I'm being spied through my personal phone 不安全 10 months 3 weeks ago Recieving cyberthreats and my phone got hacked in an unusually rare way. I once exp
Humans are the Beating Heart of the Autonomous SOC 不安全 10 months 3 weeks ago One of the hottest cybersecurity buzzwords to emerge in 2024, which will undoubtedly be discusse
New VPN Backdoor 不安全 10 months 3 weeks ago New VPN BackdoorA newly discovered VPN backdoor uses some interesting tactics to avoid det
270 - Deanonymization with CloudFlare and Subaru’s Security Woes 不安全 10 months 3 weeks ago Additional Links: https://jprx.io/cve-2024-54507/
OpenWrt 軟體下載 – Cudy 不安全 10 months 3 weeks ago 2023年9月1日 警告本網頁列出了支援OpenWrt系統的設備的軟體,在下載和安裝軟體之前,請注意OpenWrt Project是一個針對嵌入式設備的
Do You Know What Your Assets Are? 不安全 10 months 3 weeks ago Asset awareness is the first step in understanding your complete security posture. If you don’t
Do We Really Need The OWASP NHI Top 10? 不安全 10 months 3 weeks ago The Open Web Application Security Project has recently introduced a new Top 10 project - the Non-Hu
Diamond Ticket Attack: Abusing kerberos Trust 不安全 10 months 3 weeks ago The Diamond Ticket attack represents a sophisticated escalation in Active Directory
Just Discovered the New Cisco Certified Support Technician (CCST) Cybersecurity Certification! 不安全 10 months 3 weeks ago I wanted to share some exciting news about Cisco's recent addition to their certification
Are Third-Party Risk Management Solutions Effective Enough? 不安全 10 months 3 weeks ago Among the many issues faced in identifying and managing cyber risk, perhaps none is more challen
An unusual "shy z-wasp" phishing, (Mon, Jan 27th) 不安全 10 months 3 weeks ago Threat actors who send out phishing messages have long ago learned that zero-width characters and u
Blocking Malicious sites with a TLS Firewall 不安全 10 months 3 weeks ago , Monday, 27 January 2025 10:45:00 (UTC/GMT)
SCAVY:自动发现Linux内核中的内存损坏目标以防止权限提升 不安全 10 months 3 weeks ago Researchers have unveiled SCAVY, a novel framework designed to automate t
【InForSec 2025年会顶会论文回顾】马昊玉:镜中窥视:利用缓存侧信道攻破 Android 应用沙盒完整性 不安全 10 months 3 weeks ago 来自之江实验室的副研究员马昊玉老师分享了一个在Android平台应用开发中实质支持、被广泛使用却未完整公开的“动态组件间调用(DICI)”机制,以及其对Android应用沙盒完整性的破坏。通过DICI
【InForSec 2025年会顶会论文回顾】向昊: 基于完全域敏感和源点意识的控制流完整性方法 不安全 10 months 3 weeks ago 来自西安电子科技大学的博士生向昊分享了他们研究的基于完全域敏感和源点意识的控制流完整性方法ECCut。控制流完整性 (CFI) 是一种强大而有效的防御内存破坏攻击的机制,在以往的研究中,使用静态分析不
【InForSec 2025年会顶会论文回顾】李勇钢:基于虚拟化的未知驱动隔离与保护方法 不安全 10 months 3 weeks ago 来自中国矿业大学的副教授李勇钢分享了他们所提出的用以隔离和检测不可信驱动程序的新方法DriverBox,比起以往的技术仅能为目标驱动的控制流设立合法的进入与退出点,此法为未知驱动建立动态的滑动空间,实
【InForSec 2025年会顶会论文回顾】姜嘉仪:增强基于二进制分析的协议逆向工程中字段推断能力的研究 不安全 10 months 3 weeks ago 来自华东师范大学的博士生姜嘉仪介绍了他们所研发的一种基于二进制分析的协议逆向工程工具BinPRE,用于推断网络协议的字段格式和语义。针对现有方法在格式推断规则的脆弱性和语义推断不充份和不准确的挑战,B