
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Attack ] Retefe 银行木马最近添加了新组件 - NSA 的 EternalBlue SMB Exploit: https://threatpost.com/eternalblue-exploit-used-in-retefe-banking-trojan-campaign/128103/ https://www.proofpoint.com/us/threat-insight/post/retefe-banking-trojan-leverages-eternalblue-exploit-swiss-campaigns
-
[ Attack ] 一位安全工作者不小心将 Adobe 的 PGP 私钥泄漏到了网上: https://www.theregister.co.uk/2017/09/22/oh_dear_adobe_security_blog_leaks_private_key_info/
-
[ Browser ] 受 LiveOverflow 研究的启发,我发现另一个通过支付 API 实现的 Chrome popunder 技巧: https://t.co/ek4eQ0qdVq
-
[ Conference ] USENIX 2017 会议 x86 处理器微码逆向的视频: https://www.youtube.com/watch?v=I6dQfnb3y0I
-
[ Data Breach ] Amazon S3 buckets 上泄漏了 Verizon 内部无线网络的密码和基础架构信息: http://www.zdnet.com/article/another-verizon-leak-exposed-confidential-data-on-internal-systems/ https://threatpost.com/verizon-wireless-internal-credentials-infrastructure-details-exposed-in-amazon-s3-bucket/128108/
-
[ Detect ] DerbyCon 2017 会议一篇关于威胁检测的议题《Purpose Driven Hunt》: https://www.slideshare.net/JaredAtkinson/purpose-driven-hunt-derbycon-2017/1
-
[ Linux ] 来自 EuroBSDcon 2017 会议的演讲《Linux 系统性能分析方法论》: https://www.slideshare.net/brendangregg/eurobsdcon-2017-system-performance-analysis-methodologies
-
[ Malware ] 微软的 John Lambert 贴出了几张 Windows 版本 Python 后门样本的代码: https://twitter.com/JohnLaTwC/status/911994123103518720
-
[ Malware ] 微软的 John Lambert 贴出了几张 macOS 版 Python 后门样本的代码: https://twitter.com/JohnLaTwC/status/911998777182924801/photo/1
-
[ Network ] 过期的域名在渗透测试团队手里有大用处: http://threatexpress.com/2017/03/leveraging-expired-domains-for-red-team-engagements/
-
[ Network ] NetRipper - 智能流量嗅探工具,最近新添加对 Chrome X64 SSL Hook 的支持: https://github.com/NytroRST/NetRipper/
-
[ Pentest ] apt2 - 自动化渗透测试工具集: https://github.com/MooseDojo/apt2
-
[ ReverseEngineering ] DerbyCon 2017 会议一篇关于 IDAPython 的演讲: https://github.com/maddiestone/IDAPythonEmbeddedToolkit
-
[ SecurityReport ] CSE CybSec ZLAB 对 Petya 勒索软件的分析报告: http://securityaffairs.co/wordpress/63314/malware/cse-cybsec-zlab-report-petya.html http://csecybsec.com/download/zlab/Report_petya_final.pdf
-
[ Vulnerability ] Samba 发布漏洞公告,修复了两个 SMB 相关的中间人劫持漏洞(CVE-2017-12150/CVE-2017-12151): https://threatpost.com/samba-update-patches-two-smb-related-mitm-bugs/128090/
-
[ Vulnerability ] 用 Python 解释反序列化漏洞及其利用方法: https://dan.lousqui.fr/explaining-and-exploiting-deserialization-vulnerability-with-python-en.html
-
[ Web Security ] XSS 到底能干什么: https://docs.google.com/presentation/d/1v3Me8IWDuvSb1k96UB5RNyXE-hLHk0i6cf5MDJMaxuY/pub#slide=id.p
-
[ Windows ] 在 Windows Shellcode 中对 32 位和 64 位架构的判断: https://osandamalith.com/2017/09/24/detecting-architecture-in-windows/
-
[ Windows ] Batch, attach and patch: using windbg’s local kernel debugger to execute code in windows kernel。 利用 WinDbg 的本地内核调试器在 Windows 内核中执行代码: https://vallejo.cc/2015/06/07/batch-attach-and-patch-using-windbgs-local-kernel-debugger-to-execute-code-in-windows-kernel/
-
[ Windows ] 不是安全边界,Bypass UAC: https://www.slideshare.net/enigma0x3/not-a-security-boundary-bypassing-user-account-control
-
[ Windows ] Derbycon 2017 会议的演讲 《Windows Rootkit 开发 - 从 Python 原型实现到内核态的 C&C》: http://www.irongeek.com/i.php?page=videos/derbycon7/t310-windows-rootkit-development-python-prototyping-to-kernel-level-c2-rj-mcdown
-
[ WirelessSecurity ] SniffAir - 无线渗透测试框架: https://github.com/Tylous/SniffAir
-
[ WirelessSecurity ] 利用 KaLi Linux 的 MACChanger 工具 Bypass MAC Filtering: http://www.hackingtutorials.org/wifi-hacking-tutorials/bypass-mac-filtering-on-wireless-networks/
-
[ Android ] ANDROID 8.0 奥利奥版本在安全性方面的新变化: https://threatpost.com/whats-new-in-android-8-0-oreo-security/128061/
-
[ Attack ] 【中国公司开发的 GO 输入法被指会监视用户】。中国广州公司 GOMO Dev Team 开发的 GO 输入法被指会收集用户个人信息,以及下载危险的可执行代码: http://www.solidot.org/story?sid=53929
-
[ Browser ] iOS 11 中的 Safari WebKit 新版本有什么新特性: https://webkit.org/blog/7956/new-webkit-features-in-safari-11/
-
[ Browser ] Temporarily disabling escape analysis: https://v8project.blogspot.com/2017/09/disabling-escape-analysis.html
-
-
[ IoTDevice ] FLIR Systems 的热成像/红外摄像头被发现多个严重漏洞:https://blogs.securiteam.com/index.php/archives/3411
-
[ Linux ] 来自 SensePost 的 Linux 堆漏洞系列文章:The magicians cape - 一字节溢出: https://sensepost.com/blog/2017/linux-heap-exploitation-intro-series-the-magicians-cape-1-byte-overflow/
-
[ Malware ] EITest 利用技术支持诈骗的手法传播加密货币挖矿工具: http://blog.trendmicro.com/trendlabs-security-intelligence/eitest-campaign-uses-tech-support-scams-deliver-coinhives-monero-miner/
-
[ Popular Software ] Web 服务器管理控制面板软件 ZPanel 密码重置漏洞: https://blogs.securiteam.com/index.php/archives/3386
-
[ Popular Software ] HACK THE HACKER – 利用 WINAFL 和 HEATMAPS Fuzz Mimikatz: https://www.sec-consult.com/en/blog/2017/09/hack-the-hacker-fuzzing-mimikatz-on-windows-with-winafl-heatmaps-0day/index.html
-
[ SecurityReport ] 微软安全发布2017上半年勒索软件事件分析与统计图,来自 FreeBuf: http://www.freebuf.com/articles/paper/147638.html
-
[ Vulnerability ] McAfee Blog 对 Apache Struts CVE-2017-9805 远程代码执行漏洞的分析: https://securingtomorrow.mcafee.com/mcafee-labs/apache-struts-at-rest-analyzing-remote-code-execution-vulnerability-cve-2017-9805/
-
-
[ Windows ] dbghost.exe - Ghost And The Darkness: http://subt0x10.blogspot.com/2017/09/dbghostexe-ghost-in-darkness.html