SecWiki周刊(第188期)
2017/10/02-2017/10/08
安全资讯
美国向WTO提交针对中国《网络安全法》相关措施的申辩文件
https://mp.weixin.qq.com/s/bnJqcY9pQjMY_Hnbj9fdYw
https://mp.weixin.qq.com/s/bnJqcY9pQjMY_Hnbj9fdYw
Gartner全球首发:2018年十大战略技术趋势
https://mp.weixin.qq.com/s/krmqJc755kE_j7oTGSJCXg
https://mp.weixin.qq.com/s/krmqJc755kE_j7oTGSJCXg
浅谈安全意识-从周鸿祎提到“大安全”想到的
https://mp.weixin.qq.com/s/bi49FZyRRgJON8t5bf-A3A
https://mp.weixin.qq.com/s/bi49FZyRRgJON8t5bf-A3A
首轮中美执法及网络安全对话成果清单
http://news.xinhuanet.com/world/2017-10/06/c_1121766852.htm
http://news.xinhuanet.com/world/2017-10/06/c_1121766852.htm
俄罗斯间谍是如何入侵雅虎的
https://mp.weixin.qq.com/s/Qc6ybgNg3iyjWxq2AJRpcQ
https://mp.weixin.qq.com/s/Qc6ybgNg3iyjWxq2AJRpcQ
安全技术
Discuz!X前台任意文件删除漏洞重现及分析
http://www.lsablog.com/network_security/penetration/discuzx-any-file-delete-repeat-and-analysis/
http://www.lsablog.com/network_security/penetration/discuzx-any-file-delete-repeat-and-analysis/
DDOS攻击应急预案
http://blog.nsfocus.net/ddos-attack-plan/
http://blog.nsfocus.net/ddos-attack-plan/
Joe Sandbox 在线恶意样本检测平台(支持多平台)
https://www.joesandbox.com/index.php/
https://www.joesandbox.com/index.php/
XSS Filter Evasion Cheat Sheet 中文版
https://www.zybuluo.com/laodao/note/9592?from=timeline
https://www.zybuluo.com/laodao/note/9592?from=timeline
PanDownload: 网盘下载器,支持百度云不限速度
https://github.com/cherryljr/PanDownload
https://github.com/cherryljr/PanDownload
PDNS数据驱动DGA分析
https://zhuanlan.zhihu.com/p/29894128
https://zhuanlan.zhihu.com/p/29894128
简析60度CMS的Cookies欺骗漏洞
http://www.freebuf.com/articles/web/149232.html
http://www.freebuf.com/articles/web/149232.html
Web Hacking 101 中文版
https://wizardforcel.gitbooks.io/web-hacking-101/content/
https://wizardforcel.gitbooks.io/web-hacking-101/content/
基于系统调用日志的 Android 恶意软件检测方法
http://www.4hou.com/technology/7856.html
http://www.4hou.com/technology/7856.html
在64位系统中使用ROP+Return-to-dl-resolve来绕过ASLR+DEP
http://www.freebuf.com/articles/system/149364.html
http://www.freebuf.com/articles/system/149364.html
Discuz!X 3.4 任意文件删除漏洞分析
https://mp.weixin.qq.com/s?__biz=MzAxNDY2MTQ2OQ==&mid=2650942631&idx=1&sn=12a3c55807768f12fcd1b306fdf775d8
https://mp.weixin.qq.com/s?__biz=MzAxNDY2MTQ2OQ==&mid=2650942631&idx=1&sn=12a3c55807768f12fcd1b306fdf775d8
VHostScan: HTTP Virtual Host Scanner
https://github.com/codingo/VHostScan
https://github.com/codingo/VHostScan
Slowhttptest攻击原理
http://mp.weixin.qq.com/s/0s3-e3JoPzu4l9c9hh3kFQ
http://mp.weixin.qq.com/s/0s3-e3JoPzu4l9c9hh3kFQ
无线渗透(序章)—MITM
http://mp.weixin.qq.com/s/lSzcSU8kPpKkgeYSjTGkyQ
http://mp.weixin.qq.com/s/lSzcSU8kPpKkgeYSjTGkyQ
Playing with Dynamic symbolic execution
http://www.miasm.re/blog/2017/10/05/playing_with_dynamic_symbolic_execution.html
http://www.miasm.re/blog/2017/10/05/playing_with_dynamic_symbolic_execution.html
自然语言处理数据集免费资源开放(附学习资料)
https://mp.weixin.qq.com/s/6caclvjj_jv2BcdWjeUFqg
https://mp.weixin.qq.com/s/6caclvjj_jv2BcdWjeUFqg
基于标记数据学习降低误报率的算法优化
http://www.freebuf.com/articles/others-articles/149524.html
http://www.freebuf.com/articles/others-articles/149524.html
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第188期)
