SecWiki周刊(第302期)
2019/12/09-2019/12/15
安全资讯
2018-2019年网络安全行业深度报告
https://mp.weixin.qq.com/s/z-LN2AlMezEmJVekbDndcw
https://mp.weixin.qq.com/s/z-LN2AlMezEmJVekbDndcw
DARPA HIVE计划及其最新进展
https://mp.weixin.qq.com/s/_lzrhylYo9Z941ChqIgJIQ
https://mp.weixin.qq.com/s/_lzrhylYo9Z941ChqIgJIQ
安全技术
CobaltStrike进阶篇-批量上线
https://payloads.cn/2019/1213/cobaltstrike-advancedbatch-launch.html
https://payloads.cn/2019/1213/cobaltstrike-advancedbatch-launch.html
绕过CDN查找真实IP方法总结
https://mp.weixin.qq.com/s/_qHGB3l58KU01tBOki5uag
https://mp.weixin.qq.com/s/_qHGB3l58KU01tBOki5uag
H1ve--开源攻防训练平台
https://xz.aliyun.com/t/6889
https://xz.aliyun.com/t/6889
CobaltStrike与Metasploit实战联动
https://payloads.cn/2019/1211/cobaltstrike-and-metasploit-combat-linkage.html
https://payloads.cn/2019/1211/cobaltstrike-and-metasploit-combat-linkage.html
Weblogic-T3-CVE-2019-2890-Analysis
https://xz.aliyun.com/t/6904
https://xz.aliyun.com/t/6904
XSS Mind Map
https://i.redd.it/vquluqdm1a341.png
https://i.redd.it/vquluqdm1a341.png
靶场发展态势⑦持续网络训练环境(PCTE)1
https://mp.weixin.qq.com/s/aRLUVT4BpB4RKltJUpe9Ow
https://mp.weixin.qq.com/s/aRLUVT4BpB4RKltJUpe9Ow
APT-Sample Files
https://github.com/Cherishao/APT-Sample
https://github.com/Cherishao/APT-Sample
The Githubification of InfoSec
https://medium.com/@johnlatwc/the-githubification-of-infosec-afbdbfaad1d1
https://medium.com/@johnlatwc/the-githubification-of-infosec-afbdbfaad1d1
基于知识图谱的APT组织追踪治理
https://mp.weixin.qq.com/s/CluHeu1oy7DneBuR0cXZSQ
https://mp.weixin.qq.com/s/CluHeu1oy7DneBuR0cXZSQ
从研究者视角看漏洞研究之2010年代
https://mp.weixin.qq.com/s/UBZv0pd7Nr-o-NMxjV53RQ
https://mp.weixin.qq.com/s/UBZv0pd7Nr-o-NMxjV53RQ
AAAI-20论文解读:基于图神经网络的二进制代码分析
https://keenlab.tencent.com/zh/2019/12/10/Tencent-Keen-Security-Lab-Order-Matters/
https://keenlab.tencent.com/zh/2019/12/10/Tencent-Keen-Security-Lab-Order-Matters/
Exploiting XSS with 20 characters limitation
https://jlajara.gitlab.io/posts/2019/11/30/XSS_20_characters.html
https://jlajara.gitlab.io/posts/2019/11/30/XSS_20_characters.html
SecWiki周刊(第301期)
https://www.sec-wiki.com/weekly/301
https://www.sec-wiki.com/weekly/301
Docker容器安全性分析
https://www.freebuf.com/articles/system/221319.html
https://www.freebuf.com/articles/system/221319.html
知识、探索与状态平面组织的软件漏洞分析架构研究
http://jcs.iie.ac.cn/xxaqxb/ch/reader/view_abstract.aspx?file_no=20190602
http://jcs.iie.ac.cn/xxaqxb/ch/reader/view_abstract.aspx?file_no=20190602
Python中有潜在代码执行风险的函数(一)
https://xz.aliyun.com/t/6902
https://xz.aliyun.com/t/6902
Threat Hunter Playbook+Mordor Datasets+BinderHub=Infrastructure for Open Hunts
https://medium.com/threat-hunters-forge/threat-hunter-playbook-mordor-datasets-binderhub-open-infrastructure-for-open-8c8aee3d8b4
https://medium.com/threat-hunters-forge/threat-hunter-playbook-mordor-datasets-binderhub-open-infrastructure-for-open-8c8aee3d8b4
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第302期)
