Last Week in Security (LWiS) - 2025-06-02
文章汇总了过去一周的网络安全动态,包括Chrome不再信任Chunghwa Telecom和Netlock的证书、澳大利亚勒索软件受害者需向政府报告付款情况、恶意充电器攻击手机等新闻。此外还介绍了隐蔽系统调用技术、内存检查工具、iOS漏洞利用方法、Windows特权提升技巧及Azure C2工具等技术与工具。 2025-6-3 07:26:30 Author: blog.badsectorlabs.com(查看原文) 阅读量:40 收藏

Stealth syscalls (@darkrelaylabs), VM introspection (@memn0ps), Marebackup LPE (@itm4n), Azure Arc C2 (@ZephrFish), Obfusk8 (@x86byte), and more!

Last Week in Security is a summary of the interesting cybersecurity news, techniques, tools and exploits from the past week. This post covers 2025-05-27 to 2025-06-02.

News

Techniques and Write-ups

Tools and Exploits

  • boflink - Linker for Beacon Object Files.
  • godump - A minimal, developer-friendly pretty-printer and debug dumper for Go structs, inspired by Laravel’s dump() and Symfony’s VarDumper.
  • Obfusk8 - Obfusk8: Obfuscation library based on C++17 for windows binaries.
  • termitty - The terminal automation framework.

New to Me and Miscellaneous

This section is for news, techniques, write-ups, tools, and off-topic items that weren't released last week but are new to me. Perhaps you missed them too!

Techniques, tools, and exploits linked in this post are not reviewed for quality or safety. Do your own research and testing.


文章来源: https://blog.badsectorlabs.com/last-week-in-security-lwis-2025-06-02.html
如有侵权请联系:admin#unsafe.sh