Last Week in Security (LWiS) - 2025-12-02
嗯,用户让我总结一篇文章的内容,控制在100字以内,而且不需要特定的开头。我先看看文章内容。这篇文章是关于过去两周的网络安全新闻、技术、工具和漏洞的综述。里面提到了美国军方与网络初创公司的合作,黑客活动,供应链攻击,还有各种工具和技术的介绍。 首先,我需要提取主要信息:军事网络攻击合作、CMMC CTF比赛、跨平台文件共享、Scattered Lapsus$ Hunters的管理员身份揭露、VPN禁令、华为监控、GrapheneOS迁移服务器、Shai-Hulud供应链攻击等新闻。然后是技术部分,比如密码管理、Tradecraft Garden项目、Windows认证反射攻击等。工具方面有push_matrix_tool、RelayInformer等。 接下来,我要把这些内容浓缩到100字以内。要涵盖新闻事件和技术工具,同时保持简洁明了。可能需要合并一些相似的内容,比如提到供应链攻击和漏洞利用。 最后,确保语言流畅自然,不使用任何特定的开头词。这样用户就能快速了解文章的主要内容了。 </think> 文章总结了2025年11月18日至12月2日的网络安全动态,包括美国军方与网络初创公司合作进行 offensive cyber operations、CMMC CTF比赛、Android跨平台文件共享功能AirDrop支持、Scattered Lapsus$ Hunters Telegram群组管理员身份揭露等新闻事件;还涉及密码管理技术、Windows认证反射攻击技巧以及多种网络安全工具和漏洞利用方法的介绍。 2025-12-3 10:8:52 Author: blog.badsectorlabs.com(查看原文) 阅读量:3 收藏

Two weeks of news, techniques, tools, exploits, and more!

Last Week in Security is a summary of the interesting cybersecurity news, techniques, tools and exploits from the past week. This post covers 2025-11-18 to 2025-12-02.

News

Techniques and Write-ups

Tools and Exploits

  • push_matrix_tool - A self-hosted web push notification demo server for testing and training purposes. Built with FastAPI and vanilla JavaScript.
  • RelayInformer - Python and BOF utilities to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective.
  • moxpack - A Qemu Proxmox Template builder project using Packer.
  • sleepmask-vs - A simple Sleepmask BOF example.
  • icmp-udc2 - UDC2 implementation that provides an ICMP C2 channel.
  • RSA-Backdoor - This repo contains code to reproduce the Secretly Embedded Trapdoor with Universal Protection (SETUP) attack on RSA key generation proposed by Young & Yung, 1996. Considering the potential of this attack, never trust black box key generation systems. I am also planning on providing a small utility to hook ssh-keygen on compromised host to automatically backdoor further keys... TBC
  • Kharon-Agent - Agent for AdaptixC2 containing lateral movement capabilities ( WMI, SCM, WinRM, DCOM), bof/dotnet/shellocde in memory executions, postex modules with shellcode and bof with possibilities of fork executions (spawn/explicit).
  • BOF_RunPe - BOF to run PE in Cobalt Strike Beacon without console creation.

New to Me and Miscellaneous

This section is for news, techniques, write-ups, tools, and off-topic items that weren't released last week but are new to me. Perhaps you missed them too!

  • bichon - A lightweight, high-performance Rust email archiver with WebUI.
  • CS7038-Malware-Analysis - Course Repository for University of Cincinnati Malware Analysis Class (CS[567]038).
  • heretic - Fully automatic censorship removal for language models.

Techniques, tools, and exploits linked in this post are not reviewed for quality or safety. Do your own research and testing.


文章来源: https://blog.badsectorlabs.com/last-week-in-security-lwis-2025-12-02.html
如有侵权请联系:admin#unsafe.sh