每日安全动态推送(3-15)
2024-3-15 15:4:58 Author: mp.weixin.qq.com(查看原文) 阅读量:8 收藏

Tencent Security Xuanwu Lab Daily News

• DarkGPT - An OSINT Assistant Based On GPT-4-200K Designed To Perform Queries On Leaked Databases, Thus Providing An Artificial Intelligence Assistant That Can Be Useful In Your Traditional OSINT Processes:
https://www.kitploit.com/2024/03/darkgpt-osint-assistant-based-on-gpt-4.html

   ・ DarkGPT是一个基于GPT-4-200K的人工智能助手,旨在执行对泄露数据库的查询。 – SecTodayBot

• VMware Cloud Director 10.5 Authentication Bypass:
https://packetstormsecurity.com/files/177554

   ・ 介绍了CVE-2023-34060漏洞在VMware Cloud Director中的利用方法,并提供了相应的Python程序 – SecTodayBot

• Attacking Android:
https://blog.devsecopsguides.com/attacking-android

   ・ 探讨了Android安全性,从攻击者的角度阐述了各种攻击技术和方法,涵盖了Android环境中的漏洞和攻击面。 – SecTodayBot

• Jailbreaking LLMs with ASCII Art:
https://www.schneier.com/blog/archives/2024/03/jailbreaking-llms-with-ascii-art.html

   ・ 使用ASCII艺术来绕过AI语言模型的安全限制 – SecTodayBot

• Google Gemini bugs enable prompt leaks, injection via Workspace plugin:
https://www.scmagazine.com/news/google-gemini-bugs-enable-prompt-leaks-injection-via-workspace-plugin

   ・ Google的Gemini大型语言模型(LLM)存在漏洞,研究人员发现通过Gemini Advanced Google Workspace插件可能会泄露系统指令和间接提示注入攻击。 – SecTodayBot

• Using ChatGPT to Deobfuscate Malicious Scripts:
https://isc.sans.edu/diary/rss/30740

   ・ 使用ChatGPT来反混淆恶意脚本的实际例子 – SecTodayBot

• Reverse engineering a car key fob signal (Part 1):
https://0x44.cc/radio/2024/03/13/reversing-a-car-key-fob-signal.html

   ・ 使用RTL-SDR和Flipper Zero等硬件工具进行反向工程和分析无线电信号的过程。 – SecTodayBot

* 查看或搜索历史推送内容请访问:
https://sec.today

* 新浪微博账号: 腾讯玄武实验室
https://weibo.com/xuanwulab


文章来源: https://mp.weixin.qq.com/s?__biz=MzA5NDYyNDI0MA==&mid=2651959559&idx=1&sn=46a40092e9bab3d3fa37ebbcb33cb189&chksm=8baed198bcd9588e8913b536fa0a764ba92d7c2257633df7cc8c1e8a2404fa5e7b506b9cc114&scene=58&subscene=0#rd
如有侵权请联系:admin#unsafe.sh