentest we did. Authorized stealing of data is so much fun! Read here: https://t.co/HXAB6X1yO2
"攻破客户端应用程序窃取服务器端数据︰ https://t.co/HXAB6X1yO2"
-
[ Rootkit ] VENOM Linux rootkit: https://security.web.cern.ch/security/venom.shtml
"VENOM Linux rootkit: https://t.co/ucjJYadmCJ"
-
[ Tools ] EMET 5.52 update is now available https://blogs.technet.microsoft.com/srd/2017/01/12/emet-5-52-update-is-now-available/
"EMET 5.52 发布: https://t.co/ii4JoNociG"
-
[ Web Security ] [LABS] New write-up by @ avlidienbrunn: CSP Flaws: cookie fixation http://labs.detectify.com/2017/01/12/csp-flaws-cookie-fixation/ https://t.co/OQqzNr5mGh
" CSP 缺陷:cookie fixation: https://t.co/hG6wd8SUWx"
-
[ WirelessSecurity ] GSM sniffer Part1: https://cn0xroot.com/2016/08/01/gsm-hacking-part-%E2%91%A0-scan-and-sniffer-gsm-with-sdr/ Part2:https://cn0xroot.com/2016/08/10/gsm-hacking-part-%E2%91%A1-%EF%BC%9Asniffer-and-decode-gsm-with-sdr/ #SDR #BladeRF https://t.co/zLmM8RTpHC
"GSM Hacking Part1 使用SDR扫描嗅探GSM网络︰ https://t.co/Yq0pR4qG8G Part2 使用SDR捕获GSM网络数据并解密 : https://t.co/RaX9i7rKT1 "
-
[ Popular Software ] 微信小程序安全浅析: http://mp.weixin.qq.com/s?__biz=MzIyMjUyNTkyNQ==&mid=2247484180&idx=1&sn=29680b46f17106c10bcd8b80e143634e
-
[ Popular Software ] Exploit for CVE-2016-9299 (Jenkins CLI Ldap Deser): https://github.com/rapid7/metasploit-framework/pull/7815
-
[ Attack ] 利用powershell 写内核 exploit :https://github.com/FuzzySecurity/PSKernel-Primitives/blob/master/README.md