SecWiki周刊(第361期)
2021/01/25-2021/01/31
安全资讯
安全技术
一次hvv中的asmx上传绕过waf记录
https://www.sec-in.com/article/854
https://www.sec-in.com/article/854
使用 Cloudflare Workers 隐藏 C&C 流量
https://mp.weixin.qq.com/s/ozzyalC8anfi9VAHb3r-oQ
https://mp.weixin.qq.com/s/ozzyalC8anfi9VAHb3r-oQ
宝塔面板Windows版提权方法
https://github.com/Hzllaga/BT_Panel_Privilege_Escalation
https://github.com/Hzllaga/BT_Panel_Privilege_Escalation
浅谈隧道搭建工具之Neo-reGeorg
https://www.anquanke.com/post/id/228917
https://www.anquanke.com/post/id/228917
APT-Hunter : Threat Hunting Tool via Windows Event Log
https://shells.systems/introducing-apt-hunter-threat-hunting-tool-via-windows-event-log/
https://shells.systems/introducing-apt-hunter-threat-hunting-tool-via-windows-event-log/
SecWiki周刊(第360期)
https://www.sec-wiki.com/weekly/360
https://www.sec-wiki.com/weekly/360
Java安全02-从ClassLoader到冰蝎Java篇
https://xz.aliyun.com/t/9050
https://xz.aliyun.com/t/9050
信创产业:操作系统深度研究(PPT原文)
https://mp.weixin.qq.com/s/fA1xDbQ9qbV1L2AgitFXdw
https://mp.weixin.qq.com/s/fA1xDbQ9qbV1L2AgitFXdw
为被动扫描器量身打造一款爬虫
https://paper.seebug.org/1473/
https://paper.seebug.org/1473/
美国国防部DevSecOps实践
https://mp.weixin.qq.com/s/EPpgQlgc_8eY21xJRZkBqQ
https://mp.weixin.qq.com/s/EPpgQlgc_8eY21xJRZkBqQ
浅谈Springboot中的文件上传
https://www.sec-in.com/article/836
https://www.sec-in.com/article/836
远程命令与代码执行总结
https://www.anquanke.com/post/id/229611
https://www.anquanke.com/post/id/229611
容器环境定制的渗透测试工具
https://github.com/cdk-team/CDK/wiki/CDK-Home-CN
https://github.com/cdk-team/CDK/wiki/CDK-Home-CN
互联网产品数据与隐私合规审查要点
https://mp.weixin.qq.com/s/m_8Y3x-DzoWNwU8tBT-ENw
https://mp.weixin.qq.com/s/m_8Y3x-DzoWNwU8tBT-ENw
如何开源手动挖掘LinkedIn领英
https://mp.weixin.qq.com/s/mtQ40m7qLayUDxgmWgsWPw
https://mp.weixin.qq.com/s/mtQ40m7qLayUDxgmWgsWPw
自动化的攻击溯源之痛 :数据获取与关联的困惑
https://mp.weixin.qq.com/s/dJDHLvJOGVPQB1cfTayX9w
https://mp.weixin.qq.com/s/dJDHLvJOGVPQB1cfTayX9w
全球网络反恐格局中的中国力量
https://mp.weixin.qq.com/s/1dpbZO_rD4GSfaPqjw5Luw
https://mp.weixin.qq.com/s/1dpbZO_rD4GSfaPqjw5Luw
JavaWeb中的信息泄漏——H2 database
https://www.sec-in.com/article/827
https://www.sec-in.com/article/827
两个有趣的DNS 安全问题研究
https://xz.aliyun.com/t/9047
https://xz.aliyun.com/t/9047
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第361期)
