腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ APT ] RAT Cook 行动:中国 APT 攻击者开始利用虚假权利的游戏泄漏资源作为诱饵: https://www.proofpoint.com/us/threat-insight/post/operation-rat-cook-chinese-apt-actors-use-fake-game-thrones-leaks-lures
-
[ Browser ] 今年 Pwn2Own 2017 比赛中 Tencent Sniper 战队攻击 Safari 所用的 JavaScriptCore 数组边界检查优化引入的漏洞(CVE-2017-2547),来自 ZDI Blog: https://www.zerodayinitiative.com/blog/2017/8/24/deconstructing-a-winning-webkit-pwn2own-entry
-
[ Industry News ] Aetna 通过信封窗口泄露了 12,000 个客户的艾滋病毒状况: https://www.grahamcluley.com/oops-aetna-exposed-12000-customers-hiv-statuses-envelope-window/
-
[ MalwareAnalysis ] 对 Ronggolawe 勒索软件的分析与防御: https://www.imperva.com/blog/2017/08/ronggolawe-ransomware-how-to-block-it/