
腾讯玄武实验室安全动态推送
Tencent Xuanwu Lab Security Daily News
-
[ Android ] Android adbd 错误配置导致的本地提权漏洞披露(CVE-2017-13212): https://labs.mwrinfosecurity.com/advisories/privilege-escalation-via-adbd-misconfiguration
-
[ Browser ] 让 WebAssembly 工作更快速:Firefox 新的流媒体与分层编译器: https://hacks.mozilla.org/2018/01/making-webassembly-even-faster-firefoxs-new-streaming-and-tiering-compiler/
-
[ Browser ] Microsoft Edge: Chakra: Incorrect scope handling(CVE-2018-0774): https://bugs.chromium.org/p/project-zero/issues/detail?id=1411
-
[ Browser ] Microsoft Edge: Chakra: JIT: Incorrect bounds calculation( CVE-2018-0769): https://bugs.chromium.org/p/project-zero/issues/detail?id=1390
-
[ Browser ] Microsoft Edge: Chakra: JIT: Loop analysis bug( CVE-2018-0777): https://bugs.chromium.org/p/project-zero/issues/detail?id=1429
-
[ MalwareAnalysis ] FireEye 近期发现 Microsoft Office 新漏洞被用来投递 Zyklon 恶意软件: https://www.fireeye.com/blog/threat-research/2018/01/microsoft-office-vulnerabilities-used-to-distribute-zyklon-malware.html
-
[ Mobile ] 比较 Samsungs ARM 与 Samsungs Qualcomm 的 Android 图像驱动: https://medium.com/@afd_icl/a-tale-of-two-samsungs-arm-vs-qualcomm-in-android-graphics-c1c6f1eef828
-
[ Others ] 揭密 Rig 漏洞利用工具包的 Anti-Bot 过滤方法: http://www.vkremez.com/2018/01/lets-learn-dissect-rig-exploit-kit-anti.html
-
[ Tools ] Android Nougat 中配置 Burp Suite: https://blog.ropnop.com/configuring-burp-suite-with-android-nougat/
-
[ Tools ] rust-sgx-sdk - 一个为 Rust 编程语言开发英特尔 SGX 应用程序提供的 SDK: https://github.com/baidu/rust-sgx-sdk
-
[ Tools ] ews-crack - Exchange ews 接口的暴力破解脚本: https://github.com/mikesiegel/ews-crack
-
[ Vulnerability ] Internet Systems Consortium(ISC) 为 BIND 导致 DNS 服务器崩溃的安全漏洞推出补丁: http://securityaffairs.co/wordpress/67851/hacking/bind-flaw-dns.html
-
[ Windows ] Windows 中的线程挂起机制解析(Windows Internals): https://ntopcode.wordpress.com/2018/01/16/anatomy-of-the-thread-suspension-mechanism-in-windows-windows-internals/
-
-
-
-
[ Vulnerability ] Cisco Talos 团队披露 Tinysvcmdns 空指针解引用导致的 DOS 漏洞(CVE-2017-12130 ): http://blog.talosintelligence.com/2018/01/vuln-spotlight-tinysvcmdns.html