Aggregator
浅谈XSSI漏洞
7 years 3 months ago
一篇虎头蛇尾的番外
Ubuntu 系统下 WiFi 频繁掉线解决方法
7 years 4 months ago
前两天刚解决了 WiFi 的网卡驱动问题,用了没多久又发现新问题了,真是应了那句话,生命在于折腾。 好吧,有了问题光抱怨是没用的,问题还是得解决。 第一步,执行命令
动态爬虫漏抓的案例分析(一)
7 years 4 months ago
因为浏览器嫌你 “太快” 导致的漏抓,你能修复吗?
Laravel 应用部署到 Nginx 服务器上的第一个坑
7 years 4 months ago
前言 在学习了一段时间 Larvel 后,写了个生成短网址小应用,把应用部署到服务器上的时候就出现了问题….. 以此文祭奠我失去的青春… 正文
蜜罐与内网安全从0到1(一)
7 years 4 months ago
将蜜罐技术应用到内网攻击感知中,一篇硕士论文的研究过程与demo实现,抛砖引玉。
Achieving Multi-Dimensional Security Through Information Modeling—Executive Threat Modeling Part 3
7 years 4 months ago
How InfoSec leaders can build successful threat models by defining the threat landscape and its component resources, then asking simple, situational questions.
安全开发之 python subprocess
7 years 4 months ago
分享我在使用 python subprocess 进行扫描器开发过程中踩过的坑,以及应用在分布式扫描程序中的时候,可能存在的远程命令执行漏洞。
Phishing for Information, Part 3: How Attackers Gather Data About Your Organization
7 years 4 months ago
The Internet is full of information about your company that’s easily accessible to anyone and particularly useful to attackers.
“Cry ‘Havoc’ and Let Loose the Thingbots of War!”
7 years 4 months ago
Gray hats might have good intentions launching their “vigilante” botnets, but are they really helping us win the war against Death Star-sized thingbots?
Where Do Vulnerabilities Come From?
7 years 4 months ago
Vulnerabilities are an emergent property of modern software’s complexity, requested features, and the way data inputs are handled.
第三十四期 未来取证篇-无人机取证
7 years 4 months ago
目前我国无人机发展迅猛,虽然已经有不少机构针对无人机取证进行研究,但是至今为止,尚未有相关取证软件发布。
浅析PHP反序列化漏洞之PHP常见魔术方法(一) - magic_zero
7 years 4 months ago
作为一个学习web安全的菜鸟,前段时间被人问到PHP反序列化相关的问题,以前的博客中是有这样一篇反序列化漏洞的利用文章的。但是好久过去了,好多的东西已经记得不是很清楚。所以这里尽可能写一篇详细点的文章来做一下记录。 我们来参考这里: 我们根据官方文档中的解释,一个一个来进行测试。 __constru
magic_zero
下一代Web基石 - WebAssembly
7 years 4 months ago
KINGX
The Hunt for IoT: The Rise of Thingbots
7 years 4 months ago
With “thingbots” now launching Death Star-sized DDoS attacks, hosting banking trojans, and causing physical destruction, all signs point to them becoming the attacker infrastructure of the future.
Ubuntu 16.04 LST 安装 Redis 和 Composer
7 years 4 months ago
前言 在 Ubuntu 下安装软件非常的方便,几条命令就可以完成软件的下载和安装,不多说,直接上命令。 安装 Redis sudo apt-get update # 更新源 sudo apt-get install redis-server # 安装 redis 启动 redis redis-server Redis 安装完成! 安装 Composer 首
New Details on HBO Attack Emerge, “Game of Thrones” Actors’ Personal Data Leaked
7 years 4 months ago
Cybercriminals continue to send their regards to HBO, as their threats have turned into a stark reality. First, they teased...
The post New Details on HBO Attack Emerge, “Game of Thrones” Actors’ Personal Data Leaked appeared first on McAfee Blog.
McAfee
August 2017 security update release
7 years 4 months ago
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice.
More information about this month’s security updates can be found in the Security Update Guide.
August 2017 security update release
7 years 4 months ago
Today, we released security updates to provide additional protections against malicious attackers. By default, Windows 10 receives these updates automatically, and for customers running previous versions, we recommend they turn on automatic updates as a best practice.
More information about this month’s security updates can be found in the Security Update Guide.
第三十三期 未来取证篇-智能家居系列
7 years 4 months ago
智能家居是目前国内物联网重要应用途径之一,而近几年,针对智能家居产品入侵的案件屡屡发生。