每日安全动态推送(03-02)

  • A+
所属分类:安全新闻
Tencent Security Xuanwu Lab Daily News


• Robust Trees for Security:
https://surrealyz.medium.com/robust-trees-for-security-577061177320

   ・ 训练 Robust Trees 检测 Twitter spam – Jett


• 疑似黑客攻击,我们正在积极恢复服务:
https://paper.seebug.org/1491/

   ・ SaltStack 远程执行代码存在多个高危漏洞分析(CVE-2021-25281 ,CVE-2021-25282, CVE-2021-25283) – lanying37


• [iOS] Apple Is Going to Make It Harder to Hack iPhones With Zero-Click Attacks:
https://www.vice.com/en/article/pkd4kg/apple-is-going-to-make-it-harder-to-hack-iphones-with-zero-click-attacks

   ・ Apple 正在为 ISA 指针提供 PAC 保护,iOS 代码执行更加艰难 – Jett


• BB-1011 Fuzzing WinAFL - YouTube:
https://www.youtube.com/watch?v=m7tJkeW6H58&t=394s

   ・ 使用WinAFL进行模糊处理和查找漏洞视频。 – lanying37


• [Malware] KeRnSoMwArE un ransomware italiano ancora in fase test:
https://cert-agid.gov.it/news/kernsomware/

   ・ 进行对Kernsomware勒索软件分析溯源。 – lanying37


• CVE-2020-28243 SaltStack Minion Local Privilege Escalation:
https://sec.stealthcopter.com/cve-2020-28243/

   ・ CVE-2020-28243 SaltStack Minion 命令行注入本地提权漏洞 – Jett


• futurerestore v194:
https://github.com/marijuanARM/futurerestore/releases/tag/194

   ・ iOS 降级工具 futurerestore 更新 v194 版本 – Jett


• Finding Evil Go Packages:
https://michenriksen.com/blog/finding-evil-go-packages/

   ・ Finding Evil Go Packages – Jett


• Background:
https://github.com/Siguza/libkrw

   ・ libkrw - 为不同越狱工具提供一个 iOS kernel 读写 API 接口 – Jett


• What’s Your Game Plan? Leveraging Apple’s Game Engine to Detect Threats:
https://www.rsaconference.com/library/Presentation/USA/2019/whats-your-game-plan-leveraging-apples-game-engine-to-detect-threats-3?utm_source=twitter&utm_medium=social&utm_content=whats-your-game-plan-leveraging-apples-game-engine-to-detect-threats-presentation&utm_campaign=march-20201-rsac365&postID=4532250272

   ・ What’s Your Game Plan? Leveraging Apple’s Game Engine to Detect Threats – Jett


* 查看或搜索历史推送内容请访问:
https://sec.today

* 新浪微博账号:腾讯玄武实验室
https://weibo.com/xuanwulab


本文始发于微信公众号(腾讯玄武实验室):每日安全动态推送(03-02)

发表评论

:?: :razz: :sad: :evil: :!: :smile: :oops: :grin: :eek: :shock: :???: :cool: :lol: :mad: :twisted: :roll: :wink: :idea: :arrow: :neutral: :cry: :mrgreen: