SecWiki周刊(第335期)
2020/07/27-2020/08/02
安全技术
记 MOSEC 2020 及上海一游 (2)
https://zhuanlan.zhihu.com/p/164905986
https://zhuanlan.zhihu.com/p/164905986
记 MOSEC 2020 及上海一游 (1)
https://zhuanlan.zhihu.com/p/163528893
https://zhuanlan.zhihu.com/p/163528893
Shiro回显利用工具(更新为burp插件
https://mp.weixin.qq.com/s/LSmO0R-9D2Tj-zRxDu7wWw
https://mp.weixin.qq.com/s/LSmO0R-9D2Tj-zRxDu7wWw
NETGEAR httpd缓冲区溢出漏洞分析
https://mp.weixin.qq.com/s/bDCOmABucnhPfquvEmH0hA
https://mp.weixin.qq.com/s/bDCOmABucnhPfquvEmH0hA
r3kapig:校园明星 CTF 战队的奇幻养成之旅
https://zhuanlan.zhihu.com/p/163375485
https://zhuanlan.zhihu.com/p/163375485
抛砖引玉之CobaltStrike4.1的BOF
https://mp.weixin.qq.com/s/-jU4HrPtB8rD4cmqAKZOZw
https://mp.weixin.qq.com/s/-jU4HrPtB8rD4cmqAKZOZw
Android渗透测试HTTPS证书校验绕过
https://xz.aliyun.com/t/8047
https://xz.aliyun.com/t/8047
近源渗透测试之Keylogger实战
https://mp.weixin.qq.com/s/ra_N5dkhZOcHmdHuzl-oQw
https://mp.weixin.qq.com/s/ra_N5dkhZOcHmdHuzl-oQw
基于Redis的扫描器任务调度设计方案
https://mp.weixin.qq.com/s/BoAcBD4cVaZZ4OZ_uHdBng
https://mp.weixin.qq.com/s/BoAcBD4cVaZZ4OZ_uHdBng
RAID 2020 论文录用列表
https://mp.weixin.qq.com/s/WoDK9X3bg_WNy12EC_Hz7g
https://mp.weixin.qq.com/s/WoDK9X3bg_WNy12EC_Hz7g
SecWiki周刊(第334期)
https://www.sec-wiki.com/weekly/334
https://www.sec-wiki.com/weekly/334
工控防火墙测试之功能篇_Fuzzing测试
https://mp.weixin.qq.com/s/Qn7-bl5Qvw6_Qtg9QYKZ7w
https://mp.weixin.qq.com/s/Qn7-bl5Qvw6_Qtg9QYKZ7w
shiro 不需要dnslog gadget的探测方式(附工具下载)
https://mp.weixin.qq.com/s/U8Y_8DCPoPiTL-OHwry5Qw
https://mp.weixin.qq.com/s/U8Y_8DCPoPiTL-OHwry5Qw
内外网资产对应关系定位 [ 补 ]
https://mp.weixin.qq.com/s/zrJ2yP6B64A-iFnBdea9PQ
https://mp.weixin.qq.com/s/zrJ2yP6B64A-iFnBdea9PQ
从零开始写一个迷你版的Tomcat
https://xie.infoq.cn/article/3f9f21aedf587862cc54a9d1e
https://xie.infoq.cn/article/3f9f21aedf587862cc54a9d1e
现代化SOAR的产品化落地(一)
https://mp.weixin.qq.com/s/E72-K43f-TkLv2WIHqKyKA
https://mp.weixin.qq.com/s/E72-K43f-TkLv2WIHqKyKA
构建基于攻防实效的安全体系
https://mp.weixin.qq.com/s/75qiSkXkzP5CJ2pA_8tTyQ
https://mp.weixin.qq.com/s/75qiSkXkzP5CJ2pA_8tTyQ
PHP Webshell那些事-攻击篇
https://mp.weixin.qq.com/s/FgzIm-IK02rjEf3JvxOxrw
https://mp.weixin.qq.com/s/FgzIm-IK02rjEf3JvxOxrw
从开源组件安全现状浅谈开源组件安全运营
https://zhuanlan.zhihu.com/p/164610491
https://zhuanlan.zhihu.com/p/164610491
甲方黑盒扫描器建设杂谈(一)
http://phantom0301.cc/2020/07/25/myscanner/
http://phantom0301.cc/2020/07/25/myscanner/
小窥深度学习框架中的安全问题
https://mp.weixin.qq.com/s/SQ3eF534Rr9dHWGLRVseIQ
https://mp.weixin.qq.com/s/SQ3eF534Rr9dHWGLRVseIQ
Cisco ASA/FTD未授权文件删除漏洞简要分析
https://mp.weixin.qq.com/s/4NPVp-ktyTIT0HfvFgV9wQ
https://mp.weixin.qq.com/s/4NPVp-ktyTIT0HfvFgV9wQ
网络空间地理学+可视化技术
https://mp.weixin.qq.com/s/53wDSOuSrvybTtHrh10i-Q
https://mp.weixin.qq.com/s/53wDSOuSrvybTtHrh10i-Q
APT trends report Q2 2020
https://securelist.com/apt-trends-report-q2-2020/97937/
https://securelist.com/apt-trends-report-q2-2020/97937/
XSS Game 分析以及知识点总结
https://www.freebuf.com/articles/web/245209.html
https://www.freebuf.com/articles/web/245209.html
Mining DNS MX Records for Fun and Profit
http://www.covert.io/mining-mx-records-for-fun-and-profit/
http://www.covert.io/mining-mx-records-for-fun-and-profit/
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第335期)
