Aggregator
The Importance of Allyship for Women in Tech
1 year 3 months ago
Tashema Nichols-Jones
Cybersecurity Awareness Month 2023 Blog Series | Recognizing and Reporting Phishing
1 year 3 months ago
During this week’s blog series, we sat down with two of our NIST experts from the Visualization and Usability Group at NIST — Shanée Dawkins and Jody Jacobs — who discussed the importance of recognizing and reporting phishing . This blog wraps up our Cybersecurity Awareness Month 2023 blog series…but we of course plan to continue to share, collaborate, learn, and spread the word all year long. 1. This week’s Cybersecurity Awareness Month theme is ‘recognize and report phishing.’ How does your work/specialty area at NIST tie into this behavior? We work in the Information Technology Lab, but our
Shanée Dawkins, Jody Jacobs
【看雪议题分享】深入Android 可信应用漏洞挖掘
1 year 4 months ago
启明星辰ADLab高级安全研究员、移动安全专家在本次议题中,重点介绍了主流厂商的TEE环境中的TA实现以及常见的攻击面并分享了一些针对TA做安全研究的技巧与方法。同时还介绍了如何实现对TA进行模拟以及使用到的Fuzzing技术和调优策略。
奇安盘古获评中国反网络病毒联盟“杰出工作单位”
1 year 4 months ago
近日,中国反网络病毒联盟对外发布了2022年中国反网络病毒联盟优秀成员单位名单。奇安信集团旗下奇安盘古作为中
关键信息基础设施上云安全指南(上)
1 year 4 months ago
本文从关键信息基础设施云安全建设重点、构建先进云安全能力框架、关键信息基础设施云安全解决方案要求三方面展开详细介绍。
练习时长两年半的API安全练习生
1 year 4 months ago
21年,很多人同时忙着一件事——从26个英文字母随机挑选几个拼成一个新词,并做出释义:趋势、价值、未来。
技术分享 | 针对蜜罐反制Goby背后的故事
1 year 4 months ago
Goby社区第 33 篇技术分享文章全文共:5504 字 预计阅读时间:14 分钟
【风险预警】Stable Diffusion web UI 未授权访问风险
1 year 4 months ago
2023年10月,阿里云应急响应中心监测到近期云上针对 Stable Diffusion web UI 攻击行为增多。
《计算》,为了可计算的价值
1 year 4 months ago
仅以此文和《计算》首发,献礼程序员节。
eBPF应用程序开发:快人一步
1 year 4 months ago
这篇文章提供了关于eBPF应用程序开发的指南。正如标题所示,文章主要关注eBPF 201的概念,而不是提供另一篇关于eBPF技术是什么的入门级文章。我们提供了简短的介绍,但主要关注需要部署生产eBPF应用程序的开发团队的下一组概念和最佳实践。我们将探讨使BPF应用程序可以在多个内核版本和环境中部署和维护的编程语言和工具链。
CFC4N
Critical Flaw in Cisco IOS XE Software Exploited in the Wild
1 year 4 months ago
Summary
***UPDATE #1, October 23, 2023***
Cisco has addressed the two vulnerabilities including the below stated CVE-2023-20198 as well as CVE-2023-20273. Below you will find the versions that have been updated and the status of other versions that have not yet been released.
***ORIGINAL SUMMARY***
An unknown threat actor has been detected exploiting a previously unknown flaw in the Web User Interface of Cisco IOS XE software. Exploitation of this vulnerability, that was thought to have been patched, can gr
Get EdgeWorkers Error Reports with mPulse
1 year 4 months ago
Hitoshi Kaneko
Go逆向研究
1 year 4 months ago
Go逆向研究
秋暮露成霜
1 year 4 months ago
时逢秋暮露成霜,几份凝结几份阳
N1CTF 2023 pwn1OS writeup
1 year 4 months ago
Gartner2023年SOAR市场指南报告评述
1 year 4 months ago
SOAR市场正在稳步发展,客户认知日渐清晰、应用场景愈发务实,但在中国市场的价值尚待进一步释放。
九九重阳
1 year 4 months ago
相伴登高望远,尽享秋日芳华…
“六边形”会议——Hexacon 2023
1 year 4 months ago
法国人的谐音梗
通过Zero-shot学习重新审视自动化程序修复
1 year 4 months ago
使用大模型进行自动化程序修复