SecWiki周刊(第245期)
2018/11/05-2018/11/11
安全资讯
台男子钻银行系统漏洞狂刷6300万新台币 银行被罚
https://nosec.org/home/detail/1947.html
https://nosec.org/home/detail/1947.html
卡巴斯基2018年第三季度DDoS攻击报告
https://mp.weixin.qq.com/s/_uI51cd_D2WBe0_0BqPRNA
https://mp.weixin.qq.com/s/_uI51cd_D2WBe0_0BqPRNA
年度最佳钓鱼高手 Elon Musk 比特币钓鱼 日获28 BTC
https://nosec.org/home/detail/1939.html
https://nosec.org/home/detail/1939.html
Shellbot僵尸网络:目标物联网设备和Linux服务器
https://nosec.org/home/detail/1937.html
https://nosec.org/home/detail/1937.html
印象笔记曝出存储XSS漏洞,可导致命令执行和文件读取
https://nosec.org/home/detail/1948.html
https://nosec.org/home/detail/1948.html
大疆无人机曝数据泄露漏洞
https://nosec.org/home/detail/1951.html
https://nosec.org/home/detail/1951.html
美国运通近70万条印度客户明文数据泄露
https://nosec.org/home/detail/1952.html
https://nosec.org/home/detail/1952.html
安全技术
CCS 2018 会议小记 (一)
https://mp.weixin.qq.com/s/FYZSZGGHgNxaWPPGgp9vKA
https://mp.weixin.qq.com/s/FYZSZGGHgNxaWPPGgp9vKA
APT37 移动武器库KevDroid在中国境内攻击行动披露 -- PART 1
https://cert.360.cn/warning/detail?id=164208b67b44a5ffa195d574d9c3a205
https://cert.360.cn/warning/detail?id=164208b67b44a5ffa195d574d9c3a205
A platform to provide challenge for CTFer
https://github.com/CTFTraining
https://github.com/CTFTraining
Decrypting Traffic in Wireshark
https://hatsoffsecurity.com/2018/10/30/decrypting-traffic-in-wireshark/
https://hatsoffsecurity.com/2018/10/30/decrypting-traffic-in-wireshark/
Identifying Sites in Encrypted Traffic
https://hatsoffsecurity.com/2018/10/29/id-site-from-ssl/
https://hatsoffsecurity.com/2018/10/29/id-site-from-ssl/
Security Bugs in Practice: SSRF via Request Splitting
https://www.rfk.id.au/blog/entry/security-bugs-ssrf-via-request-splitting/
https://www.rfk.id.au/blog/entry/security-bugs-ssrf-via-request-splitting/
BFuzz: Chrome 和 Firefox 浏览器的 fuzz 工具
https://github.com/RootUp/BFuzz
https://github.com/RootUp/BFuzz
Gogs 远程命令执行漏洞分析
https://www.anquanke.com/post/id/163575
https://www.anquanke.com/post/id/163575
从ChimayRed漏洞看不同架构下的栈溢出利用实践
https://mp.weixin.qq.com/s/q1zHgQ864u4t9QlzSIzoZw
https://mp.weixin.qq.com/s/q1zHgQ864u4t9QlzSIzoZw
宝塔面板6.x版本前台存储xss+后台csrf组合拳getshell
https://nosec.org/home/detail/1946.html
https://nosec.org/home/detail/1946.html
Suricata规则介绍、以及使用suricata-update做规则管理
https://zhuanlan.zhihu.com/p/36340468
https://zhuanlan.zhihu.com/p/36340468
Cobaltstrike Over External C2 via Dropbox
https://truneski.github.io/blog/2018/11/05/cobaltstrike-over-external-c2-via-dropbox/
https://truneski.github.io/blog/2018/11/05/cobaltstrike-over-external-c2-via-dropbox/
如何通过中间人攻击嗅探SIM卡的流量通信
https://www.freebuf.com/articles/wireless/188383.html
https://www.freebuf.com/articles/wireless/188383.html
深度解读零信任身份安全专栏
https://www.secrss.com/specials/ed13a8905f42b1d7
https://www.secrss.com/specials/ed13a8905f42b1d7
开源Botnet框架Byob分析
https://www.freebuf.com/sectool/187819.html?from=timeline
https://www.freebuf.com/sectool/187819.html?from=timeline
最新VirtualBox 0day漏洞公开
https://nosec.org/home/detail/1950.html
https://nosec.org/home/detail/1950.html
浅谈大型互联网的企业入侵检测及防护策略
https://mp.weixin.qq.com/s/1Iry620hCkJ8sHA626T3Dg
https://mp.weixin.qq.com/s/1Iry620hCkJ8sHA626T3Dg
Nuxeo RCE漏洞分析
http://www.polaris-lab.com/index.php/archives/613/
http://www.polaris-lab.com/index.php/archives/613/
Linux下的Rootkit驻留技术分析
http://blog.topsec.com.cn/ad_lab/linux%e4%b8%8b%e7%9a%84rootkit%e9%a9%bb%e7%95%99%e6%8a%80%e6%9c%af%e5%88%86%e6%9e%90/
http://blog.topsec.com.cn/ad_lab/linux%e4%b8%8b%e7%9a%84rootkit%e9%a9%bb%e7%95%99%e6%8a%80%e6%9c%af%e5%88%86%e6%9e%90/
固态硬盘被发现硬盘加密绕过漏洞
https://nosec.org/home/detail/1938.html
https://nosec.org/home/detail/1938.html
挖洞姿势-Jsonp劫持
http://www.fr1sh.com/?post=20
http://www.fr1sh.com/?post=20
Intro to Binary Analysis with Z3 and Angr
https://labs.mwrinfosecurity.com/publications/intro-to-binary-analysis-with-z3-and-angr
https://labs.mwrinfosecurity.com/publications/intro-to-binary-analysis-with-z3-and-angr
LogonTracer:可视化事件日志识别被攻击账户
https://www.freebuf.com/sectool/180895.html
https://www.freebuf.com/sectool/180895.html
.hta文件的后渗透利用(绕过PowerShell的限制模式)
https://nosec.org/home/detail/1949.html
https://nosec.org/home/detail/1949.html
勒索软件解密工具大全
http://www.mottoin.com/tools/96226.html
http://www.mottoin.com/tools/96226.html
Forensic Analysis Of The μTorrent Peer-to-Peer Client In Windows
https://articles.forensicfocus.com/2018/11/02/forensic-analysis-of-the-%CE%BCtorrent-peer-to-peer-client-in-windows/
https://articles.forensicfocus.com/2018/11/02/forensic-analysis-of-the-%CE%BCtorrent-peer-to-peer-client-in-windows/
用神经推理来帮助命名实体识别
https://mp.weixin.qq.com/s/4qHgIcq9YJTj1iGh7kLB4w
https://mp.weixin.qq.com/s/4qHgIcq9YJTj1iGh7kLB4w
Google的CTF源码及解答
https://github.com/google/google-ctf/tree/master/2018/finals
https://github.com/google/google-ctf/tree/master/2018/finals
隧道技术之DNS和ICMP与其检测防御
https://www.anquanke.com/post/id/163240
https://www.anquanke.com/post/id/163240
gshark: Scan for sensitive information in Github easily and effectively
https://github.com/neal1991/gshark
https://github.com/neal1991/gshark
一个利用姿势清奇的11882格式溢出文档的分析
https://www.anquanke.com/post/id/163855
https://www.anquanke.com/post/id/163855
common-windows-misconfigurations-scheduled-tasks
https://amonsec.net/windows-security/2018/common-windows-misconfigurations-scheduled-tasks
https://amonsec.net/windows-security/2018/common-windows-misconfigurations-scheduled-tasks
carbon-black-quarterly-incident-response-threat-report-november-2018
https://www.carbonblack.com/wp-content/uploads/2018/10/carbon-black-quarterly-incident-response-threat-report-november-2018.pdf
https://www.carbonblack.com/wp-content/uploads/2018/10/carbon-black-quarterly-incident-response-threat-report-november-2018.pdf
西门子通信协议S7COMM(Part 1)
https://www.freebuf.com/articles/ics-articles/188159.html
https://www.freebuf.com/articles/ics-articles/188159.html
如何解决机器学习和安全运营之间的不匹配问题
http://www.4hou.com/technology/14382.html
http://www.4hou.com/technology/14382.html
A new Control Flow Graph based heuristic for Diaphora
http://joxeankoret.com/blog/2018/11/04/new-cfg-based-heuristic-diaphora/
http://joxeankoret.com/blog/2018/11/04/new-cfg-based-heuristic-diaphora/
50个最佳机器学习公共数据集
https://mp.weixin.qq.com/s/4jhtCUtv_szfMvyDCWKvoQ
https://mp.weixin.qq.com/s/4jhtCUtv_szfMvyDCWKvoQ
最新微软Edge浏览器RCE 0day即将放出
https://nosec.org/home/detail/1935.html
https://nosec.org/home/detail/1935.html
2018年上半年物联网恶意活动&僵尸网络数据摘要
https://www.freebuf.com/news/188339.html
https://www.freebuf.com/news/188339.html
SQLMap Insert注入踩坑记
https://www.freebuf.com/articles/web/188402.html
https://www.freebuf.com/articles/web/188402.html
Shodan能力分析(二)
https://mp.weixin.qq.com/s/CVI_FbQ_Yo_FvYm7CuJzOQ
https://mp.weixin.qq.com/s/CVI_FbQ_Yo_FvYm7CuJzOQ
Triton针对工业系统的形势分析以及检测手段
https://mp.weixin.qq.com/s/Nel6neXIHw5yXOsNzihQLA
https://mp.weixin.qq.com/s/Nel6neXIHw5yXOsNzihQLA
知识图谱的建模方法及其应用
https://mp.weixin.qq.com/s/u7mvxrvudKmjX4KeGtBiWA
https://mp.weixin.qq.com/s/u7mvxrvudKmjX4KeGtBiWA
T级攻击态势下解析DDOS高防IP系统架构
https://www.freebuf.com/articles/network/188199.html
https://www.freebuf.com/articles/network/188199.html
Stucco-A Cyber Intelligence Platform
https://stucco.github.io/
https://stucco.github.io/
SecWiki周刊(第244期)
https://www.sec-wiki.com/weekly/244
https://www.sec-wiki.com/weekly/244
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第245期)
