文章预览
web安全 CVE-2024-40725 :Apache HTTP服务器源代码泄露与SSRF漏洞 https://securityonline.info/cve-2024-40725-cve-2024-40898-apache-http-server-flaws-put-millions-of-websites-at-risk/ 内网渗透 Gigaproxy:借助AWS API网关的渗透代理工具 https://github.com/Sprocket-Security/gigaproxy 终端对抗 借助未公开API进行远程会话枚举 https://0xv1n.github.io/posts/sessionenumeration/ IHxExec:Windows跨用户session代码执行技术 https://cicada-8.medium.com/process-injection-is-dead-long-live-ihxhelppaneserver-af8f20431b5d https://github.com/CICADA8-Research/IHxExec 静默安装 Chrome 扩展以实现持久化 https://syntax-err0r.github.io/Silently_Install_Chrome_Extension.html CobaltStrike 4.10发布,引入BeaconGate、C2主机热切换等重磅功能 https://www.cobaltstrike.com/blog/cobalt-strike-410-through-the-beacongate TTD监控驱动配合PROCEXP驱动实现受保护进程终止 https://www.sentinelone.com/labs/fin7-reboot-cybercrime-gang-enhan
………………………………