腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Conference ] 2017 Linux 安全峰会的日程安排和议题列已公开: http://blog.namei.org/2017/07/11/linux-security-summit-2017-schedule-published/
-
[ Malware ] Adwind RAT 回归,此次目标是多国的航天工业: http://securityaffairs.co/wordpress/60897/malware/adwind-rat-campaign-2017.html
-
[ MalwareAnalysis ] Venis 勒索软件的逆向分析: https://crackinglandia.wordpress.com/2017/07/11/unpacking-malware-series-venis-ransomware/
-
[ Others ] 了解 .NET Runtime (CLR) 的内存使用情况: http://mattwarren.org/2017/07/10/Memory-Usage-Inside-the-CLR/
-
[ Popular Software ] Adobe 发布本月的漏洞公告,共修复两个产品的 6 个漏洞: https://threatpost.com/adobe-fixes-six-vulnerabilities-in-flash-connect-with-july-update/126747/
-
[ Popular Software ] MongoDB 多实例运行在同一主机的安全隐患: https://medium.com/@alexbyk/mongodb-at-shared-hosting-security-surprises-c441ecb84b54
-
[ Programming ] 新版本 C++ 语言(C++ 17/14/11)的新特性整理: https://github.com/AnthonyCalandra/modern-cpp-features
-
[ ReverseEngineering ] 游戏 CS:GO 一款作弊器的逆向分析: https://blog.badtrace.com/post/reverse-engineering-a-csgo-cheat/ 昨天腾讯游戏安全实验室也发表了一篇相关的分析文章《游戏 CS:GO VAC反外挂系统分析》: http://www.freebuf.com/news/139515.html
-
[ SecurityAdvisory ] Node.js 发布漏洞公告,修复了一个 Hash Table 常量种子造成的 Hash Flooding 远程拒绝服务漏洞: https://nodejs.org/en/blog/vulnerability/july-2017-security-releases/
-
[ Tools ] SlackShell - 基于 Slack API 的 PowerShell 版本 C&C 命令控制实现: https://github.com/bkup/SlackShell
-
[ Tools ] Social Engineering Toolkit (SET) v7.7 发布 : https://github.com/trustedsec/social-engineer-toolkit/releases/tag/7.7
-
[ Tools ] Winpayloads - 基于 Python2.7 编写的免杀 Windows Payload 生成器: https://github.com/nccgroup/Winpayloads
-
[ Tools ] 二进制代码比对工具 BinDiff 更新 4.3 版本,正式支持 macOS 系统了: https://www.zynamics.com/software.html
-
[ Virtualization ] VMware Horizon macOS 客户端的代码注入漏洞(CVE-2017-4918): https://bogner.sh/2017/07/cve-2017-4918-code-injection-in-vmware-horizons-macos-client/
-
[ Windows ] 通过 Excel.Application 对象的 RegisterXLL 方法加载 DLL: https://gist.github.com/ryhanson/227229866af52e2d963cf941af135a52
-
[ Windows ] 微软本月修复了一个 NTLM 凭据 Relay 攻击的漏洞: https://threatpost.com/microsoft-addresses-ntlm-bugs-that-facilitate-credential-relay-attacks/126752/
-
[ Linux ] 上周发布的 Linux 内核 4.12 版本在安全方面有哪些变化: https://outflux.net/blog/archives/2017/07/10/security-things-in-linux-v4-12/
-
[ Windows ] 利用 JS 加载 .Net 程序: https://3gstudent.github.io/3gstudent.github.io/%E5%88%A9%E7%94%A8JS%E5%8A%A0%E8%BD%BD.Net%E7%A8%8B%E5%BA%8F/