SecWiki周刊(第149期)
2017/01/02-2017/01/08
安全资讯
美情报机构:俄罗斯涉嫌通过黑客攻击和散步虚假消息干预美国大选
http://www.freebuf.com/news/124662.html
http://www.freebuf.com/news/124662.html
国际航空订票系统存在漏洞,可轻易取消、修改航班预约
http://www.freebuf.com/news/124348.html
http://www.freebuf.com/news/124348.html
CyberZeist入侵FBI网站并泄露部分数据
http://www.mottoin.com/95023.html
http://www.mottoin.com/95023.html
《中国网络安全企业50强》(2016年下)发布
https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651069981&idx=1&sn=4e643b78aec9216406dd9a87464b150a&chksm=bd14aece8a6327d81168a5e8758d1c3acd4272dba5064203f4eba715a07df24be59811d6048c
https://mp.weixin.qq.com/s?__biz=MjM5Njc3NjM4MA==&mid=2651069981&idx=1&sn=4e643b78aec9216406dd9a87464b150a&chksm=bd14aece8a6327d81168a5e8758d1c3acd4272dba5064203f4eba715a07df24be59811d6048c
The FTC’s Internet of Things (IoT) Challenge
http://krebsonsecurity.com/2017/01/the-ftcs-internet-of-things-iot-challenge/
http://krebsonsecurity.com/2017/01/the-ftcs-internet-of-things-iot-challenge/
廊坊历险记 -- 传销窝点救人纪实
http://weibo.com/ttarticle/p/show?id=2309404060928751575242
http://weibo.com/ttarticle/p/show?id=2309404060928751575242
安全技术
SQLChop - 一个新型 SQL 注入检测引擎
https://blog.chaitin.cn/sqlchop-the-sqli-detection-engine/
https://blog.chaitin.cn/sqlchop-the-sqli-detection-engine/
SSRF漏洞的挖掘经验
https://sobug.com/article/detail/11
https://sobug.com/article/detail/11
2016 GIAC 全球互联网架构大会圆满结束,全部 PPT 开放下载
http://mp.weixin.qq.com/s/daAZ1tmcpsZt4pHdAW3oWg
http://mp.weixin.qq.com/s/daAZ1tmcpsZt4pHdAW3oWg
Python 格式化字符串漏洞(Django为例)
http://bobao.360.cn/learning/detail/3374.html
http://bobao.360.cn/learning/detail/3374.html
浅析ReDoS的原理与实践
http://www.freebuf.com/articles/network/124422.html
http://www.freebuf.com/articles/network/124422.html
内网渗透的一些工具和平台汇总
http://www.mottoin.com/95177.html
http://www.mottoin.com/95177.html
dedeCMS友情链接getshell漏洞分析
http://www.hackdig.com/01/hack-42372.htm
http://www.hackdig.com/01/hack-42372.htm
e107 CMS <=2.1.2 权限提升漏洞分析
http://bobao.360.cn/learning/detail/3368.html
http://bobao.360.cn/learning/detail/3368.html
【EXP】VMware vSphere Data Protection CVE-2016-7456 Authentication Bypass
https://github.com/phroxvs/metasploit-framework/blob/exploit_vdp_known_privkey/modules/exploits/linux/ssh/vmware_vdp_known_privkey.rb
https://github.com/phroxvs/metasploit-framework/blob/exploit_vdp_known_privkey/modules/exploits/linux/ssh/vmware_vdp_known_privkey.rb
33c32016 writeup
http://lorexxar.cn/2017/01/03/33c3-wp/
http://lorexxar.cn/2017/01/03/33c3-wp/
Kernel Exploitation -> Pool Overflow
http://www.fuzzysecurity.com/tutorials/expDev/20.html
http://www.fuzzysecurity.com/tutorials/expDev/20.html
BurpSuite插件开发Tips:请求响应参数的AES加解密
http://www.mottoin.com/95091.html
http://www.mottoin.com/95091.html
How to turn a DLL into a standalone EXE
https://hshrzd.wordpress.com/2016/07/21/how-to-turn-a-dll-into-a-standalone-exe/
https://hshrzd.wordpress.com/2016/07/21/how-to-turn-a-dll-into-a-standalone-exe/
Data Retrieval over DNS in SQL Injection Attacks
https://arxiv.org/ftp/arxiv/papers/1303/1303.3047.pdf
https://arxiv.org/ftp/arxiv/papers/1303/1303.3047.pdf
安卓Hook函数的复杂参数如何给定
https://xianzhi.aliyun.com/forum/read/611.html
https://xianzhi.aliyun.com/forum/read/611.html
DomainSeeker 多方式收集目标子域名信息
http://www.evilclay.com/2017/01/02/domain-seeker%E4%BA%8C%E7%BA%A7%E5%9F%9F%E5%90%8D%E6%94%B6%E9%9B%86%E8%84%9A%E6%9C%AC/
http://www.evilclay.com/2017/01/02/domain-seeker%E4%BA%8C%E7%BA%A7%E5%9F%9F%E5%90%8D%E6%94%B6%E9%9B%86%E8%84%9A%E6%9C%AC/
Technical analysis of CryptoMix/CryptFile2 ransomware
https://www.cert.pl/en/news/single/technical-analysis-of-cryptomixcryptfile2-ransomware/
https://www.cert.pl/en/news/single/technical-analysis-of-cryptomixcryptfile2-ransomware/
Invoke-TheHash:执行WMI和SMB命令的PowerShell脚本
http://www.mottoin.com/94990.html
http://www.mottoin.com/94990.html
Deep Learning Security Papers 深度学习与安全
http://www.covert.io/deep-learning-security-papers/
http://www.covert.io/deep-learning-security-papers/
GitPrey: GitHub敏感信息扫描工具
https://github.com/repoog/GitPrey
https://github.com/repoog/GitPrey
基于Spark GraphX实现微博二度关系推荐实践
http://weibo.com/ttarticle/p/show?id=2309404060500571876390
http://weibo.com/ttarticle/p/show?id=2309404060500571876390
Linux MySQL Udf 提权
http://www.91ri.org/16540.html
http://www.91ri.org/16540.html
自助终端机的常见入侵方式
https://www.t00ls.net/articles-24444.html
https://www.t00ls.net/articles-24444.html
2017年最好用的Android渗透工具合集
http://www.freebuf.com/sectool/124507.html
http://www.freebuf.com/sectool/124507.html
2016 GIAC 全球互联网架构大会圆满结束[PPT+视频]
https://mp.weixin.qq.com/s?__biz=MjM5NjQ4MjYwMQ==&mid=2664608640&idx=2&sn=446ba28dcbec21d1ed739c2e8bb1714b&chksm=bdce88c68ab901d04385aa5fd4d974a97bad02045ba0fa4ff411fb9577ea9612e0e168a7f6ef
https://mp.weixin.qq.com/s?__biz=MjM5NjQ4MjYwMQ==&mid=2664608640&idx=2&sn=446ba28dcbec21d1ed739c2e8bb1714b&chksm=bdce88c68ab901d04385aa5fd4d974a97bad02045ba0fa4ff411fb9577ea9612e0e168a7f6ef
33C3: Works for Me 中文翻译版
http://hardenedlinux.org/translation/2017/01/03/33c3-works-for-me.html
http://hardenedlinux.org/translation/2017/01/03/33c3-works-for-me.html
FIT 2017台前幕后大揭秘(附大会议题PPT)
http://www.freebuf.com/news/topnews/124133.html
http://www.freebuf.com/news/topnews/124133.html
基于 IP 地址的种子下载历史查询
http://iknowwhatyoudownload.com/en/peer/
http://iknowwhatyoudownload.com/en/peer/
My favorite DFIR(Digital Forensics and Incident Response) presentations for 2016
https://threatintel.eu/2016/12/30/my-favorite-dfir-presentations-for-2016/
https://threatintel.eu/2016/12/30/my-favorite-dfir-presentations-for-2016/
DOOM:分布式任务分发IP端口漏洞扫描器
http://www.mottoin.com/94946.html
http://www.mottoin.com/94946.html
通过Burp Collaborator插件利用SQL盲注
http://www.mottoin.com/95010.html
http://www.mottoin.com/95010.html
CTFCrackTools: 中国国内首个CTFcrack框架
https://github.com/0Linchen/CTFCrackTools
https://github.com/0Linchen/CTFCrackTools
The Beauty of Python Programming 「Python入门开源书籍」
https://funhacks.net/explore-python/
https://funhacks.net/explore-python/
Comprehensive insider threat mitigation resource list
http://www.nationalinsiderthreatsig.org/nitsig-insiderthreatsymposiumexporesources.html
http://www.nationalinsiderthreatsig.org/nitsig-insiderthreatsymposiumexporesources.html
如何绕过杀毒软件运行Mimikatz
http://www.mottoin.com/95145.html
http://www.mottoin.com/95145.html
SRC漏洞挖掘小见解
http://www.mottoin.com/95043.html
http://www.mottoin.com/95043.html
FBI Hacked and Leaked -New Year wishes from Anonymous[需翻墙]
http://pastebin.com/5vwz6Wj4
http://pastebin.com/5vwz6Wj4
Oracle的酒店管理平台RCE漏洞以及持卡人数据泄漏(CVE-2016-5663/4/5)
http://www.freebuf.com/vuls/123989.html
http://www.freebuf.com/vuls/123989.html
RESTful架构风格下的4大常见安全问题
https://mp.weixin.qq.com/s?__biz=MjM5MjY3OTgwMA==&mid=2652455776&idx=1&sn=047aea9144db8cf242e253083a0796a6&chksm=bd4f71778a38f861bd9399e96cf96a3d5f10a2cfbd73a8c5056c03335abd2baf73d61889c17c
https://mp.weixin.qq.com/s?__biz=MjM5MjY3OTgwMA==&mid=2652455776&idx=1&sn=047aea9144db8cf242e253083a0796a6&chksm=bd4f71778a38f861bd9399e96cf96a3d5f10a2cfbd73a8c5056c03335abd2baf73d61889c17c
安卓无线渗透利器:Hijacker
http://www.freebuf.com/sectool/124156.html
http://www.freebuf.com/sectool/124156.html
WEB2PY 反序列化的安全問題-CVE-2016-3957
http://devco.re/blog/2017/01/03/web2py-unserialize-code-execution-CVE-2016-3957/
http://devco.re/blog/2017/01/03/web2py-unserialize-code-execution-CVE-2016-3957/
scrapy爬虫教程导航
http://brucedone.com/archives/771
http://brucedone.com/archives/771
如何全面防御Webshell(下)
http://www.4hou.com/technology/2301.html
http://www.4hou.com/technology/2301.html
Technical details on the Fancy Bear Android malware (poprd30.apk)
http://blog.crysys.hu/2017/01/technical-details-on-the-fancy-bear-android-malware-poprd30-apk/
http://blog.crysys.hu/2017/01/technical-details-on-the-fancy-bear-android-malware-poprd30-apk/
使用Golang绕过杀毒软件
http://www.mottoin.com/95161.html
http://www.mottoin.com/95161.html
FirePhisha: full-fledged phishing framework to manage all phishing engagements
https://github.com/Raikia/FirePhish
https://github.com/Raikia/FirePhish
The Definitive Security Data Science and Machine Learning Guide
http://www.covert.io/the-definitive-security-datascience-and-machinelearning-guide/
http://www.covert.io/the-definitive-security-datascience-and-machinelearning-guide/
美团点评数据库中间件DBProxy开源
http://tech.meituan.com/dbproxy-pr.html
http://tech.meituan.com/dbproxy-pr.html
Exploiting difficult SQL injection vulnerabilities using sqlmap: Part 1
http://www.thegreycorner.com/2017/01/exploiting-difficult-sql-injection.html
http://www.thegreycorner.com/2017/01/exploiting-difficult-sql-injection.html
PentesterLab 的 Padding Oracle 漏洞靶机测试
http://www.mottoin.com/94991.html
http://www.mottoin.com/94991.html
iotdb: Nmap scans of Internet of Things devices
https://github.com/shodan-labs/iotdb
https://github.com/shodan-labs/iotdb
SMB Relay with Snarf
https://bluescreenofjeff.com/2016-02-19-smb-relay-with-snarfjs-making-the-most-of-your-mitm/
https://bluescreenofjeff.com/2016-02-19-smb-relay-with-snarfjs-making-the-most-of-your-mitm/
SQLMap Tamper Scripts Update ~ ForkBombers
http://www.forkbombers.com/2016/07/sqlmap-tamper-scripts-update.html
http://www.forkbombers.com/2016/07/sqlmap-tamper-scripts-update.html
Python script to inject existing Android applications with a Meterpreter payloa
https://github.com/sensepost/kwetza
https://github.com/sensepost/kwetza
40+ Intentionally Vulnerable Websites To (Legally) Practice Your Hacking Skills
https://www.bonkersabouttech.com/com.bonkersabouttech.model.response.BlogCategory@1e5325/40-intentionally-vulnerable-websites-to-practice-your-hacking-skills/392
https://www.bonkersabouttech.com/com.bonkersabouttech.model.response.BlogCategory@1e5325/40-intentionally-vulnerable-websites-to-practice-your-hacking-skills/392
ipscan: Angry IP Scanner
https://github.com/angryziber/ipscan
https://github.com/angryziber/ipscan
mitmAP:创建假AP和嗅探数据的简单工具
http://www.mottoin.com/94979.html
http://www.mottoin.com/94979.html
物联网安全切入点(后有白皮书下载链接)
http://www.secjia.com/report/NSFOCUS-IoT-Security-Whitepaper.pdf
http://www.secjia.com/report/NSFOCUS-IoT-Security-Whitepaper.pdf
mach portal漏洞利用的一些细节
http://blog.pangu.io/mach-portal-details/
http://blog.pangu.io/mach-portal-details/
US Govt Data Shows Russia Used Outdated Ukrainian PHP Malware
https://www.wordfence.com/blog/2016/12/russia-malware-ip-hack/
https://www.wordfence.com/blog/2016/12/russia-malware-ip-hack/
PowerShell Empire | Building an Empire with PowerShell
http://www.powershellempire.com/
http://www.powershellempire.com/
Mac Malware of 2016: a cumulative analysis of new OS X malware
http://objective-see.com/blog/blog_0x16.html
http://objective-see.com/blog/blog_0x16.html
Improvements in rogue ap attacks – mana 1/2
https://sensepost.com/blog/2015/improvements-in-rogue-ap-attacks-mana-1-2/
https://sensepost.com/blog/2015/improvements-in-rogue-ap-attacks-mana-1-2/
[Bug Bounty] GitHub Enterprise SQL Injection
http://blog.orange.tw/2017/01/bug-bounty-github-enterprise-sql-injection.html
http://blog.orange.tw/2017/01/bug-bounty-github-enterprise-sql-injection.html
Introducing rkt’s ability to automatically detect privilege escalation attacks on containers
https://coreos.com/blog/rkt-detect-privilege-escalation.html
https://coreos.com/blog/rkt-detect-privilege-escalation.html
IoT Trust Framework: The foundation for future IoT certification programs
https://www.helpnetsecurity.com/2017/01/05/iot-trust-framework/
https://www.helpnetsecurity.com/2017/01/05/iot-trust-framework/
Open Source Malware Lab 相关开源系统介绍[论文+视频]
https://www.virusbulletin.com/blog/2017/01/vb2016-paper-open-source-malware-lab/
https://www.virusbulletin.com/blog/2017/01/vb2016-paper-open-source-malware-lab/
持久化 XSS:被 ServiceWorkers 支配的恐惧
http://www.mottoin.com/95058.html
http://www.mottoin.com/95058.html
Operative - The Fingerprint Framework
https://github.com/graniet/operative-framework
https://github.com/graniet/operative-framework
Safari Reader UXSS
http://alf.nu/SafariReaderUXSS
http://alf.nu/SafariReaderUXSS
Binary Ninja plugin to decompile binaries using RetDec API
https://github.com/hugsy/binja-retdec
https://github.com/hugsy/binja-retdec
Fresh Veil - Automatically Generating Payloads
https://bluescreenofjeff.com/2014-04-17-Fresh-Veil-Automatically-Generating-Payloads/
https://bluescreenofjeff.com/2014-04-17-Fresh-Veil-Automatically-Generating-Payloads/
基于Spark的公安大数据实时运维技术实践
http://mp.weixin.qq.com/s?__biz=MzA4Mzc0NjkwNA==&mid=2650781974&idx=2&sn=e07c921425016ec1f626dbada6caed6a&chksm=87fad021b08d593726b97819c668d7fb51f2fb4a86bb1aef2b13cc9cb09d703bf3b2bba2d7d7
http://mp.weixin.qq.com/s?__biz=MzA4Mzc0NjkwNA==&mid=2650781974&idx=2&sn=e07c921425016ec1f626dbada6caed6a&chksm=87fad021b08d593726b97819c668d7fb51f2fb4a86bb1aef2b13cc9cb09d703bf3b2bba2d7d7
An evolutionary knowledge-based fuzzer
https://github.com/CENSUS/choronzon
https://github.com/CENSUS/choronzon
对斐讯Fir302B路由器进行的渗透测试
http://www.freebuf.com/articles/terminal/124069.html
http://www.freebuf.com/articles/terminal/124069.html
[another] intercepting proxy
https://sensepost.com/blog/2015/another-intercepting-proxy/
https://sensepost.com/blog/2015/another-intercepting-proxy/
IoT Home Inspector Challenge 物联网安全防护工具大赛
https://www.ftc.gov/iot-home-inspector-challenge
https://www.ftc.gov/iot-home-inspector-challenge
Mac Malware of 2016 | a cumulative analysis of new OS X malware
https://objective-see.com/blog/blog_0x16.html
https://objective-see.com/blog/blog_0x16.html
Wadi fuzzer
https://sensepost.com/blog/2015/wadi-fuzzer/
https://sensepost.com/blog/2015/wadi-fuzzer/
33C3: Analyzing Embedded Operating System Random Number Generators ←
http://samvartaka.github.io/cryptanalysis/2017/01/03/33c3-embedded-rngs
http://samvartaka.github.io/cryptanalysis/2017/01/03/33c3-embedded-rngs
2016年数据泄露年度汇总
https://www.t00ls.net/articles-37542.html
https://www.t00ls.net/articles-37542.html
SensePost | Abusing file converters
https://sensepost.com/blog/2015/abusing-file-converters/
https://sensepost.com/blog/2015/abusing-file-converters/
2016中国电脑恶意程序伪装与欺骗性研究报告
http://www.freebuf.com/articles/system/124350.html
http://www.freebuf.com/articles/system/124350.html
how to setup a rasperry pi 2 model b for wlan sniffing
http://blog.x1622.com/2016/12/how-to-setup-rasperry-pi-2-model-b-for.html
http://blog.x1622.com/2016/12/how-to-setup-rasperry-pi-2-model-b-for.html
Apache mod_rewrite Grab Bag
https://bluescreenofjeff.com/2016-12-23-apache_mod_rewrite_grab_bag/
https://bluescreenofjeff.com/2016-12-23-apache_mod_rewrite_grab_bag/
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第149期)
