
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Conference ] The schedule for #nullcon Goa 2017 is posted! Get a preview before the conference http://nullcon.net/website/goa-2017/schedule.php
"nullcon Goa 2017 大会日程表: https://t.co/0vt59RH6MC "
-
[ MalwareAnalysis ] Dissecting the #APT28 Mac OS X Payload [PDF] https://labs.bitdefender.com/wp-content/plugins/download-monitor/download.php?id=Bitdefender-Whitepaper-APT-Mac-A4-en-EN-web.pdf
"剖析 APT28 的 Mac OS X 版木马 XAgent : https://t.co/gFU9pKNiOC"
-
[ Network ] Multiple cross-site request forgery (CSRF) vulnerabilities in the DIGISOL… https://goo.gl/fb/mGxCT1 #FullDisclosure
"DIGISOL 无线路由器存在多个 CSRF 漏洞(CVE-2017-6127): https://t.co/vmwlaEi9eM "
-
[ Others ] List of Sites affected by Cloudflare's #Cloudbleed HTTPS Traffic Leak https://github.com/pirate/sites-using-cloudflare
"受 Cloudbleed 漏洞影响的网站列表: https://t.co/jryD8SqowS "
-
[ Others ] A list tracking real-world exploits against anti-virus software: https://github.com/v-p-b/avpwn
"avpwn -- 杀毒软件漏洞列表︰ https://t.co/yS9BX3yBw1"
-
[ Others ] Inspired by @ _xpn_ I have written a small ROP Primer blog http://pentestdan.com/rop-primer-level-0-explained/ Feedback Welcome!
"ROP Primer Level 0 Explained: https://t.co/ypcbL6xUfl "
-
[ Pentest ] THE HACKER PLAYBOOK 2 Practical Guide To Penetration Testing [PDF] #Pentest http://genesis-hs.ru/docs/The-Hacker-Playbook-2-Practical-Guide-To-Penetration-Testing-By-Peter-Kim-Psycho.Killer.pdf https://t.co/mZyiroUbCT
"THE HACKER PLAYBOOK 2 渗透测试实战指导手册: https://t.co/u5MsC21Ly4 https://t.co/mZyiroUbCT"
-
[ Popular Software ] Vulnerability Deep Dive - Ichitaro Office Excel File Code Execution Vulnerability http://blog.talosintelligence.com/2017/02/vulnerability-deep-dive-ichitaro-office.html (using mona.py)
" Ichitaro Office 套装 Excel 代码执行漏洞分析: https://t.co/oKvGZaApq4 "
-
[ SecurityReport ] How does Locky ransomware compare to other threats? Our new Threat Landscape Dashboard ranks the top 10 strains:… https://twitter.com/i/web/status/835005354954080260
"McAfee 威胁监测平台排行的10大威胁: https://t.co/wDDEsUCkkY"
-
[ Tools ] OnionShare 1.0 is out! https://onionshare.org/ * Crash bug on old Macs is FIXED (!) * Supports stealth onion servi… https://t.co/vag1dta0cJ
"OnionShare -- 匿名文件分享工具: https://onionshare.org/"
-
[ Tools ] ShellNoob – Shellcode Writing Toolkit http://www.darknet.org.uk/2017/02/shellnoob-shellcode-writing-toolkit/
"ShellNoob -- 一个编写 shellcode 的工具包: https://t.co/2Cg56O5DwG"