
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Crypto ] Heres a couple guides on how to do secure communications without focusing on crypto: https://gist.github.com/grugq/03167bed45e774551155 https://grugq.github.io/presentations/COMSEC%20beyond%20encryption.pdf
"利用 PGP 加密你的邮件︰ https://t.co/E2OjDXjukU https://t.co/brlGIKRsqy"
-
[ macOS ] XNU kernel 3789.31.2 sources (macOS Sierra 10.12.2) are now available: https://opensource.apple.com/tarballs/xnu/xnu-3789.31.2.tar.gz
"XNU kernel 3789.31.2 源码 (macOS Sierra 10.12.2)︰ https://t.co/4hciwfLkda"
-
[ Others ] Hash Algorithms: A Comprehensive Guide : http://www.metamorphosite.com/one-way-hash-encryption-sha1-data-software
"哈希算法详解︰ https://t.co/yaCa9WhOsA"
-
[ Others ] Google Infrastructure Security Design Overview https://cloud.google.com/security/security-design/
"Google 基础技术安全设计总览: https://t.co/pSUfjkBm59"
-
[ Tools ] @ TimMedin @ ItaiGrady Additionally: audit/enforce least privilege. Utilize JEA and JIT (https://aka.ms/JEA). Manage privileged accounts.
" JEA -- Powershell安全防御技术,提供角色访问控制平台: https://t.co/FWI3qiUgyk"
-
[ Tools ] custom-bytecode-analyzer - Java bytecode analyzer customizable via JSON rules http://www.kitploit.com/2017/01/custom-bytecode-analyzer-java-bytecode.html
"custom bytecode analyzer -- 一个基于命令行的自定义 Java 字节码分析器: https://t.co/y6dd3euYqo"
-
[ Tools ] w0w, finally someone used Unicorn emulator to built an IDA plugin for binary deobfuscation \O/… https://t.co/LAFW7WBFoC
"nao -- 基于 Unicorn 模拟器的二进制反混淆 IDA 插件 : https://github.com/tkmru/nao"
-
[ Tools ] #ShadowBrokers (Windows Hacking Tool) Leak, https://forum.reverse4you.org/showthread.php?t=2498
"ShadowBrokers (Windows Hacking Tool) Leak: https://t.co/17tLHwX7hT"
-
[ WirelessSecurity ] A practical guide to RFID badge copying https://blog.nviso.be/2017/01/11/a-practical-guide-to-rfid-badge-copying/
"RFID badge copying 实践指南: https://t.co/wuJhZ0ezQc "