服务粉丝

我们一直在努力
当前位置:首页 > 财经 >

每日安全动态推送(2-20)

日期: 来源:腾讯玄武实验室收集编辑:admin
Tencent Security Xuanwu Lab Daily News

• I'm Building a Self-Destructing USB Drive:
https://interruptlabs.ca/2022/07/29/I-m-Building-a-Self-Destructing-USB-Drive/

   ・ 制作可自毁的U盘 – WireFish


• [BugTales] REUnziP: Re-Exploiting Huawei Recovery With FaultyUSB:
https://labs.taszk.io/articles/post/reunzip/

   ・ 利用华为SD-Update模式的检测和使用时间不一致,替换更新数据包,绕过签名验证,获取root权限。 – P4nda


• Spam and phishing in 2022:
https://kas.pr/9ir7

   ・ 卡巴斯基 2022 年的垃圾邮件和钓鱼监测报告。包含2022年钓鱼邮件相关数据,图表,钓鱼手段,邮件样例等。 – ThomasonZhao


• [Browser] The new Bing & Edge – Learning from our first week:
https://blogs.bing.com/search/february-2023/The-new-Bing-Edge-–-Learning-from-our-first-week/

   ・ 微软关于new bing的一周总结。 – Atum


• Dissecting the Vulnerabilities - A Comprehensive Teardown of acmailer's N-Days:
https://starlabs.sg/blog/2023/02-dissecting-the-vulnerabilities-a-comprehensive-teardown-of-acmailer/

   ・ 深入剖析acmailer的两个nday漏洞-CVE-2021-20617 & CVE-2021-20618 – crazyman


• Citrix CVE-2022-27518 漏洞分析:
https://paper.seebug.org/2049/

   ・ Citrix CVE-2022-27518 漏洞分析 – lanying37


• [Tools] Blue Hat 2023 and UEFI Secure Boot:
http://vzimmer.blogspot.com/2023/02/blue-hat-2023-and-uefi-secure-boot.html

   ・ Blue Hat 2023,作者介绍了由其中一个 UEFI Secure Boot 演讲所引发出的思考和回顾。 – WireFish


• [Windows] EoP via Arbitrary File Write/Overwite in Group Policy Client “gpsvc” – CVE-2022-37955:
http://decoder.cloud/2023/02/16/eop-via-arbitrary-file-write-overwite-in-group-policy-client-gpsvc-cve-2022-37955/

   ・ Windows本地提权漏洞(CVE-2022-37955)细节,配置了文件首选项域组策略的用户可以通过符号链接以system权限造成任意文件覆盖,从而导致提权。 – P4nda


* 查看或搜索历史推送内容请访问:
https://sec.today

* 新浪微博账号:腾讯玄武实验室
https://weibo.com/xuanwulab


相关阅读

  • 每日安全动态推送(2-21)

  • Tencent Security Xuanwu Lab Daily News• [Tools] r/netsec - mast1c0re: Part 3 – Escaping the PS5 emulator:https://www.reddit.com/r/netsec/comments/115u6xc/mast
  • 每日安全动态推送(2-22)

  • Tencent Security Xuanwu Lab Daily News• Open source solution replicates ChatGPT training process! Ready to go with only 1.6GB GPU memory and gives you 7.73 tim
  • 每日安全动态推送(2-24)

  • Tencent Security Xuanwu Lab Daily News• [macOS] Built-in macOS Security Tools:https://www.huntress.com/blog/built-in-macos-security-tools ・ 一篇介绍macos自
  • 每日安全动态推送(2-27)

  • Tencent Security Xuanwu Lab Daily News• [Android] The code that wasn’t there: Reading memory on an Android device by accident:https://github.blog/2023-02-23-t
  • HAProxy请求走私漏洞安全风险通告

  • 奇安信CERT致力于第一时间为企业级用户提供安全风险通告和有效解决方案。安全通告HAProxy是一个使用C语言编写的自由及开放源代码软件,其提供高可用性、负载均衡,以及基于TCP
  • 安全热点周报(2023.2.13-2023.2.19)

  • 安全资讯导视01 利时发布报告IT漏洞的新法律框架,以保护白帽黑客02 疑似45亿条国内个人信息被泄露,输手机号可查询历史收货地址03 因供应商遭勒索攻击,半导体巨头应用材料将损

热门文章

  • “复活”半年后 京东拍拍二手杀入公益事业

  • 京东拍拍二手“复活”半年后,杀入公益事业,试图让企业捐的赠品、家庭闲置品变成实实在在的“爱心”。 把“闲置品”变爱心 6月12日,“益心一益·守护梦想每一步”2018年四

最新文章

  • 每日安全动态推送(2-20)

  • Tencent Security Xuanwu Lab Daily News• I'm Building a Self-Destructing USB Drive:https://interruptlabs.ca/2022/07/29/I-m-Building-a-Self-Destructing-USB-Drive
  • 每日安全动态推送(2-21)

  • Tencent Security Xuanwu Lab Daily News• [Tools] r/netsec - mast1c0re: Part 3 – Escaping the PS5 emulator:https://www.reddit.com/r/netsec/comments/115u6xc/mast
  • 每日安全动态推送(2-22)

  • Tencent Security Xuanwu Lab Daily News• Open source solution replicates ChatGPT training process! Ready to go with only 1.6GB GPU memory and gives you 7.73 tim
  • 每日安全动态推送(2-24)

  • Tencent Security Xuanwu Lab Daily News• [macOS] Built-in macOS Security Tools:https://www.huntress.com/blog/built-in-macos-security-tools ・ 一篇介绍macos自
  • 建设美好雁塔 | 小小会客厅 警民连心桥

  • “警察同志,请问你们这里有热水吗?”“您好,我想咨询下,这个地方怎么走?”近期,雁塔公安在街头巷尾全力打造暖心警务会客厅,为过往群众提供面对面倾情服务。明德门派出所暖心警务会
  • 每日安全动态推送(2-23)

  • Tencent Security Xuanwu Lab Daily News• [Tools] GitHub - DvorakDwarf/Infinite-Storage-Glitch: ISG lets you use YouTube as cloud storage for ANY files, not just