
推薦今年35C3黑客大會上的幾個議題
原文地址:https://mp.weixin.qq.com/s?__biz=MzU0MzgzNTU0Mw==&mid=2247483908&idx=1&sn=9c99e59f416236ae3ace958252163...

原文地址:https://mp.weixin.qq.com/s?__biz=MzU0MzgzNTU0Mw==&mid=2247483908&idx=1&sn=9c99e59f416236ae3ace958252163...

原文地址:https://mp.weixin.qq.com/s/WrSZpqgq6gvZwEIqghqggg 在上篇文章《推荐今年C3黑客大会上的几个议题》中提到”Attacking Chrome IPC“這個議題,作者覺得該議題最大的亮點...

原文地址:https://mp.weixin.qq.com/s?__biz=MzI5Nzc0OTkxOQ==&mid=2247483837&idx=1&sn=34d3f9eb803f09a45586882f0c6c1...

原文地址:https://www.veracode.com/blog/research/exploiting-jndi-injections-java Java Naming and Directory Interface (JNDI) i...

原文地址:https://www.freebuf.com/vuls/193146.html 從黑箱打到白箱,思路可以學習下 善用Google、github找源碼審計。 前言引用來源:https://www.freebuf.com/vuls/...

原文地址:https://www.freebuf.com/vuls/192876.html 12月20日,國外安全研究員 SandboxEscaper又一次在推特上公佈了新的Windows 0 day漏洞細節及PoC,點選檢視詳情。這是20...

原文地址:https://www.freebuf.com/vuls/192012.html PHP的mt_rand函數作為一個隨機數生成工具在程式中被廣泛使用,但是大家都忽略了一個事實,mt_rand生成的隨機數不是一個真正的隨機數,而是一...

原文地址:http://wonderkun.cc/index.html/?p=747 從35c3CTF的filemanager題目中學到的一個小tips 前言引用來源:http://wonderkun.cc/index.html/?p=74...

原文地址:https://iotsecuritywiki.com/ It is an intiative to help developers and security researchers to get all security res...

原文地址:https://nosec.org/home/detail/2108.html 本文中,作者將介紹,關於PHP語言,在繞過程式碼過濾和WAF規則去遠端執行程式碼方面,到底有多少可能。 前言引用來源:https://nosec.or...