腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Linux ] SLAE: Shell Reverse TCP Shellcode (Linux/x86): https://www.rcesecurity.com/2014/07/slae-shell-reverse-tcp-shellcode-linux-x86/
-
[ MalwareAnalysis ] 趋势科技对针对 BlackTech 网络间谍活动的分析: http://blog.trendmicro.com/trendlabs-security-intelligence/following-trail-blacktech-cyber-espionage-campaigns/
-
[ MalwareAnalysis ] NotPetya 技术分析part2 :深入挖掘及 MBR 恢复: https://www.crowdstrike.com/blog/petrwrap-technical-analysis-part-2-further-findings-and-potential-for-mbr-recovery/
-
-
[ Programming ] 《x86 汇编:探索 C,x86 汇编,机器码之间的关系》(书): https://en.wikibooks.org/w/index.php?title=Special:Book&bookcmd=download&collection_id=a8c705d7d0789c1d9c63aa0e0936076628a0b7e1&writer=rl&return_to=Wikibooks%3ACollections%2Fx86+Disassembly
-
[ Tools ] WSUXploit - 利用 WSUSpect 代理作为中间人成功注入假 WSUS 升级包的工具: http://pentestit.com/wsuxploit-weaponized-wsus-exploit-script/
-
[ Tools ] 利用 FRIDA 解锁私有软件的秘密: http://slides.com/oleavr/frida-rmll-2017#/
-
[ Tools ] Susanoo - 一个 REST API 安全测试框架: https://github.com/ant4g0nist/Susanoo
-
[ Tools ] sshttp - 可以将 SSH 服务隐藏在 HTTP 服务之后: https://github.com/stealth/sshttp
-
[ Tools ] filewatcher - macOS 系统一款监控进程资源访问情况的工具,比如可以监控指定进程的文件访问操作: https://github.com/m3liot/filewatcher
-
[ Tools ] LLDB 调试器将提供对 Linux 版 Intel(R) Processor Trace 的调试支持: https://reviews.llvm.org/rL306516
-
[ Tools ] dnssearch -子域名收集工具: https://github.com/evilsocket/dnssearch
-
-
[ MachineLearning ] 利用 CNN 破解 ICP 验证码: http://weibo.com/2033280760/FaWqjlSL3?ref=home&rid=8_0_8_2606540069133092225
-
-