SecWiki周刊(第92期)
2015/11/30-2015/12/06
安全资讯
[工具]  Let's Encrypt: Entering Public Beta
https://letsencrypt.org/2015/12/03/entering-public-beta.html
安全技术
[恶意分析]  ElasticZombie Botnet - Exploiting Elasticsearch Vulnerabilities
https://www.alienvault.com/open-threat-exchange/blog/elasticzombie-botnet-exploiting-elasticsearch-vulnerabilities#
[Web安全]  Lucky Microseconds: A Timing Attack on Amazon’s s2n Implementation of TLS
http://eprint.iacr.org/2015/1129.pdf
[恶意分析]  Webshell安全检测篇
http://drops.wooyun.org/papers/10807
[文档]  唯品会安全沙龙
http://pan.baidu.com/s/1ntAMA6X
[数据挖掘]  用户画像系列文章之用户能力标签
http://weibo.com/p/1001603914906402462128
[Web安全]  PSAttack:A framework for Powershell attack platfrom
https://github.com/jaredhaight/PSAttack
[Web安全]  php-grinder:Simple PHP static code analysis for security researchers
http://php-grinder.com/
[Web安全]  Acunetix WVS 10 - Local Privilege escalation
https://www.exploit-db.com/exploits/38847/
[工具]   hashcat and oclHashcat have gone open source
https://github.com/hashcat/
-----微信ID:SecWiki-----
SecWiki,12年来一直专注安全技术资讯分析!
SecWiki:https://www.sec-wiki.com

本期原文地址: SecWiki周刊(第92期)