<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Doonsec's feed</title><link>http://wechat.doonsec.com/Mzk0MzY3MDE5Mg.xml</link><description>The latest security articles about WeChat official account</description><language>zh-CN</language><lastBuildDate>Mon, 23 Mar 2026 23:29:50 GMT</lastBuildDate><generator>PyRSS2Gen-1.1.0</generator><docs>http://blogs.law.harvard.edu/tech/rss</docs><image><url>http://wechat.doonsec.com/</url><title>Doonsec</title><link>http://wechat.doonsec.com/static/front/img/doonsec_bak3.png</link></image><item><title>一次针对电商的钓鱼事件</title><link>https://mp.weixin.qq.com/s/IhydbLuceUcjEuuuxeOnIw</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2026-03-23T20:08:27</pubDate></item><item><title>我在朋友圈看见一些关于OpenClaw的图片</title><link>https://mp.weixin.qq.com/s/0QbcblUuTcHLt3F2aKoQsg</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2026-03-09T18:14:52</pubDate></item><item><title>长亭科技企业级 AI 开发平台MonkeyCode注册体验</title><link>https://mp.weixin.qq.com/s/0gWcOAC9gPhsjZQxrMJEsg</link><description>还怕github的项目不会二开？快来长亭 MonkeyCode</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2026-01-08T12:13:47</pubDate></item><item><title>接码平台SMS-Activate停运</title><link>https://mp.weixin.qq.com/s/twkVqO1xcwqL7fyppCvDMQ</link><description>接码平台SMS-Activate停运</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-12-31T10:15:46</pubDate></item><item><title>VMware 25H2版本的更新以及汉化</title><link>https://mp.weixin.qq.com/s/HGAD_L-q75k8L095xvoXLQ</link><description>VMware 25H2版本的更新以及汉化</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-12-22T17:05:35</pubDate></item><item><title>使用微软账号的Windows如何用远程桌面连接问题</title><link>https://mp.weixin.qq.com/s/kREqvNfSrnhe_w0uT-fztw</link><description>微软账号登录的系统如何连接远程桌面</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-12-12T17:15:03</pubDate></item><item><title>警惕！伪装成各类办公软件、运维软件的“银狐”病毒</title><link>https://mp.weixin.qq.com/s/B-dsKcDih1g9ouY93maYNQ</link><description>“银狐”病毒正在伪冒主流办公软件大肆传播。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-09-29T15:04:23</pubDate></item><item><title>资源分享 最新 ida 9.2 pro（正式版）</title><link>https://mp.weixin.qq.com/s/GCOBeTg4DE4SA7t3CYWGDw</link><description>最新 ida 9.2 pro（正式版）</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-09-24T13:16:43</pubDate></item><item><title>漏洞预警/通知千千万，几张图让你知道谁家更权威</title><link>https://mp.weixin.qq.com/s/nPGsrfsKxSMN9L-WcxLeqw</link><description>漏洞预警/通知千千万，几张图让你自动谁家更权威</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-09-04T17:23:35</pubDate></item><item><title>Windows 自动更新老是惹麻烦？教你一招暂停更新！</title><link>https://mp.weixin.qq.com/s/DHwx37Q9rVPbauTIoTuAjQ</link><description>很多朋友在用 Windows 的时候，都会被一个问题困扰：自动更新太勤快了。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-08-28T10:16:11</pubDate></item><item><title>POC :  Microsoft SharePoint存在远程代码执行漏洞（CVE-2025-53770）</title><link>https://mp.weixin.qq.com/s/Ehpt-l9jebDOsLxdbVp07g</link><description>新SharePoint 远程代码执行 (RCE)，发现POC</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-07-22T09:43:48</pubDate></item><item><title>什么样的实习能开1.2K（无吃无住无补贴无保险）</title><link>https://mp.weixin.qq.com/s/WCFfCV6FfXqLq6dKe_x5VA</link><description>这是什么情况，这倒贴实习？</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-07-10T11:04:21</pubDate></item><item><title>hvv—蓝队生存指南</title><link>https://mp.weixin.qq.com/s/AD4cbugOc_Ip3UIkGHS_LQ</link><description>吗喽生存指南</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-06-30T20:01:32</pubDate></item><item><title>最新VMware Workstation Pro 17.6.3和VMwarer tools</title><link>https://mp.weixin.qq.com/s/kvSjrkzI947wIlB6VlBsmA</link><description>没事想更新一下vm，发现由于博通（Broadcom）修改了软件更新下载 URL，导致 VMware Works</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-06-25T10:21:14</pubDate></item><item><title>啊？什么？新时代的注入攻击？</title><link>https://mp.weixin.qq.com/s/tVF7BVjaRBRAwX2wssVa0g</link><description>老表发一聊天记录，哎呦，新时代sql注入？这啥玩意？这咋回事，无人直播间？咋给人搞得喵喵叫半天？</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-06-08T19:24:20</pubDate></item><item><title>基于 LNK 快捷方式获取Windows NTLM的 漏洞（无需运行，已复现！）</title><link>https://mp.weixin.qq.com/s/3TtkbX857NoQ44Ynj6TWJg</link><description>无需运行，已复现！</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-05-06T23:03:46</pubDate></item><item><title>AI 对话中的XSS</title><link>https://mp.weixin.qq.com/s/wdAMPtYdA0V4C8JlpZfFxQ</link><description>AI 对话中的XSS</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-04-15T09:07:28</pubDate></item><item><title>利用 PDF 文件实现盲 SSRF</title><link>https://mp.weixin.qq.com/s/WzjQ_MmWdN72H3HSyPBDLg</link><description>介绍一种利用文件上传功能触发盲 SSRF的高级攻击方法，其核心思路是利用 PDF 文件的特性展开攻击。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-04-09T19:33:43</pubDate></item><item><title>那些遇见的让人直呼六百六十六的漏洞案例</title><link>https://mp.weixin.qq.com/s/1Q3oDWInpMIZTs25LJUCGA</link><description>不是吧，这都行？</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-04-08T09:39:33</pubDate></item><item><title>这就是安全圈？</title><link>https://mp.weixin.qq.com/s/8EO_adWWrydYYsOwrM7f-g</link><description>我以为你和他们不一样，没想到。。。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-14T21:12:11</pubDate></item><item><title>资源分享 最新 ida 9.1 pro</title><link>https://mp.weixin.qq.com/s/nW72usv5IsKCThUxpjhoJQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-13T21:36:34</pubDate></item><item><title>谁干的？知名安全博主网站被日穿。</title><link>https://mp.weixin.qq.com/s/tgLssuWKEmI_ptRt4J6e8Q</link><description>大黑客，能不能把你打包的站点发我一份。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-11T13:06:46</pubDate></item><item><title>招聘作弊代考泄题？部门被裁1/3？岗位空缺！！！</title><link>https://mp.weixin.qq.com/s/3UdzkhTDxq3uioCgYpT3aA</link><description>又是兄弟们喜闻乐见的吃瓜栏目，开除这么多，是不是我就有机会了？\\x0a\\x0a\\x0a开除这么多，是不是我就有机会了？\\x0a\\x0a\\x0a\\x0a请理性吃瓜，素材源自网络，此文目的主要为提醒各位朋友注重做人老实本分，以诚为本！公众号发表的一切文章如有侵权烦请私信联系告知，我们会立即删除并对您表达最诚挚的歉意！感谢您的理解！</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-11T11:12:30</pubDate></item><item><title>招聘作弊代考泄题？部门被裁1/3？岗位空缺！！！</title><link>https://mp.weixin.qq.com/s/h8wFJ0kCciPJHf-jBKlSDQ</link><description>又是兄弟们喜闻乐见的吃瓜栏目，开除这么多，是不是我就有机会了？\\x0a\\x0a\\x0a开除这么多，是不是我就有机会了？\\x0a\\x0a\\x0a\\x0a请理性吃瓜，素材源自网络，此文目的主要为提醒各位朋友注重做人老实本分，以诚为本！公众号发表的一切文章如有侵权烦请私信联系告知，我们会立即删除并对您表达最诚挚的歉意！感谢您的理解！</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-11T11:08:20</pubDate></item><item><title>CVE-2025-0087 安卓本地权限提升POC</title><link>https://mp.weixin.qq.com/s/dVYwGj4b-C5mYptPxvUxxg</link><description>CVE-2025-0087 POC</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-07T21:48:36</pubDate></item><item><title>Telegram 的 CVE-2024-7014 漏洞利用细节</title><link>https://mp.weixin.qq.com/s/pauLubyc6whsGJwGHRKsxg</link><description>Telegram Evilloader攻击技术细节公开</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-05T10:25:49</pubDate></item><item><title>SwitchyOmega无法使用后的平替——yaklang-chrome-extension</title><link>https://mp.weixin.qq.com/s/EIyMjEuGFN6hkbXgRCioDw</link><description>SwitchyOmega 不能用了怎么办？快来看看yaklang-chrome-extension</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-03-03T21:04:41</pubDate></item><item><title>wy876/POC删库了！！！快来领取备份，2025.02.21最后更新。</title><link>https://mp.weixin.qq.com/s/GePter3qBUaiGJfMD888sg</link><description>wy876_poc备份</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-27T10:13:52</pubDate></item><item><title>什么？这里下载的Google  Chrome浏览器有后门！！！</title><link>https://mp.weixin.qq.com/s/0Q_3MbS9_NNE1sL-qfyNrg</link><description>还不赶紧检查一下你用的google浏览器带不带后门！</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-26T21:23:54</pubDate></item><item><title>是谁竟然能盗走Bybit的100多亿！！！</title><link>https://mp.weixin.qq.com/s/29ePmQKCOprJc6Zre0qFWw</link><description>Bybit 被盗100多亿， 人类历史上金额最大的盗窃案，是谁做到的？</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-22T13:17:12</pubDate></item><item><title>来看看面试了两个小时的工作是什么情况</title><link>https://mp.weixin.qq.com/s/KUjXgIlrumozceGZhYQf3g</link><description>我有一个朋友，找工作面试，面了两小时。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-20T22:49:35</pubDate></item><item><title>DeepSeek本地化部署有风险！快来看看你中招了吗？</title><link>https://mp.weixin.qq.com/s/nlPFXAFcd0uy_zvVJvL3Zg</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-18T10:03:32</pubDate></item><item><title>安服日常注意事项</title><link>https://mp.weixin.qq.com/s/Ur11mSO52rZ7kMtUb31nCQ</link><description>渗透就得细！amdin,admin你都敢不试</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-17T17:25:04</pubDate></item><item><title>速度自查，看看你的通过Ollama部署的大模型有没有中招</title><link>https://mp.weixin.qq.com/s/KbwEi0_gvgQoTFouJ_ecWA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-11T22:36:20</pubDate></item><item><title>速看，码农讨薪后续</title><link>https://mp.weixin.qq.com/s/fVsmozOxRAb5B16e-zkaAA</link><description>“码农的钱你也敢吞”，后续。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-08T23:32:40</pubDate></item><item><title>速看，码农讨薪后续</title><link>https://mp.weixin.qq.com/s/lp8Od5Aamu7a6lrwPK5rsg</link><description>“码农的钱你也敢吞”，后续。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-08T23:10:46</pubDate></item><item><title>谁家公司这么搞笑的</title><link>https://mp.weixin.qq.com/s/M-RwH6Gj4sq3n-wNff_u3A</link><description>太搞笑了，被搞了吧。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-08T11:01:16</pubDate></item><item><title>广西产学研科学研究院关于2025年中非人工智能产业发展论坛征稿及参会的通知</title><link>https://mp.weixin.qq.com/s/sA6W7JBoICWRo92uimYdAA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-08T10:52:27</pubDate></item><item><title>谁说红客只会蹭！过来看看他们的实力！</title><link>https://mp.weixin.qq.com/s/HmrUyxbz0kxCuL4kZcB32Q</link><description>你在嘲笑红客联盟，可是人家这几天赚了三百多万了啊🤡</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-02-02T09:13:38</pubDate></item><item><title>这个世界这么抽象的嘛</title><link>https://mp.weixin.qq.com/s/tdqs1FIfjA0YRhusekS2hA</link><description>我以为我已经够抽象了，现在我才发现不及你们的万分之一。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-31T13:12:56</pubDate></item><item><title>本地部署 deepseek-r1 模型</title><link>https://mp.weixin.qq.com/s/hFo1uHZahpN9numUaaYDxA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-30T10:43:24</pubDate></item><item><title>猴子回花果山了</title><link>https://mp.weixin.qq.com/s/fIrm-6VoxpWsxLsOgD_fWQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-27T20:42:10</pubDate></item><item><title>好险差点被他赚到了</title><link>https://mp.weixin.qq.com/s/VOCj93AJTpWlJc8OXKFy-w</link><description>快看，他被狠狠上了一课</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-25T13:56:08</pubDate></item><item><title>一名 15 岁的高中生在课余时间入侵了市值十亿美元的公司</title><link>https://mp.weixin.qq.com/s/zwvWwQpey5gdGiEixTGWcQ</link><description>15 岁的高中生黑客拿下世界500强公司！！！</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-23T21:03:08</pubDate></item><item><title>搞网络安全怎么赚大钱！！！</title><link>https://mp.weixin.qq.com/s/P_MV430wDb-KYcoW9cK-VQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-22T21:33:58</pubDate></item><item><title>SecScan强大的端口扫描与漏洞扫描工具——梭哈！！！</title><link>https://mp.weixin.qq.com/s/T_WiJ4w7GIivdsUOlDuUSA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-21T12:50:31</pubDate></item><item><title>吃瓜，培训一哥起诉某公众号索赔50W</title><link>https://mp.weixin.qq.com/s/HEcYEny3W6ucMF7EQOZlXQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-19T14:53:33</pubDate></item><item><title>哟，搁这玩反差呢。</title><link>https://mp.weixin.qq.com/s/V4ItiR3eLKxbsHtgYrhB0A</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-19T10:03:47</pubDate></item><item><title>既怕兄弟苦又怕兄弟开路虎（）o(╥﹏╥)o）</title><link>https://mp.weixin.qq.com/s/f9N0wrUPBOPxWDRDOW4dSQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-19T09:56:14</pubDate></item><item><title>吃瓜，某安一哥起诉某公众号索赔50W</title><link>https://mp.weixin.qq.com/s/WjyxHQuDL3-DaaWuyfKmJg</link><description>大瓜？</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-18T11:21:16</pubDate></item><item><title>PHP shell 样本分析</title><link>https://mp.weixin.qq.com/s/TNqj09Cw8A_NEyv-Ggj-8Q</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-16T22:07:58</pubDate></item><item><title>速看，疑似大瓜！！！是谁的不眠之夜？</title><link>https://mp.weixin.qq.com/s/VbJQwDKEMDqhkQwGnk4ldQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-15T21:09:08</pubDate></item><item><title>防翻车，禁止浏览器扩展插件自动更新</title><link>https://mp.weixin.qq.com/s/BHmg84LP_4quUlUqdAQ25w</link><description>防翻车，禁止浏览器扩展插件自动更新</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-14T21:05:47</pubDate></item><item><title>不妙，中招了【被供应链攻击的多个浏览器插件】，包含Proxy SwitchyOmega (V3)快看看你有没有中招！！！</title><link>https://mp.weixin.qq.com/s/E-l0RfCtSPdpuLZ8u2G5XA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-13T12:17:16</pubDate></item><item><title>大黑客快来自查你有没有翻车</title><link>https://mp.weixin.qq.com/s/p_sshCpyPBeAgDERn6rPWg</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-09T08:48:59</pubDate></item><item><title>【错失6w$赏金的故事】微软身份漏洞-未授权强制解绑任意微软账户邮箱</title><link>https://mp.weixin.qq.com/s/IZ-5RA1737RMhX3fe5344A</link><description>6w$赏金！！！倒天闭</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2025-01-04T09:51:53</pubDate></item><item><title>独一无二的圣诞树</title><link>https://mp.weixin.qq.com/s/C7_Ih2wQueqt5vPeWXYN4A</link><description>我在零点时候收到一棵圣诞树，这可不是你们收到的那些老套的代码树。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-12-26T00:31:04</pubDate></item><item><title>使用python+微信发送消息提醒</title><link>https://mp.weixin.qq.com/s/rI42tUXAfKYtQ4OtdmFrEA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-12-15T15:07:31</pubDate></item><item><title>北京时空智友科技有限公司企业流程化管控系统存在SQL注入漏洞（2024-新）</title><link>https://mp.weixin.qq.com/s/M9c35Hlg9klrliSmttZU-A</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-12-14T11:06:32</pubDate></item><item><title>USDOD真不好意思</title><link>https://mp.weixin.qq.com/s/3_46a5XMIbXon7_0PIuFqA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-12-13T18:16:06</pubDate></item><item><title>资源分享，《图解密码技术 第三版》</title><link>https://mp.weixin.qq.com/s/UQNjOTfDBlHpIPbFE6jWDw</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-10-15T11:11:10</pubDate></item><item><title>国务院发布《网络数据安全管理条例》，2025年起施行</title><link>https://mp.weixin.qq.com/s/NYpFFY1oqj7PFqMRUuZhNQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-10-12T10:41:34</pubDate></item><item><title>大胆猜测！！！搞搞鸿蒙安全？？？</title><link>https://mp.weixin.qq.com/s/d3bQcUoQWssj2Rakl2OtBA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-10-09T11:12:11</pubDate></item><item><title>爽了！Windows降级攻击POC！</title><link>https://mp.weixin.qq.com/s/fts_Db14f08uHcaTxCZTFg</link><description>前言降级攻击（也称为版本回滚攻击）是一种攻击类型，旨在将免疫的、完全最新的软件恢复到旧版本。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-08-20T11:20:04</pubDate></item><item><title>是这个理</title><link>https://mp.weixin.qq.com/s/o5ihl5SE1sPS9RdM-kD9PA</link><description>“ 护网演练或者攻防演练是做地区安全很好的办法。”“只要组织一次演练，准备几个奖状，万把块钱，就可以让国内各大和各小公司纷纷派人参加。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-08-08T11:10:00</pubDate></item><item><title>速看，Nacos最新0day漏洞？复现以及临时修复建议</title><link>https://mp.weixin.qq.com/s/NT8vsQqVsuyFtocx7-b8zA</link><description>一、前言昨天下午（7.15）各个群里以及公众号都在传，github上有网友公布了最新的nacos远程代码执行漏</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-07-16T11:38:21</pubDate></item><item><title>CVE-2024-6387（SSH远程RCE!!! 是核弹还是鸡肋？）</title><link>https://mp.weixin.qq.com/s/Eh-9uRVfKKodvu0B0EouZA</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-07-02T09:38:16</pubDate></item><item><title>又来！！！（CVE-2024-30088 Windows内核提权漏洞 poc）</title><link>https://mp.weixin.qq.com/s/SPQhDcTNIlN41DqABcFfCA</link><description>免责声明      技术文章仅供参考，任何个人和组织使用网络应当遵守法律法规，遵守公共秩序，尊重社会公德，不得</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-06-27T17:09:26</pubDate></item><item><title>CVE-2024-26229 POC（Windows CSC Service 权限提升漏洞）</title><link>https://mp.weixin.qq.com/s/uZDrljzpap68mfnxhvu-GQ</link><description>免责声明      技术文章仅供参考，任何个人和组织使用网络应当遵守法律法规，遵守公共秩序，尊重社会公德，不得</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-06-14T22:17:19</pubDate></item><item><title>OSS对象存储攻防——逮到一处存储桶权限配置错误</title><link>https://mp.weixin.qq.com/s/evXgLbenUsq1joOrkTQHWg</link><description>一、某次安全测试，没啥功能点的网站，开扫一堆404里发现一个301目录，点进去看看，欧呦这种模样的不是OSS存</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-05-27T11:27:11</pubDate></item><item><title>溯源反制</title><link>https://mp.weixin.qq.com/s/ENA6zbsPqiQ7HJ062ZNt8A</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-04-19T10:41:38</pubDate></item><item><title>PHP命令执行漏洞CVE-2024-1874（CVSS：10）</title><link>https://mp.weixin.qq.com/s/jAeRY-XOKw8fmUDXT2ESNQ</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-04-16T11:50:47</pubDate></item><item><title>记在某医疗资产的测试</title><link>https://mp.weixin.qq.com/s/L9ChoCh2tt6lxJ4Cicierg</link><description></description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-04-05T18:16:01</pubDate></item><item><title>你的Kali还好吗？——CVE-2024-3094 xz-utils软件包 liblzma库存在后门</title><link>https://mp.weixin.qq.com/s/KyU7ReN7mD-lbAtUWgP42w</link><description>概述攻击者潜伏了三年，很精彩，只差一点点就可以往众多 Linux 发行版的 sshd 注入后门，可用于绕过密钥</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-03-30T13:59:41</pubDate></item><item><title>CVE-2024-1086 Linux本地提权漏洞</title><link>https://mp.weixin.qq.com/s/VexYqwbMDZlYslSTINi6dA</link><description>漏洞描述Linux内核的netfilter: nf_tables组件中的使用后释放漏洞可被利用实现本地提权。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-03-29T15:38:11</pubDate></item><item><title>某安全产品审计学习</title><link>https://mp.weixin.qq.com/s/JoeuWmQzXo2meIsMvWQxug</link><description>话不多说，先上POC瞅瞅怎么个事/webui/?</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-03-26T22:02:51</pubDate></item><item><title>回忆那次溯源分析</title><link>https://mp.weixin.qq.com/s/MFIbNsdvagcSLLmD6JlOZw</link><description>扫描告警在某次hvv值守时碰到一个不讲武德的IP狂扫客户资产，硬生生打断了我的摸鱼时间。</description><author>Secu的矛与盾</author><category>Secu的矛与盾</category><pubDate>2024-03-21T10:10:13</pubDate></item></channel></rss>