Web安全
解决哥斯拉内存马 pagecontext 的问题:
https://paper.seebug.org/1885/
非http流量中继修改工具
https://github.com/cyberark/MITM_Intercept
内网渗透
Windows事件查看器.net 反序列化
https://twitter.com/orange_8361/status/1518970259868626944
利用keberos重放进行本地提权
https://github.com/Dec0ne/KrbRelayUp
使用StartTLS绕过LDAP通道绑定
https://offsec.almond.consulting/bypassing-ldap-channel-binding-with-starttls.html
最新Windows 11 Home版本默认禁用SMB1
https://techcommunity.microsoft.com/t5/storage-at-microsoft/smb1-now-disabled-by-default-for-windows-11-home-insiders-builds/ba-p/3289473
Outflank 原创C2工具集,以BOF与反射DLL为主
https://github.com/outflanknl/C2-Tool-Collection
终端对抗
基于DNS over HTTPS的CobaltStrike通讯
https://www.blackhillsinfosec.com/dns-over-https-for-cobalt-strike/
使用VEH HOOK等技术加密内存绕过pesieve和moneta内存扫描
https://www.arashparsa.com/bypassing-pesieve-and-moneta-the-easiest-way-i-could-find
为非托管二进制文件生成内存执行NanoDump的 C#自注入器模板
https://mobile.twitter.com/snovvcrash/status/1519691055947517952
ElfPack:用于无阶段Payload投递的ELF 二进制打包器
https://github.com/dsnezhkov/elfpack
漏洞相关
CVE-2022-0540:Jira身份认证漏洞
https://securityaffairs.co/wordpress/130564/hacking/atlassian-jira-authentication-bypass-issue.html
CVE-2022-29799和CVE-2022-29800:Linux 提权漏洞 Nimbuspwn
https://www.microsoft.com/security/blog/2022/04/26/microsoft-finds-new-elevation-of-privilege-linux-vulnerability-nimbuspwn/
CVE-2022-22958 CVE-2022-22957 CVE-2022-22954 VMWARE 身份管理器漏洞
https://blog.morphisec.com/vmware-identity-manager-attack-backdoor
Azure PostgreSQL 跨账户数据库漏洞
https://www.wiz.io/blog/wiz-research-discovers-extrareplica-cross-account-database-vulnerability-in-azure-postgresql/
CVE-2022-0543:Redis沙盒逃逸RCE在野利用
https://www.bleepingcomputer.com/news/security/public-redis-exploit-used-by-malware-gang-to-grow-botnet/
Windows 通用日志文件系统(CLFS)逻辑错误漏洞的分析和利用
https://www.pixiepointsecurity.com/blog/nday-cve-2022-24521.html
云安全
滥用REST API绕过Docker防火墙
https://tbhaxor.com/bypass-the-docker-firewall-by-abusing-rest-api/
其他
加密公钥已知漏洞检测工具
https://www.reddit.com/r/blueteamsec/comments/uc67bb/badkeysinfo_checking_cryptographic_public_keys/
科恩二进制文件自动化静态漏洞检测工具正式开源
https://mp.weixin.qq.com/s/x6jNNvkWRJt1YcHMakWHEg
M01N Team
聚焦高级攻防对抗热点技术
绿盟科技蓝军技术研究战队
往期推荐
原文始发于微信公众号(M01N Team):每周蓝军技术推送(2022.4.23-4.29)