SecWiki周刊(第207期)
2018/02/12-2018/02/18
安全资讯
NBC公布一个包含20万条被删除推文的数据库
https://www.cnbeta.com/articles/tech/699215.htm
https://www.cnbeta.com/articles/tech/699215.htm
意大利反腐机构使用洋葱服务建立告密平台
https://www.solidot.org/story?sid=55549
https://www.solidot.org/story?sid=55549
安全技术
Hiding in the Cloud: Cobalt Strike Beacon C2 using Amazon APIs
https://rhinosecuritylabs.com/aws/hiding-cloudcobalt-strike-beacon-c2-using-amazon-apis/
https://rhinosecuritylabs.com/aws/hiding-cloudcobalt-strike-beacon-c2-using-amazon-apis/
NrsMiner:一个构造精密的挖矿僵尸网络
https://www.anquanke.com/post/id/98272
https://www.anquanke.com/post/id/98272
[漏洞复现]zzcms8.2#任意用户密码重置#del.php时间盲注#复现
http://www.cnblogs.com/ak47boom/p/8449120.html
http://www.cnblogs.com/ak47boom/p/8449120.html
CNCERT 2018年1月我国DDoS攻击资源分析报告
http://www.freebuf.com/articles/network/162825.html
http://www.freebuf.com/articles/network/162825.html
Stealing Data With CSS: Attack and Defense
https://www.mike-gualtieri.com/posts/stealing-data-with-css-attack-and-defense
https://www.mike-gualtieri.com/posts/stealing-data-with-css-attack-and-defense
Elk + Osquery + Kolide Fleet = Love
https://jordanpotti.com/2018/02/16/elk-osquery-kolide-fleet-love/
https://jordanpotti.com/2018/02/16/elk-osquery-kolide-fleet-love/
Loading "fileless" Shared Objects (memfd_create + dlopen)
https://x-c3ll.github.io/posts/fileless-memfd_create/
https://x-c3ll.github.io/posts/fileless-memfd_create/
Stealing SSH credentials Another Approach.
https://mthbernardes.github.io/persistence/2018/02/10/stealing-ssh-credentials-another-approach.html
https://mthbernardes.github.io/persistence/2018/02/10/stealing-ssh-credentials-another-approach.html
Asuswrt RT-AC68U 华硕路由器文件删除漏洞 && 栈溢出
http://www.cnblogs.com/iamstudy/articles/Asuswrt_RT-AC68U_CVE-2018-6636_Detail.html
http://www.cnblogs.com/iamstudy/articles/Asuswrt_RT-AC68U_CVE-2018-6636_Detail.html
Acunetix Web Vulnerability Scanner Update最新版本,提取码:hrf6
https://pan.baidu.com/s/1o7JBOAu
https://pan.baidu.com/s/1o7JBOAu
Redis未授权访问漏洞的重现与利用
http://www.freebuf.com/vuls/162035.html
http://www.freebuf.com/vuls/162035.html
freshonions-torscraper: TOR spider / hidden service onion crawler
https://github.com/dirtyfilthy/freshonions-torscraper
https://github.com/dirtyfilthy/freshonions-torscraper
Analyzing GrandSoft Exploit Kit
http://www.nao-sec.org/2018/02/analyzing-grandsoft-exploit-kit.html
http://www.nao-sec.org/2018/02/analyzing-grandsoft-exploit-kit.html
yispider: 一款分布式爬虫平台
https://github.com/2young2simple/yispider
https://github.com/2young2simple/yispider
某租车系统JAVA代码审计
http://www.freebuf.com/articles/web/162910.html
http://www.freebuf.com/articles/web/162910.html
src_edu: edu站点及其对应的子域名
https://github.com/v1cker/src_edu
https://github.com/v1cker/src_edu
Mostly CTF notes
https://github.com/Shiva108/CTF-notes
https://github.com/Shiva108/CTF-notes
Zero-day vulnerability in Telegram
https://securelist.com/zero-day-vulnerability-in-telegram/83800/
https://securelist.com/zero-day-vulnerability-in-telegram/83800/
A tool for automating cracking methodologies through Hashcat from the TrustedSec
https://github.com/trustedsec/hate_crack
https://github.com/trustedsec/hate_crack
我对OAuth协议安全性的一点思考
https://www.anquanke.com/post/id/98392
https://www.anquanke.com/post/id/98392
Analysis-Tools: 恶意软件分析套件
https://github.com/ExpLife/Analysis-Tools
https://github.com/ExpLife/Analysis-Tools
t-pot-autoinstall: Autoinstall T-Pot on Ubuntu 16.04
https://github.com/dtag-dev-sec/t-pot-autoinstall
https://github.com/dtag-dev-sec/t-pot-autoinstall
2017年 AI安全风险白皮书
https://www.anquanke.com/post/id/98300
https://www.anquanke.com/post/id/98300
use-powershell-to-find-the-history-of-usb-flash-drive-usage
https://blogs.technet.microsoft.com/heyscriptingguy/2012/05/18/use-powershell-to-find-the-history-of-usb-flash-drive-usage/
https://blogs.technet.microsoft.com/heyscriptingguy/2012/05/18/use-powershell-to-find-the-history-of-usb-flash-drive-usage/
Olympic Destroyer Takes Aim At Winter Olympics
http://blog.talosintelligence.com/2018/02/olympic-destroyer.html
http://blog.talosintelligence.com/2018/02/olympic-destroyer.html
Attacks Against Windows PXE Boot Images
https://blog.netspi.com/attacks-against-windows-pxe-boot-images/
https://blog.netspi.com/attacks-against-windows-pxe-boot-images/
Exploitation challenges for CTF
https://github.com/abhisek/pwnworks
https://github.com/abhisek/pwnworks
The bug bounty program that changed my life
http://10degres.net/the-bugbounty-program-that-changed-my-life/
http://10degres.net/the-bugbounty-program-that-changed-my-life/
针对“DorkBot”的样本分析
http://www.freebuf.com/articles/network/162324.html
http://www.freebuf.com/articles/network/162324.html
A collection of vulnerable ARM binaries for practicing exploit development
https://github.com/Billy-Ellis/Exploit-Challenges
https://github.com/Billy-Ellis/Exploit-Challenges
Antivirus Scanning of a PCAP File
http://www.netresec.com/?page=Blog&month=2018-02&post=Antivirus-Scanning-of-a-PCAP-File
http://www.netresec.com/?page=Blog&month=2018-02&post=Antivirus-Scanning-of-a-PCAP-File
Buckhacker – Search Amazon Server Data
https://uwnthesis.wordpress.com/2018/02/14/buckhacker-search-amazon-server-data/
https://uwnthesis.wordpress.com/2018/02/14/buckhacker-search-amazon-server-data/
Fully undetected backdoor with RSA Encrypted shell
https://github.com/Eitenne/TopHat
https://github.com/Eitenne/TopHat
vshadow-abusing-the-volume-shadow-service-for-evasion-persistence-and-active-dir
https://bohops.com/2018/02/10/vshadow-abusing-the-volume-shadow-service-for-evasion-persistence-and-active-directory-database-extraction/
https://bohops.com/2018/02/10/vshadow-abusing-the-volume-shadow-service-for-evasion-persistence-and-active-directory-database-extraction/
WhatsApp取证:解密数据库并提取Android设备上已删除信息
http://www.4hou.com/mobile/10404.html
http://www.4hou.com/mobile/10404.html
MySQL UDF Exploitation
https://osandamalith.com/2018/02/11/mysql-udf-exploitation/
https://osandamalith.com/2018/02/11/mysql-udf-exploitation/
Standards related to Threat Intelligence
https://www.threat-intelligence.eu/standards/
https://www.threat-intelligence.eu/standards/
关于浏览器安全的会议PPT
https://www.kanxue.com/book-9-208.htm
https://www.kanxue.com/book-9-208.htm
Pymap-Scanner - Python Scanner with
https://github.com/azizaltuntas/Pymap-Scanner
https://github.com/azizaltuntas/Pymap-Scanner
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第207期)
