
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Conference ] Recon 2017 Slides https://recon.cx/2017/brussels/slides/
"Recon 2017 大会议题 Slides: https://t.co/Uz5RRKAJs3"
-
[ iOS ] How to perform iOS Code Injection on .ipa files https://medium.com/@ kennethpoon/how-to-perform-ios-code-injection-on-ipa-files-1ba91d9438db
"如何在 .ipa 文件上进行 iOS 代码注入: https://t.co/BdZW0copnv "
-
[ Linux ] NetBSD leaks 249 bytes over Ethernet (ARP) http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2017-002.txt.asc Linux <2.0.40 leaks 20 bytes over Internet (ICMP) https://t.co/to2wzBxMjO
"NetBSD ARP 协议漏洞细节: https://t.co/DmPXfzwEjn "
-
[ Others ] SMTP over XXE − how to send emails using Java's XML parser https://shiftordie.de/blog/2017/02/18/smtp-over-xxe/
" SMTP over XXE - 如何使利用Java XML解析器发送邮件: https://t.co/SgULSOBhs4"
-
[ Pentest ] Updated the Penetration Testing Cheat Sheet: https://highon.coffee/blog/penetration-testing-tools-cheat-sheet/ enjoy :) #infosec #pentesting https://t.co/rwF0NyQBBD
"渗透测试备忘录︰ https://t.co/KmJg9Hvlal"
-
[ SecurityReport ] New Xagent Mac Malware Linked with the APT28 : Full Report (APT28 Under the Scope) : https://download.bitdefender.com/resources/media/materials/white-papers/en/Bitdefender_In-depth_analysis_of_APT28%E2%80%93The_Political_Cyber-Espionage.pdf (pdf) https://t.co/xYYDhoDpI9
" APT28 完全调查报告︰ https://t.co/XiX9PHKsA9 "
-
[ Tools ] phpstan : PHP Static Analysis Tool - discover bugs in your code without running it! : https://github.com/phpstan/phpstan
"phpstan -- PHP 的静态分析工具: https://t.co/vyub6NlstS"
-
[ Tools ] HERCULES : a special payload generator that can bypass antivirus softwares : https://github.com/EgeBalci/HERCULES
"HERCULES -- 一个可绕过杀软的 payload 生成器︰ https://t.co/yqFt5r3EsC"
-
[ Tools ] urh : Universal Radio Hacker - a software for investigating unknown wireless protocols : https://github.com/jopohl/urh
"urh(Universal Radio Hacker) -- 无线协议研究工具︰ https://t.co/qt97HfmICk"
-
[ Web Security ] Exploiting SQL Injection when database is SQLIte : https://www.exploit-db.com/docs/41397.pdf (pdf)
"SQLite 注入手册︰ https://t.co/Dy0qFOD10p "