【漏洞复现】Juniper JunOS SRX EX 远程命令执行漏洞 CVE-2023-36844
http://mp.weixin.qq.com/s?__biz=Mzk0NDUzMjU0NA==&mid=2247484523&idx=2&sn=4be03313a77891d763fab8af44ca2438&chksm=c3227944f455f052526b7c7c68a91efad13c1909c3263dc963ce260b84b7db675d952277d9b0&scene=0&xtrack=1#rd
https://unsafe.sh/go-176605.html
http://mp.weixin.qq.com/s?__biz=Mzk0NDUzMjU0NA==&mid=2247484523&idx=2&sn=4be03313a77891d763fab8af44ca2438&chksm=c3227944f455f052526b7c7c68a91efad13c1909c3263dc963ce260b84b7db675d952277d9b0&scene=0&xtrack=1#rd
https://unsafe.sh/go-176605.html
Weixin Official Accounts Platform
【漏洞复现】Juniper JunOS SRX EX 远程命令执行漏洞 CVE-2023-36844
请勿使用本文中所提供的任何技术信息或代码工具进行非法测试和违法行为。若使用者利用本文中技术信息或代码工具对任何计算机系统造成的任何直接或者间接的后果及损失,均由使用者本人负责。
太离谱!按 F11 给 Windows 10/11 资源管理器加速 400%,居然是真的
https://www.appinn.com/windows-explorer-f11-fix/
https://unsafe.sh/go-176618.html
https://www.appinn.com/windows-explorer-f11-fix/
https://unsafe.sh/go-176618.html
小众软件
太离谱!按 F11 给 Windows 10/11 资源管理器加速 400%,居然是真的 - 小众软件
这是继安装 Windows 11 时用 no@thankyou.com 登录,就能跳过联网账户,创建本地账之后,又一个离谱的 Windows BUG,或者叫特性:只需要对着资源管理器按下 F11 键全屏后再看 F11 恢复窗口,就能加速 400%。@Appinn
对近期分享的一点总结
http://mp.weixin.qq.com/s?__biz=MzUzNDU2NTIxOA==&mid=2247484072&idx=1&sn=10ca58e64e70684a1261731823c6d8bb&chksm=fa939aa5cde413b3943236f7da26dd52e283aefd8d13606a5e69f7b7a353355642a8655675b6&scene=0&xtrack=1#rd
https://unsafe.sh/go-176613.html
http://mp.weixin.qq.com/s?__biz=MzUzNDU2NTIxOA==&mid=2247484072&idx=1&sn=10ca58e64e70684a1261731823c6d8bb&chksm=fa939aa5cde413b3943236f7da26dd52e283aefd8d13606a5e69f7b7a353355642a8655675b6&scene=0&xtrack=1#rd
https://unsafe.sh/go-176613.html
Weixin Official Accounts Platform
对近期分享的一点总结
今年在安全会议的分享次数相较于往年有点多,先说下出发点,一是希望锻炼自己在台上台下表达能力,尤其是台上,因为
用于 Windows Search 远程代码执行的微补丁 (CVE-2023-36884)
http://mp.weixin.qq.com/s?__biz=MzAxMjYyMzkwOA==&mid=2247501295&idx=2&sn=f124b0a8ff21ba000248210144475d22&chksm=9bad8ca4acda05b20f223b3cbb4a2264bf996285f5f4311329eb97b0efef9f6f9b20cddd28c3&scene=0&xtrack=1#rd
https://unsafe.sh/go-176604.html
http://mp.weixin.qq.com/s?__biz=MzAxMjYyMzkwOA==&mid=2247501295&idx=2&sn=f124b0a8ff21ba000248210144475d22&chksm=9bad8ca4acda05b20f223b3cbb4a2264bf996285f5f4311329eb97b0efef9f6f9b20cddd28c3&scene=0&xtrack=1#rd
https://unsafe.sh/go-176604.html
Weixin Official Accounts Platform
用于 Windows Search 远程代码执行的微补丁 (CVE-2023-36884)
除了 2023 年 7 月的 Windows 更新外,微软还透露了在野外检测到的0day 漏洞的存在,并为其
A GC-Friendly Go Interning Cache
https://words.filippo.io/certificate-interning/
https://unsafe.sh/go-173407.html
https://words.filippo.io/certificate-interning/
https://unsafe.sh/go-173407.html
Filippo Valsorda
A GC-Friendly Go Interning Cache
Go 1.20 is adding an interning cache for reused certificates. The entries are reference-counted with the help of the garbage collector and finalizers.
EmploLeaks - Finding Leaked Employees Info for the Win
http://www.kitploit.com/2023/09/emploleaks-finding-leaked-employees.html
https://unsafe.sh/go-176629.html
http://www.kitploit.com/2023/09/emploleaks-finding-leaked-employees.html
https://unsafe.sh/go-176629.html
KitPloit - PenTest & Hacking Tools
EmploLeaks - Finding Leaked Employees Info for the Win
Black Duck audits reporting update: Streamlined view of risks and remediation steps
https://www.synopsys.com/blogs/software-security/black-duck-engagement-summary-report/
https://unsafe.sh/go-176530.html
https://www.synopsys.com/blogs/software-security/black-duck-engagement-summary-report/
https://unsafe.sh/go-176530.html
Application Security Blog
Black Duck audits reporting update: Streamlined view of risks and remediation steps
New Synopsys Black Duck® engagement summary report summarizes a breadth of insights across all domains of software due diligence.
FileLocator Pro 超快的文档全文内容搜索工具!正则查找文件 / 免索引 / 支持压缩包
https://www.iplaysoft.com/filelocator.html
https://unsafe.sh/go-176633.html
https://www.iplaysoft.com/filelocator.html
https://unsafe.sh/go-176633.html
Iplaysoft
FileLocator Pro 超快的文档全文内容搜索工具!正则查找文件 / 免索引 / 支持压缩包
在这个信息爆炸的时代,我们往往都在电脑上保存着大量的文档资料,有时想要找到一些重要的信息,却像在在茫茫海洋里捞针一样。所以一款高性能、速度快的搜索工具几乎是必备的!FileLocator Pro 是一款超级好用且专业的文件内容查找工具 (全文搜索软件神器),它以其高效快速、简单易用以及准确度高而备受赞誉。它支持各种办公文档格式,提供了强大的全文搜索功能 (比如支持正则表达式),可以在海量的文件中迅速找到符合条件的结果………
2023 OWASP Top-10 Series: API7:2023 Server Side Request Forgery
https://lab.wallarm.com/api72023-server-side-request-forgery/
https://unsafe.sh/go-176632.html
https://lab.wallarm.com/api72023-server-side-request-forgery/
https://unsafe.sh/go-176632.html
Wallarm
API7:2023 Server Side Request Forgery
Welcome to the 8th post in our weekly series on the new 2023 OWASP API Security Top-10 list, with a particular focus on security practitioners. This post will focus on API7:2023 Server Side Request Forgery (SSRF). In this series we are taking an in-depth…