CVE-2018-0802的PoC

https://github.com/zldww2011/CVE-2018-0802_POC

 

How I exploited ACME TLS-SNI-01 issuing Let’s Encrypt SSL-certs for any domain using shared hosting

https://labs.detectify.com/2018/01/12/how-i-exploited-acme-tls-sni-01-issuing-lets-encrypt-ssl-certs-for-any-domain-using-shared-hosting/

 

IDACyber:一款IDA Pro数据可视化插件

https://github.com/patois/IDACyber

 

CVE-2018-1000001:libc的realpath()  buffer underflow

https://www.halfdog.net/Security/2017/LibcRealpathBufferUnderflow/

邮件列表:

http://seclists.org/oss-sec/2018/q1/38

http://seclists.org/oss-sec/2018/q1/42

 

看我如何结合两个漏洞拿到雅虎账号的通讯录

http://www.sxcurity.pro/2018/01/11/chaining-yahoo-bugs/

演示视频:

 

2017 SANS Holiday Hack Challenge Writeup

https://0xd13a.github.io//2017-SANS-Holiday-Hack-Challenge-Writeup/

 

Zone transfers in The Netherlands

https://binaryfigments.com/2018/01/12/zone-transfers-in-the-netherlands/