Aggregator
Hands-On Learning Experiences Encourage Cybersecurity Career Discovery
1 year 4 months ago
With a mention in the new National Cyber Workforce and Education Strategy and even a dedicated state law , K–12 cybersecurity education clearly has the eye of policymakers. However, despite public attention and new opportunities for high school students to pursue cybersecurity coursework, high schools often struggle to provide students with a clear understanding of what cybersecurity careers actually look like. Hands-on learning experiences, like those we’ve had at our schools and during our internship with NICE at NIST, can help bring cybersecurity education and career pathways into focus for
Asher Cronin , Stephen Langelier
征集一种方法
1 year 4 months ago
征集一种方法
来看一个有趣的XSS(二)
1 year 4 months ago
有趣的XSS系列 二
使用JDK类绕过TemplatesImpl黑名单
1 year 4 months ago
当TemplatesImpl被resolveClass拉黑时,如何使用JDK 中的类绕过黑名单
因果宇宙
1 year 4 months ago
“我去过很多宇宙,但最喜欢这里。你们宇宙最棒的地方就是一切行为都会有后果。这太罕见了。大部分宇宙都乱糟糟的。”
祝NISL全体老师教师节快乐!
1 year 4 months ago
2023年NISL实验室教师节活动
Fuzzing 在 Java 漏洞挖掘中的应用
1 year 4 months ago
分享一个在护网中使用的漏洞挖掘思路。
Chromium based browser/Webview启用--js-flags
1 year 4 months ago
背景
因为工作需求要去验证一些PoC,而很多PoC需要开natives-syntax才能跑,如果转成纯JS实现又需要花更多时间,所以需要在Android的app/webview里也实现添加 js-flags,方便后面搞分析 :)
muhe
JVMTI 加密字节码详解
1 year 4 months ago
详细讲解如何使用JNI加密字节码,通过JVMTI解密字节码以保护代码
URL 解析与鉴权中的陷阱 —— Spring 篇
1 year 4 months ago
书接上回,对 Spring 全家桶中的 URL 解析和鉴权代码进行分析。
对近期分享的一点总结
1 year 4 months ago
今年在安全会议的分享次数相较于往年有点多,先说下出发点,一是希望锻炼自己在台上台下表达能力,尤其是台上,因为
马永强教授谈人才培养理念和会计教学改革,西南财经大学会计学院2023新生家长会笔记之一
1 year 4 months ago
大学就是为学生走向社会、持续学习,提供坚实的基础;大学里运动和读书最重要;厚基础、宽口径、破门槛……
Akamai Prevents the Largest DDoS Attack on a U.S. Financial Company
1 year 4 months ago
Craig Sparling & Sandeep Rath
Increase Performance, Decrease Costs with a Flexible Distributed Cloud
1 year 4 months ago
Susan McReynolds
Fake Account Creation Bots – Part 1
1 year 4 months ago
Part one of a series investigating how automation is used to create fake accounts for fraud, disinformation, scams, and account takeover.
加速人才流动 #11
1 year 4 months ago
近期网络安全相关岗位汇聚
读《做对产品》
1 year 4 months ago
本书给出「如何低成本验证市场需求」的实用指南,有着浓厚的逻辑和统计味道的同时足够简洁。
Ransomware and the cyber crime ecosystem
1 year 4 months ago
A new white paper examines the rise of 'ransomware as a service' and extortion attacks.
【漏洞预警】Apache NiFi MiNiFi C++证书验证不当漏洞威胁通告
1 year 4 months ago
1. 通告信息近日,安识科技A-Team团队监测到Apache NiFi MiNiFi C++中修复了一个证