1.Session: 具有最小元数据泄漏的端到端加密对话的模型
https://getsession.org/wp-content/uploads/2020/02/Session-Whitepaper.pdf
2.Linux系统中本地ASLR永无止境的问题
https://blog.blazeinfosec.com/the-never-ending-problems-of-local-aslr-holes-in-linux/
3.使用Docker和Socat托管并隐藏C&C
https://khast3x.club/posts/2020-02-09-C2-Protection-Socat-Docker/
4.Blind SSRF exploitation
https://lab.wallarm.com/blind-ssrf-exploitation/
5.Windows Defender驱动WdFilter研究, Part1
https://n4r1b.netlify.com/posts/2020/01/dissecting-the-windows-defender-driver-wdfilter-part-1/
6.高级二进制文件反混淆, 课程材料, 共7课
https://github.com/malrev/ABD
7.Flare-On 2019 solutions
https://www.youtube.com/playlist?list=PL8bwawVZNV0ydaubtWyhMeHZHoIENW-43
8.帮助Chrome团队解决一个很难复现的bug,此bug可能导致代码执行和浏览器沙箱逃逸
https://googleprojectzero.blogspot.com/2020/02/several-months-in-life-of-part1.html
https://googleprojectzero.blogspot.com/2020/02/several-months-in-life-of-part2.html
9.Metasploit CTF 2020 - Five of HeartsWriteup
https://iwantmore.pizza/posts/metasploit-ctf-2020-five-of-hearts.html
10.利用CVE-2019-8449实现Jira用户名枚举
https://www.doyler.net/security-not-included/more-jira-enumeration