
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Attack ] Using Ubuntu .DESKTOP as a Malware Vector : http://blog.mazinahmed.net/2017/04/using-ubuntu-desktop-as-malware-vector.html
"将 Ubuntu 的 .desktop 文件作为新的攻击向量︰ https://t.co/IOFxaDSHvc"
-
[ Hardware ] Excellent whitepaper of Hacking the Belkin E-Series KVM Switch - including scripts - https://labs.portcullis.co.uk/whitepapers/hacking-the-belkin-e-series-omniview-2-port-kvm-switch/… https://t.co/9tGEgrjeoo
"对 Belkin E 系列的 Omniview 2-Port KVM Switch 进行修改使其变成按键记录器: https://t.co/hljYBBm0kD https://t.co/9tGEgrjeoo"
-
[ Others ] Automatically Inferring Malware Signatures for Anti-Virus Assisted Attacks : https://www.sec.cs.tu-bs.de/pubs/2017-asiaccs.pdf (pdf) ( h/t : @ kre80r )
"Automatically Inferring Malware Signatures for Anti-Virus Assisted Attacks(paper)︰ https://t.co/1l0ur2CBwR "
-
[ Popular Software ] Wire messenger server code open-sourced : https://github.com/wireapp/wire-server
"私密消息应用 Wire 的后端服务器源码︰ https://t.co/Zh22f65dEM"
-
[ Tools ] New #mimikatz 'creator update' for Windows 10 RS2 1707 with mimidrv (driver x86/x64) + mimilib (WinDBG plugin)… https://t.co/caqxku766F
"密码抓取工具 mimikatz 现已支持 Windows 10 RS2 : https://t.co/caqxku766F"
-
[ Tools ] Our early analysis: "epichero" is a 0-day exploit (RCE) for Avaya Call Server in NSA leak https://github.com/x0rz/EQGRP/tree/master/Linux/bin/epichero… https://t.co/bljxt9tqLF
"EQGRP - ShadowBrokers 最新曝光的 NSA 文件: https://github.com/x0rz/EQGRP/tree/master/Linux/bin/epichero"
-
[ Android ] CanSecWest 2017 会议上那篇关于 Android Chrome 逻辑漏洞检测的议题 PPT 已公开: https://www.slideshare.net/CanSecWest/csw2017-geshevmiller-logic-bug-hunting-in-chrome-on-android