网络安全笔记
@tsecrecord
7.43K
subscribers
109
photos
3
videos
571
files
642
links
从零开始、持续积累、开放共享、共同成长(网络安全、AI方向)
Download Telegram
Join
网络安全笔记
7.43K subscribers
网络安全笔记
Kubernetes威胁矩阵
https://www.microsoft.com/security/blog/2020/04/02/attack-matrix-kubernetes/
Microsoft News
Threat matrix for Kubernetes
While Kubernetes has many advantages, it also brings new security challenges.
网络安全笔记
更新:帮助塑造容器ATT&CK框架
https://medium.com/mitre-engenuity/update-help-shape-att-ck-for-containers-bfcd24515df5
Medium
Update: Help Shape ATT&CK for Containers
Last December, we sent out a call to the community to help us shape ATT&CK for Containers as part of a Center for Threat-Informed Defense…
网络安全笔记
历史POC集合
https://github.com/nomi-sec/PoC-in-GitHub
GitHub
GitHub - nomi-sec/PoC-in-GitHub:
📡
PoC auto collect from GitHub.
⚠️
Be careful Malware.
📡
PoC auto collect from GitHub.
⚠️
Be careful Malware. - nomi-sec/PoC-in-GitHub
网络安全笔记
https://www.secrss.com/articles/29598
Secrss
ATT&CK实战:Elastic Security初体验&APT29对手模拟
本文是我在探索和学习ATT&CK框架过程中,搭建本地实验环境的粗略过程,和尝试复现ATT&CK Evaluations中APT29的评估过程。
网络安全笔记
https://www.blackarch.org/downloads.html
blackarch.org
Download BlackArch
Downloads the netinstall or the live iso by torrent, http or ftp
网络安全笔记
https://github.com/rabobank-cdc/DeTTECT
GitHub
GitHub - rabobank-cdc/DeTTECT: Detect Tactics, Techniques & Combat Threats
Detect Tactics, Techniques & Combat Threats. Contribute to rabobank-cdc/DeTTECT development by creating an account on GitHub.
网络安全笔记
针对Exchange Server漏洞的IOC检测工具
https://github.com/microsoft/CSS-Exchange/tree/main/Security
GitHub
CSS-Exchange/Security at main · microsoft/CSS-Exchange
Exchange Server support tools and scripts. Contribute to microsoft/CSS-Exchange development by creating an account on GitHub.
网络安全笔记
攻击与防御验证自动化
https://muratozfidan.medium.com/attack-defence-verification-automation-d129c33465a2
Medium
ATTACK&DEFENCE VERIFICATION AUTOMATION
How is attack&defence simulation automation done? Verify and control your Security and SOC teams 24/7. This attack was previously blocked…
网络安全笔记
https://dmcxblue.gitbook.io/red-team-notes-2-0/
dmcxblue.gitbook.io
Introduction | Red Team Notes 2.0
网络安全笔记
2021_Security_Awareness_Report_vF.pdf
3.2 MB
网络安全笔记
https://gist.github.com/MichaelKoczwara/0919598da74a844f923033ea5d97379c
Gist
Cobalt Strike servers 192.151.234.160 - 192.151.234.190
Cobalt Strike servers 192.151.234.160 - 192.151.234.190 - Cobalt Strike servers 192.151.234.160 - 192.151.234.190
网络安全笔记
YOU CAN SHOW THAT SOMETHINGIS DEFINITELY DANGEROUS BUT BOT THAT IT’S DEFINITELY SAFE
网络安全笔记
很多事情,我们可以通过多种方法证明它绝对危险,但没办法证明绝对的安全。这句话用来形容网络安全行业再恰当不过了。
网络安全笔记
https://github.com/avboy1337/1195777-chrome0day
网络安全笔记
https://github.com/cyberark/KubiScan
GitHub
GitHub - cyberark/KubiScan: A tool to scan Kubernetes cluster for risky permissions
A tool to scan Kubernetes cluster for risky permissions - cyberark/KubiScan
网络安全笔记
https://unifiedkillchain.com/
通过攻击建模提高抵御高级网络攻击的能力。
Unifiedkillchain
Unified Kill Chain: Raising Resilience Against Cyber Attacks
Cyber attacks are phased progressions towards strategic objectives. Learn how to raise cyber resilience with the Unified Kill Chain.
网络安全笔记
威胁狩猎与检测
https://github.com/Cyb3r-Monk/Threat-Hunting-and-Detection
GitHub
GitHub - Cyb3r-Monk/Threat-Hunting-and-Detection: Repository for threat hunting and detection queries, etc. for Defender for Endpoint…
Repository for threat hunting and detection queries, etc. for Defender for Endpoint and Microsoft Sentinel in KQL(Kusto Query Language). - Cyb3r-Monk/Threat-Hunting-and-Detection
网络安全笔记
云原生相关技术RSS
https://t.me/rss_kubernetes
网络安全笔记
免费社工库限量邀请注册:
https://t.me/FreeSGKbot?start=SGKACLVLUA
网络安全笔记
《Elastic Stack 实战手册》早鸟版.pdf
24.4 MB
网络安全笔记