Last Week in Security (LWiS) - 2025-04-14
文章总结了过去一周的网络安全动态,包括SSL/TLS证书寿命缩短至47天、VMware ESXi免费版本回归、中国短信钓鱼攻击转向银行等新闻。技术方面涉及WinRMS中继攻击、ZIP明文攻击、SQL Server加密分析等。工具与漏洞包括InlineWhispers3、FindUnusualSessions等工具发布及相关技术研究。 2025-4-15 03:59:0 Author: blog.badsectorlabs.com(查看原文) 阅读量:9 收藏

WinRMS relay (@Defte_), plaintext Zip attacks (@pfiatde), SQL Server Crypto deep dive (@_xpn_), FindUnusualSessions (@podalirius_), and more!

Last Week in Security is a summary of the interesting cybersecurity news, techniques, tools and exploits from the past week. This post covers 2025-04-07 to 2025-04-14.

News

Techniques and Write-ups

Tools and Exploits

New to Me and Miscellaneous

This section is for news, techniques, write-ups, tools, and off-topic items that weren't released last week but are new to me. Perhaps you missed them too!

Techniques, tools, and exploits linked in this post are not reviewed for quality or safety. Do your own research and testing.


文章来源: https://blog.badsectorlabs.com/last-week-in-security-lwis-2025-04-14.html
如有侵权请联系:admin#unsafe.sh