Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
reading:by-topic [2024/02/05 13:43] romangolreading:by-topic [2024/03/03 10:49] (current) romangol
Line 9: Line 9:
  
 === Network Security === === Network Security ===
 +  * [G.O.S.S.I.P 阅读推荐 2024-02-23 5G-Spector](https://mp.weixin.qq.com/s/aw816mj1L9YwBPyWfHMOsw)
 +    * 5G-SPECTOR: An O-RAN Compliant Layer-3 Cellular Attack Detection Service @ NDSS 2024
  
 === Web Security === === Web Security ===
 +  * [G.O.S.S.I.P 阅读推荐 2024-02-26 寻觅文件劫持漏洞](https://mp.weixin.qq.com/s/BoKacA2iaBKwwQ-X1GgKfA)
 +    * File Hijacking Vulnerability: The Elephant in the Room @ NDSS 2024
   *[G.O.S.S.I.P 阅读推荐 2024-02-05 WebRR](https://mp.weixin.qq.com/s/bk2SABjkQYJFTZZwucoFtw)   *[G.O.S.S.I.P 阅读推荐 2024-02-05 WebRR](https://mp.weixin.qq.com/s/bk2SABjkQYJFTZZwucoFtw)
     * WEBRR: A Forensic System for Replaying and Investigating Web-Based Attacks in The Modern Web @ USENIX Security 2024      * WEBRR: A Forensic System for Replaying and Investigating Web-Based Attacks in The Modern Web @ USENIX Security 2024 
Line 17: Line 21:
   * [G.O.S.S.I.P 阅读推荐 2024-02-02 来自浏览器的勒索警告!](https://mp.weixin.qq.com/s/H1JFxJE-ir5tR2oG8qHB_w)   * [G.O.S.S.I.P 阅读推荐 2024-02-02 来自浏览器的勒索警告!](https://mp.weixin.qq.com/s/H1JFxJE-ir5tR2oG8qHB_w)
     * RøB: Ransomware over Modern Web Browsers @ USENIX Security 2023     * RøB: Ransomware over Modern Web Browsers @ USENIX Security 2023
 +
 +=== Mobile Security ===
 +  * [G.O.S.S.I.P 阅读推荐 2024-03-01 马奇诺防线总在龙年被攻破](https://mp.weixin.qq.com/s/NUS1lT2OSFSct7JvyBcPKQ)
 +    * Maginot Line: Assessing a New Cross-app Threat to PII-as-Factor Authentication in Chinese Mobile Apps @ NDSS 2024
  
 === 物联网安全 === === 物联网安全 ===
Line 27: Line 35:
  
 === 现实世界的密码学安全问题 === === 现实世界的密码学安全问题 ===
 +  * [G.O.S.S.I.P 阅读推荐 2024-02-19 密码学误用检测工具的误用?](https://mp.weixin.qq.com/s/8GLPmsu5AmBh8-WzbHVxhg)
 +    * Towards Precise Reporting of Cryptographic Misuses @ NDSS 2024
   * [[https://mp.weixin.qq.com/s/EQFWz_JyM5RqbgMaGfqeOw|G.O.S.S.I.P 阅读推荐 2024-01-12 端到端加密APP的注入攻击]]   * [[https://mp.weixin.qq.com/s/EQFWz_JyM5RqbgMaGfqeOw|G.O.S.S.I.P 阅读推荐 2024-01-12 端到端加密APP的注入攻击]]
     * Injection Attacks Against End-to-End Encrypted Applications @ IEEE S&P 2024     * Injection Attacks Against End-to-End Encrypted Applications @ IEEE S&P 2024
Line 35: Line 45:
     * Revisiting the Constant-sum Winternitz One-time Signature with Applications to SPHINCS+ and XMSS @ CRYPTO 2023     * Revisiting the Constant-sum Winternitz One-time Signature with Applications to SPHINCS+ and XMSS @ CRYPTO 2023
  
 +=== 供应链安全 ===
 +  * [G.O.S.S.I.P 阅读推荐 2024-02-21 危险的VS Code插件](https://mp.weixin.qq.com/s/5N8d-GhbOPSUhiIu540Fiw)
 +    * UntrustIDE: Exploiting Weaknesses in VS Code Extensions @ NDSS 2024
  
 === AI安全 === === AI安全 ===
Back to top