SecWiki周刊(第43期)
2014/12/22-2014/12/28
安全资讯
[Web安全]   31C3 CTF online
https://31c3ctf.aachen.ccc.de/announcements/
[Web安全]  2014国内外数据泄密事件大盘点
http://www.freebuf.com/articles/database/54631.html
[恶意分析]  俄罗斯网络威胁概览
http://blog.idf.cn/2014/12/the-cyber-threat-landscape-in-russian/
[其它]  2014年最值得观看的科技和商业领域TED演讲
http://www.36kr.com/p/218084.html
[Web安全]  高潮不断:攻击索尼的“格盘病毒”又重创了韩国核电站
http://www.freebuf.com/news/54958.html
[恶意分析]  2015 Security Predictions: The Rise of Hacking Campaigns
http://resources.infosecinstitute.com/2015-security-predictions-rise-hacking-campaigns/
[其它]  为什么你应该(从现在开始就)写博客
http://mindhacks.cn/2009/02/15/why-you-should-start-blogging-now/
[恶意分析]  CIA Review of High-Value Target Assassination Programs
https://wikileaks.org/cia-hvt-counterinsurgency/page-1.html
安全技术
[Web安全]  随机更换代理的Burpsuite插件
http://zone.wooyun.org/content/17503
[Web安全]  Burp_MultiProxy(jar版)
http://zone.wooyun.org/content/17543
[编程技术]  Gif多图:我常用的 16 个 Sublime Text 快捷键
http://blog.jobbole.com/82527/
[编程技术]  学点Python挺好
http://www.cnblogs.com/vamei/tag/Python/
[Web安全]  知名安全检测工具IBM Rational AppScan v9.0.1.1发布
http://www.freebuf.com/tools/55090.html
[无线安全]  snoopsnitch:collects and analyzes mobile radio data
https://opensource.srlabs.de/projects/snoopsnitch
[编程技术]  基于bootstrap的网页开发
http://www.imooc.com/view/182?utm_source=jobboleweibo
[视频]  SS7: Locate. Track. Manipulate
http://streaming.media.ccc.de/relive/6249/
[移动安全]  极路由(HiWiFi)1S硬件分析与改造研究
http://www.freebuf.com/news/special/54862.html
[漏洞分析]  如何进行浏览器Fuzz
http://bobao.360.cn/learning/detail/160.html
[Web安全]  从SQLiGOD到XSS
http://blog.sycsec.com/?p=505
[Web安全]  SoakSoak恶意软件追踪研究报告 V2
http://blog.knownsec.com/2014/12/soaksoak-v2/
[漏洞分析]  BFuzzer:A Browser Fuzzer for Vulnerbilities
https://github.com/hikerell/BFuzzer
[Web安全]  Mongodb学习笔记(3)--注入攻击篇
http://th1nk.info/index.php/%E5%AD%A6%E4%B9%A0%E7%AC%94%E8%AE%B0/65.html
[漏洞分析]  Memory corruption in QSEECOM driver (CVE-2014-4322)
https://www.codeaurora.org/projects/security-advisories/memory-corruption-qseecom-driver-cve-2014-4322
[Web安全]  网络信息安全攻防学习平台
http://hackinglab.sinaapp.com/
[Web安全]  杂谈如何绕过WAF
http://www.freebuf.com/articles/web/54686.html
[Web安全]  firing-range:test bed for web application security scanners
https://github.com/google/firing-range
[无线安全]  Worldwide attacks on SS7/SIGTRAN network
http://www.slideshare.net/p1sec/worldwide-attacks-onss7networkp1securityhackito2014
[恶意分析]  theZoo:A repository of LIVE malwares
https://github.com/ytisf/theZoo
[漏洞分析]  IE漏洞调试之CVE-2013-3893
http://www.freebuf.com/vuls/54786.html
[无线安全]  深度剖析智能插座的破解过程
http://bobao.360.cn/learning/detail/163.html
[Web安全]  jother编码之谜
http://drops.wooyun.org/web/4410
[设备安全]  关于磊科(NetCore)全系列路由器中的“疑似后门”程序
http://www.weibo.com/p/1001603792736686871336
[恶意分析]  oledump: Extracting Embedded EXE From DOC
http://blog.didierstevens.com/2014/12/23/oledump-extracting-embedded-exe-from-doc/
[移动安全]  你的银行卡,我的钱——POS机安全初探
http://security.tencent.com/index.php/blog/msg/76
[Web安全]  【译】网络钓鱼检测:综述
http://cubernet.cn/phishing-review/
[Web安全]  metasploit在ubuntu系统下的安装配置
http://www.weibo.com/p/1001603792569774570534
[编程技术]  开源爬虫Scrapy的学习及应用
http://blog.csdn.net/heiyeshuwu/article/details/42170017
[恶意分析]  Online Shell Services Backdoor Analysises
http://h4x0resec.blogspot.tw/2014/12/online-shell-services-backdoor.html
[编程技术]  一天可以学会的实用计算机技能
http://blog.jobbole.com/82633/
[Web安全]  bypass 最新安全狗
http://lcx.cc/?i=4464
[Web安全]  常见的HTTPS攻击方法
http://drops.wooyun.org/tips/4403
[恶意分析]  Your Friendly North Korean Network Observer by nknetobserver
http://nknetobserver.github.io/
[无线安全]  GSM Security Map
http://gsmmap.org/
[编程技术]  如何高效利用GitHub
http://www.yangzhiping.com/tech/github.html
[移动安全]  Android Broadcast Security
http://drops.wooyun.org/tips/4393#comment-185348
[漏洞分析]  CC-SHELLCODING framework
https://github.com/k33nteam/cc-shellcoding
[移动安全]  Android Broadcast Security
http://drops.wooyun.org/tips/4393
[编程技术]  Linux内核源码分析方法
http://www.zeuux.com/blog/content/5429/
[Web安全]  Damn Small FI Scanner
http://www.secpulse.com/archives/3526.html
[漏洞分析]  给使用Grinder不顺的朋友多一个选择
http://www.weibo.com/p/1001603790707428072287
安全专题
Android在线分析平台
https://www.sec-wiki.com/topic/56
固件分析工具汇总
https://www.sec-wiki.com/topic/55
-----微信ID:SecWiki-----
SecWiki,12年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com

本期原文地址: SecWiki周刊(第43期)