SecWiki周刊(第76期)
2015/08/10-2015/08/16
安全资讯
kali linux 2.0官方下载(非泄漏镜像)
https://www.kali.org/downloads/
https://www.kali.org/downloads/
Data, Technologies and Security - Part 1
http://blog.binaryedge.io/2015/08/10/data-technologies-and-security-part-1/
http://blog.binaryedge.io/2015/08/10/data-technologies-and-security-part-1/
Hacking Team: a zero-day market case study
https://tsyrklevich.net/2015/07/22/hacking-team-0day-market/
https://tsyrklevich.net/2015/07/22/hacking-team-0day-market/
AT&T and NSA’s Longstanding Surveillance Partnership
https://www.eff.org/deeplinks/2015/08/eff-claims-government-spying-atts-help-further-confirmed-new-york-times-article
https://www.eff.org/deeplinks/2015/08/eff-claims-government-spying-atts-help-further-confirmed-new-york-times-article
Blackhat2015展商指南
http://www.sec-un.org/blackhat2015-exhibitors.html
http://www.sec-un.org/blackhat2015-exhibitors.html
安全技术
乌云2015年白帽子大会(ppt)
http://pan.baidu.com/s/1gd6Nrqz
http://pan.baidu.com/s/1gd6Nrqz
乌云白帽子大会全部PPT公开
http://zone.wooyun.org/content/22310
http://zone.wooyun.org/content/22310
大数据之hive安装及分析web日志实例
https://www.91ri.org/13896.html
https://www.91ri.org/13896.html
从Theano到Lasagne:基于Python的深度学习的框架和库
http://python.jobbole.com/81896/
http://python.jobbole.com/81896/
Blackhat2015参会指南_议题详情
http://pan.baidu.com/s/1bnCtPgz
http://pan.baidu.com/s/1bnCtPgz
Java and Flash both vulnerable—again—to new 0-day attacks
http://arstechnica.com/security/2015/07/two-new-flash-exploits-surface-from-hacking-team-combine-with-java-0-day/
http://arstechnica.com/security/2015/07/two-new-flash-exploits-surface-from-hacking-team-combine-with-java-0-day/
Bypass WAF Cookbook
http://drops.wooyun.org/tips/7883
http://drops.wooyun.org/tips/7883
Exploiting MS15-076 (CVE-2015-2370)
http://silentbreaksecurity.com/exploiting-ms15-076-cve-2015-2370/
http://silentbreaksecurity.com/exploiting-ms15-076-cve-2015-2370/
blackhat2015 ppt
http://pan.baidu.com/s/1DJb7S
http://pan.baidu.com/s/1DJb7S
PortDog - Simple Python Script to Detect Port Scanning Techniques
http://www.kitploit.com/2015/08/portdog-simple-python-script-to-detect.html
http://www.kitploit.com/2015/08/portdog-simple-python-script-to-detect.html
Relyze 1.1 with Interactive Binary Diffing
http://blog.relyze.com/2015/06/relyze-11-with-interactive-binary.html
http://blog.relyze.com/2015/06/relyze-11-with-interactive-binary.html
BGP Hijacking – why you need to care!
https://blog.team-cymru.org/2015/07/bgp-hijacking-why-do-you-need-to-care/
https://blog.team-cymru.org/2015/07/bgp-hijacking-why-do-you-need-to-care/
The Sleepy Puppy XSS Payload Management Framework
https://danielmiessler.com/blog/the-sleepy-puppy-xss-payload-management-framework/
https://danielmiessler.com/blog/the-sleepy-puppy-xss-payload-management-framework/
OS X Zero-days on the Rise
http://blog.trendmicro.com/trendlabs-security-intelligence/os-x-zero-days-on-the-rise-a-2015-midyear-review-on-advanced-attack-surfaces/
http://blog.trendmicro.com/trendlabs-security-intelligence/os-x-zero-days-on-the-rise-a-2015-midyear-review-on-advanced-attack-surfaces/
PFP - A Python Interpreter for 010 Templates
http://d0cs4vage.blogspot.com/2015/08/pfp-python-interpreter-for-010-templates.html
http://d0cs4vage.blogspot.com/2015/08/pfp-python-interpreter-for-010-templates.html
BGP Hijacking for Cryptocurrency Profit
http://www.secureworks.com/cyber-threat-intelligence/threats/bgp-hijacking-for-cryptocurrency-profit/
http://www.secureworks.com/cyber-threat-intelligence/threats/bgp-hijacking-for-cryptocurrency-profit/
一个数据包消灭一台服务器的 DNS 漏洞
https://ring0.me/2015/08/exploit-dns-server-with-one-packet/
https://ring0.me/2015/08/exploit-dns-server-with-one-packet/
Write a simple universal memory editor (game trainer) on OSX/iOS from scratch
http://bbs.iosre.com/t/write-a-simple-universal-memory-editor-game-trainer-on-osx-ios-from-scratch/115
http://bbs.iosre.com/t/write-a-simple-universal-memory-editor-game-trainer-on-osx-ios-from-scratch/115
Metasploit AV Evasion
http://www.kitploit.com/2015/08/metasploit-av-evasion-metasploit.html?utm_source=dlvr.it&utm_medium=twitter
http://www.kitploit.com/2015/08/metasploit-av-evasion-metasploit.html?utm_source=dlvr.it&utm_medium=twitter
Remote Exploitation of an Unaltered Passenger Vehicle
http://illmatics.com/Remote%20Car%20Hacking.pdf
http://illmatics.com/Remote%20Car%20Hacking.pdf
Firefox Under Fire: Anatomy of latest 0-day attack
http://www.welivesecurity.com/2015/08/11/firefox-under-fire-anatomy-of-latest-0-day-attack/
http://www.welivesecurity.com/2015/08/11/firefox-under-fire-anatomy-of-latest-0-day-attack/
Vm ware fuzzing - defcon russia 20
http://www.sec-wiki.com/tougao/create/?u=http%3A%2F%2Fwww.sec-wiki.com%2Ftougao%2Fcreate%2F%3Fu%3Dhttp%253A%252F%252Fwww.slideshare.net%252FDefconRussia%252Fvm-ware-fuzzing-trolololo%26t%3DVm%2520ware%2520fuzzing&t=%E9%A1%B5%E9%9D%A2%E8%BD%BD%E5%85%A
http://www.sec-wiki.com/tougao/create/?u=http%3A%2F%2Fwww.sec-wiki.com%2Ftougao%2Fcreate%2F%3Fu%3Dhttp%253A%252F%252Fwww.slideshare.net%252FDefconRussia%252Fvm-ware-fuzzing-trolololo%26t%3DVm%2520ware%2520fuzzing&t=%E9%A1%B5%E9%9D%A2%E8%BD%BD%E5%85%A
sqlchop:A novel SQL injection detection engine
https://github.com/chaitin/sqlchop
https://github.com/chaitin/sqlchop
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第76期)
