文章预览
Tencent Security Xuanwu Lab Daily News • Pwn2Own: WAN-to-LAN Exploit Showcase: https://claroty.com/team82/research/pwn2own-wan-to-lan-exploit-showcase ・ 介绍了团队在Pwn2Own 2023 Toronto IoT黑客大赛中参与并利用TP-Link ER605路由器和Synology BC500 IP摄像头的经历。他们展示了如何通过广域网入侵设备并进入本地网络,以牵连物联网设备。 – SecTodayBot • Hidden between the tags: Insights into spammers’ evasion techniques in HTML Smuggling: https://blog.talosintelligence.com/hidden-between-the-tags-insights-into-evasion-techniques-in-html-smuggling/ ・ 介绍了网络攻击者利用HTML附件或网页中嵌入编码或加密的JavaScript代码的技术 – SecTodayBot • GitHub - arphanetx/Monocle: Tooling backed by an LLM for performing natural language searches against compiled target binaries. Search for encryption code, password strings, vulnerabilities, etc.: https://github.com/arphanetx/Mon
………………………………