SecWiki周刊(第8期)
2014/04/21-2014/04/27
安全技术
Heartbleed test script for OpenVPN
https://github.com/falstaff84/heartbleed_test_openvpn
https://github.com/falstaff84/heartbleed_test_openvpn
Symantec 《2014互联网安全报告》
http://www.valleytalk.org/wp-content/uploads/2014/04/2014security.pdf
http://www.valleytalk.org/wp-content/uploads/2014/04/2014security.pdf
Cisco’s Hadoop-Based Security Tool
http://www.isssource.com/ciscos-hadoop-based-security-tool/
http://www.isssource.com/ciscos-hadoop-based-security-tool/
Nessus, OpenVAS and Nexpose VS Metasploitable
http://hackertarget.com/nessus-openvas-nexpose-vs-metasploitable/
http://hackertarget.com/nessus-openvas-nexpose-vs-metasploitable/
报警助手介绍
http://noops.me/?p=1483
http://noops.me/?p=1483
IronWASP:web security scannners
https://ironwasp.org/index.html
https://ironwasp.org/index.html
WebPwn3r - Web Applications Security Scanner
https://github.com/zigoo0/webpwn3r
https://github.com/zigoo0/webpwn3r
ssl-hearbleed.nse mod
http://blog.didierstevens.com/2014/04/24/ssl-hearbleed-nse-mod/
http://blog.didierstevens.com/2014/04/24/ssl-hearbleed-nse-mod/
漏扫工具AWVS命令执行
http://drops.wooyun.org/papers/1501
http://drops.wooyun.org/papers/1501
iOS Malware Campaign "Unflod Baby Panda"
https://www.sektioneins.de/en/blog/14-04-18-iOS-malware-campaign-unflod-baby-panda.html
https://www.sektioneins.de/en/blog/14-04-18-iOS-malware-campaign-unflod-baby-panda.html
neocrawler:nodejs 的爬虫系统
http://git.oschina.net/dreamidea/neocrawler
http://git.oschina.net/dreamidea/neocrawler
malwarez:Malware visualization on earth map
https://github.com/YakindanEgitim/malwarez
https://github.com/YakindanEgitim/malwarez
Scream: Write-up
http://paulsec.github.io/blog/2014/04/16/scream-write-up/
http://paulsec.github.io/blog/2014/04/16/scream-write-up/
Cobalt Strike 之团队服务器的搭建与DNS通讯演示
http://drops.wooyun.org/tools/1475
http://drops.wooyun.org/tools/1475
Android Hacker's Handbook
http://pan.baidu.com/s/1dDGJj25
http://pan.baidu.com/s/1dDGJj25
Crab:Recommender Systems Framework in Python
http://muricoca.github.io/crab/
http://muricoca.github.io/crab/
2014腾讯校园招聘实习技术类笔试题目
http://www.netknight.in/archives/440/
http://www.netknight.in/archives/440/
Malware Analysis: Cryptocurrency-mining Malware Running on DVRs
http://blogs.avg.com/news-threats/cryptocurrency-mining-dvr-malware/
http://blogs.avg.com/news-threats/cryptocurrency-mining-dvr-malware/
php渗透测试技巧-文件操作
http://www.secoff.net/archives/206.html
http://www.secoff.net/archives/206.html
从cloudstack默认配置看NFS安全
http://drops.wooyun.org/tips/1473
http://drops.wooyun.org/tips/1473
Iptables入门教程
http://drops.wooyun.org/tips/1424
http://drops.wooyun.org/tips/1424
为LTE小区搜索程序加入HackRF支持
http://www.hackrf.net/2014/04/lte-hackrf/
http://www.hackrf.net/2014/04/lte-hackrf/
An SMS Trojan with global ambitions
http://www.securelist.com/en/blog/8209/An_SMS_Trojan_with_global_ambitions
http://www.securelist.com/en/blog/8209/An_SMS_Trojan_with_global_ambitions
[EZINE] (FuckTheSystem) FTS Zine 5
http://www.exploit-db.com/papers/32984/
http://www.exploit-db.com/papers/32984/
Another backdoor in my router
http://www.synacktiv.com/ressources/TCP32764_backdoor_again.pdf
http://www.synacktiv.com/ressources/TCP32764_backdoor_again.pdf
XDS: Cross-Device Scripting Attacks
http://drops.wooyun.org/papers/1472
http://drops.wooyun.org/papers/1472
part 1: disassembling and understanding shellcode
http://hackerforhire.com.au/part-1-disassembling-and-understanding-shellcode/
http://hackerforhire.com.au/part-1-disassembling-and-understanding-shellcode/
自定义google map marker、tooltips、toggle switch、map style
http://blog.segmentfault.com/jy00295005/1190000000474972
http://blog.segmentfault.com/jy00295005/1190000000474972
ColdFusion(CVE-2010-2861) 本地包含利用方法
http://drops.wooyun.org/tips/1410
http://drops.wooyun.org/tips/1410
Privilege Escalation Vulnerability in Cisco ASA's SSL VPN
http://blog.spiderlabs.com/2014/04/privilege-escalation-vulnerability-in-cisco-asas-ssl-vpn.html
http://blog.spiderlabs.com/2014/04/privilege-escalation-vulnerability-in-cisco-asas-ssl-vpn.html
《安全参考》HACKCTO-201404-16
http://pan.baidu.com/s/1ntiCHdR
http://pan.baidu.com/s/1ntiCHdR
安全专题
Android系统下的渗透工具
https://www.sec-wiki.com/topic/45
https://www.sec-wiki.com/topic/45
-----微信ID:SecWiki-----
SecWiki,13年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com
本期原文地址: SecWiki周刊(第8期)
