<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>安全研究GoSSIP</title>
    <link>https://wechat2rss.xlab.app/feed/ac4004481c5b78892663e13bb3af8422d4ebeb68.xml</link>
    <description>G.O.S.S.I.P 软件安全研究组&#xA;(wechat feed made by @ttttmr https://wechat2rss.xlab.app)</description>
    <managingEditor> (安全研究GoSSIP)</managingEditor>
    <image>
      <url>https://wx.qlogo.cn/mmhead/Q3auHgzwzM7F1iaBlDfP2hz8WeWR7DYstgR7hUib988TAAGubkRbNwYQ/0</url>
      <title>安全研究GoSSIP</title>
      <link>https://wechat2rss.xlab.app/feed/ac4004481c5b78892663e13bb3af8422d4ebeb68.xml</link>
    </image>
    <item>
      <title>SaTS 2026 征稿｜聚焦 AI 赋能移动超级应用与小程序生态安全</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501668&amp;idx=1&amp;sn=eee3665a9d9b861dd6402f17e0d5a10f</link>
      <description></description>
      <content:encoded><![CDATA[<p><span>SaTS</span> <span>2026-05-17 21:26</span> <span style="display: inline-block;">贵州</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=ab42be2c&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolVRw8AOANf2CAp1dlENZAn2tyc1K6SG6ZFzEqg9gYKUgBDL6uGhlPp0sHePicRLyRFaOWPnWSnMzInYN58f9zAiaNiarqGdGM34NU%2F0%3Fwx_fmt%3Djpeg"/></p>
  
  <p><b style="font-weight:normal;" data-pm-slice="0 0 []"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">第四届移动超级应用安全研讨会（ACM Workshop of Security and Safety of AI-empowered Mobile Super Apps, SaTS’26） 将与CCS 2026同期在荷兰海牙举办。该Workshop旨在探讨 AI 赋能移动超级应用与小程序生态中的系统性安全与隐私挑战，旨在汇聚学术界与产业界研究人员，共同探讨该领域的新兴威胁、分析方法、防御机制与未来发展方向。投稿截止日期为</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">2026年7月15日（AoE）</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">，欢迎全球研究人员和从业者踊跃投稿！</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span style="border:none;display:inline-block;overflow:hidden;width:624px;height:201px;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100018016" data-type="png" height="201" style="margin-left: 0px;margin-top: 0px;height: auto !important;" width="624" data-ratio="0.32222222222222224" data-w="1080" src="https://wechat2rss.xlab.app/img-proxy/?k=71bec150&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVIgTIq3v8Nhic6UYI3eZbHibJkwPv2oyhhIWibrQ9TGmj7UU98sYiaWpyYrnYoZv1SWoe9QbsIzw6XtQwaUpFzO2QriacCpgg3ibKzE%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></span></span></p><h2 dir="ltr" style="line-height:1.38;margin-top:18pt;margin-bottom:6pt;"><span style="white-space:pre-wrap;font-size:16pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">关于SaTS 26</span></span></h2><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">在过去的十年间，移动超级应用从单一应用形态逐步演进为由平台、开发者与用户共同构成的复杂三方生态系统。随着微信、支付宝、TikTok、LINE、Zalo、Grab 等超级应用的快速普及，超级应用沉淀并掌握了海量用户数据与服务入口，小程序服务商也能够提供诸如“一键登录”等更高效便捷的用户体验。与此同时，华为、小米、OPPO 等厂商推动的快应用等新型系统应用开发范式，也进一步强化了移动服务轻量化、平台化与无安装化集成的发展趋势。这些基于移动端JavaScript执行环境的超级应用平台，通过对用户数据、云服务、与开发者程序包的管理，逐渐演化为一种具有操作系统属性的平台型基础设施。近年来，智能体 AI 框架与 AI 赋能应用开发的兴起，在进一步重塑超级应用生态的同时，也引入了更加复杂、动态且跨主体的安全与隐私挑战。</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">为了应对这类新型威胁，SaTS Workshop 旨在汇聚来自学术界、产业界和政府机构的工作与经验，搭建跨领域交流平台，分享最新研究成果与技术进展，共同探讨 AI 赋能移动超级应用、小程序生态和安全分析交叉领域中的新兴威胁、防御机制与未来研究方向。在2023年至2025年间，SaTS成功举办了三届Workshop，持续凝聚学术界与产业界共识，并推动相关研究议题的形成与发展。今年，第四届 SaTS Workshop 期待进一步吸引业界与学术界的投稿，围绕高质量数据集构建、工具与基础设施建设、新型安全分析范式探索，以及前沿安全问题识别与治理等方向，推动更加深入的研究交流与社区协作。</span></span></p><h2 dir="ltr" style="line-height:1.38;margin-top:18pt;margin-bottom:6pt;"><span style="white-space:pre-wrap;font-size:16pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">征稿主题</span></span></h2><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">第四届移动超级应用安全Workshop将与CCS 2026大会一并在荷兰举行。本届workshop重点关注</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">超级应用安全与人工智能自动化技术</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">交叉方向的投稿，尤其欢迎围绕大语言模型与智能体 AI及其在移动超级应用与小程序生态中的应用、安全影响与治理挑战展开的投稿。我们诚邀能够推进超级应用生态理解、推动其安全评估、风险发现与防护能力提升的技术性和实证性研究。征稿主题包括但不限于：</span></span></p><ul style="margin-top:0;margin-bottom:0;padding-inline-start:48px;" class="list-paddingleft-1"><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">AI 赋能移动（超级）应用及第三方小程序的安全分析</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">移动（超级）应用中智能体框架与助手的安全分析</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">基于智能体或大语言模型的移动（超级）应用安全分析技术</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">面向用户的移动（超级）应用安全与隐私研究</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">恶意软件、漏洞、虚假信息与违规行为检测，隐私政策与安全合规分析</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">移动（超级）应用中的攻击、防御与缓解机制</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">与移动（超级）应用中的智能体和小程序相关的其他安全议题</span></span></p></li></ul><h2 dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;padding:18pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:16pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">投稿指南</span></span></h2><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:12pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">投稿论文须为英文撰写，且必须是未发表、未同时投递至其他出版渠道的原创工作。所有投稿应以 PDF 格式提交，并采用双栏 ACM 格式，具体请参考 ACM Proceedings Template 中的 </span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:&#39;Roboto Mono&#39;,monospace;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">sigconf</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf=""> 样式。我们接受三类投稿：</span></span></p><ul style="margin-top:0;margin-bottom:0;padding-inline-start:48px;" class="list-paddingleft-1"><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:12pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">常规论文，不超过 7 页</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">短文或进行中工作的论文，不超过 4 页</span></span></p></li><li style="white-space:pre-wrap;list-style-type:disc;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:12pt;" role="presentation"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">攻击、防御或工具演示论文，不超过 2 页。</span></span></p></li></ul><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:12pt;margin-bottom:0pt;padding:0pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">页数限制不包括参考文献和明确标注的附录，附录最长可为 2 页。作者不得修改 ACM 模板中的字体或页边距。审稿流程采用双盲评审，所有论文均须以 Adobe Portable Document Format（PDF）提交，并通过 HotCRP 在线投稿系统完成提交，投稿链接将在五月下旬于主页</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#1155cc;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:underline;-webkit-text-decoration-skip:none;text-decoration-skip-ink:none;vertical-align:baseline;"><span leaf=""><a href="https://superappsec.github.io/" target="_blank">https://superappsec.github.io/</a></span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf=""> 更新。</span></span></p><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;padding:0pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">研讨会主页：</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#1155cc;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:underline;-webkit-text-decoration-skip:none;text-decoration-skip-ink:none;vertical-align:baseline;"><span leaf=""><a href="https://superappsec.github.io/" target="_blank">https://superappsec.github.io/</a></span></span></p><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;padding:0pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">联系邮箱：</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#1155cc;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:underline;-webkit-text-decoration-skip:none;text-decoration-skip-ink:none;vertical-align:baseline;"><span leaf="">yuqing.yang@cispa.de</span></span></p><h2 dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;padding:0pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:16pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">重要日期</span></span></h2><p dir="ltr" style="line-height:1.38;background-color:#ffffff;margin-top:0pt;margin-bottom:0pt;padding:0pt 0pt 12pt 0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">论文提交截止时间：</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">2026 年 7 月 15 日（AoE，UTC-12）</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">录用通知时间：2026 年 9 月 1 日</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Roboto,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">终稿提交截止时间：2026 年 9 月 15 日（AoE，UTC-12）</span></span></p><h2 dir="ltr" style="line-height:1.38;margin-top:12pt;margin-bottom:12pt;"><span style="white-space:pre-wrap;font-size:16pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">组织委员会</span></span></h2><p dir="ltr" style="line-height:1.38;margin-top:12pt;margin-bottom:12pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">指导委员会</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Zhiqiang Lin (Distinguished Professor of Engineering, The Ohio State University, IEEE Fellow)</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Ben Stock (Faculty, CISPA Helmholtz Center for Information Security)</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yan Shoshitaishvili (Associate Professor, Arizona State University)</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Luyi Xing (Associate Professor, University of Illinois Urbana-Champaign)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:12pt;margin-bottom:12pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">程序委员会主席</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yuqing Yang（Assistant Professor, Macao University of Science and Technology）</span></span><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yue Xiao（Assistant Professor, William &amp; Mary）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:700;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">程序委员会</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yue Zhang（Professor, Shandong University）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Balazs Engedy (Staff Software Engineer, Google)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Hao Wu (Assistant Professor, Nanjing University)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Hongkai Chen (Arizona State University)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Soheil Khodayari (Researcher, CrowdStrike)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Shubham Agarwal (Researcher, Max Planck Institute for Security and Privacy)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Xinfeng Li (Research Fellow, Nanyang Technological University)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yanjie Zhao (Researcher, Huazhong University of Science and Technology)</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yue Xiao（Assistant Professor, William &amp; Mary）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yuhao Wu（Researcher, Palo Alto Networks）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Yuqing Yang（Assistant Professor, Macao University of Science and Technology）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:0pt;margin-bottom:0pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">Zifeng Kang（Assistant Professor, Beijing University of Posts and Telecommunications）</span></span></p><p dir="ltr" style="line-height:1.38;margin-top:12pt;margin-bottom:12pt;"><span style="white-space:pre-wrap;font-size:11pt;font-family:Arial,sans-serif;color:#000000;background-color:transparent;font-weight:400;font-style:normal;font-variant:normal;text-decoration:none;vertical-align:baseline;"><span leaf="">期待您的投稿，我们海牙见！</span></span></p></b></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=97845153&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501668%26idx%3D1%26sn%3Deee3665a9d9b861dd6402f17e0d5a10f">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Sun, 17 May 2026 21:26:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-05-13 三AI成虎？</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501663&amp;idx=1&amp;sn=dd1e0663d7ec9b39bd3408b6feac2dca</link>
      <description>’‘三人言市有虎，王信之乎？’王曰：‘寡人信之矣。’</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-05-13 21:29</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=1679b4e7&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolUp3oicdbZMuC7DiasOzPEASJ9eel8YAmI0Ip3TztaFlHlJKSgkTmSn6juiaRsQdQibge76CL2IljPH6MQRgYxibza4TfYkVAiar4xdo%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>’‘三人言市有虎，王信之乎？’王曰：‘寡人信之矣。’</p>
  <blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">庞葱与太子质于邯郸，谓魏王曰：‘今一人言市有虎，王信之乎？’王曰：‘否。’‘二人言市有虎，王信之乎？’王曰：‘寡人疑之矣。’‘三人言市有虎，王信之乎？’王曰：‘寡人信之矣。’庞葱曰：‘夫市之无虎明矣，然而三人言而成虎。今邯郸去大梁也远于市，而议臣者过于三人，愿王察之。’王曰：‘寡人自为知。’于是辞行，而谗言先至。后太子罢质，果不得见。</span></p></blockquote><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在今年的SACMAT会议上，有一篇Bluesky Paper（这个bluesky模式很有意思，大家可以去看看，大概就是“高瞻远瞩”的模式）讨论了在当前多agent模式下，人类要去验证AI的工作，这个问题怎么以一种更为严格的形式来定义和分析，这就是今天我们要给大家介绍的论文 </span><em style="box-sizing: border-box;"><span leaf="">The Treacherous Envoy Problem: Trust, Collusion, and Accountability in Multi-Agent Workflows</span></em></p><p data-startline="9" data-endline="9" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100018010" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=0f737c3f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUJIDOpVQb3hKKCjocEFk0PJQsOarbtpCxBjrlxcwIuWgNaIQhUzdWCV4pjuGacOZiaXCEeQ8GN5ic2MsGk2EhxVqleVFHdBV63s%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="11" data-endline="11" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这篇论文定义了一个叫做</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">Treacherous Envoy Problem</span></strong><span leaf="">（TEP）的问题形式，问题的名字援引圣经Proverbs 13:17 </span><em style="box-sizing: border-box;"><span leaf="">A wicked messenger falls into trouble, but a trustworthy envoy brings healing</span></em><span leaf="">（奸恶的使者必陷在祸患里； 忠信的使臣乃医人的良药），那怎么理解TEP在AI时代的定义？</span></p><p data-startline="13" data-endline="13" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">我们先回忆下前段时间的一个新闻，2026年初，携程因为滥用市场垄断地位被调查，收到顶格罚单65亿元，这倒不奇怪，因为很早以前大家就听说过“大数据杀熟”这个概念了。不过到了AI时代，这些巨头们最害怕的可能不是罚款，是AI代替人去查价格买东西。在本文中，作者正是用这个买买买的实例引出了问题：假设现在你想让AI帮忙找一个价格在500块以下，还可以入住前免费退款的酒店，你有没有想过这里面可能会涉及到什么安全或者信任的危机吗？</span></p><p data-startline="15" data-endline="15" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在携程时代（当然没有携程之前，外地人被宰得更狠），我们去订酒店的时候并不知道携程是否真的给了我们最好的价格，而在AI时代，当我们指挥现在的AI agents去帮我们搜索网页选择最低价产品时，也一样要怀疑这些人工智能助手是否真的给了人类足够诚实的答案（虽然人类肯定比ta们更加摸鱼和不老实）。最近的所有关于AI和人共处的文章，大家无一例外强调的就是人要学会验证（validation and verification），但是，要是你面对的是一群AI助手合伙起来（骗你）呢？</span></p><p data-startline="17" data-endline="17" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">本文的核心就在于此：在一个multi-agent的工作流中，信息的流转变得相当复杂且不透明，我们要想去验证到底任务是否真正按照人类的意思去执行，就要把这个工作流给抽象成可以分析的模型，然后更为准确地定义其中的子问题，最后才能回答那个最大的问题——人工智能助手是否可信可靠。在本文中，提到最频繁的那个概念——envoy——实际上可以认为就是一个处理任务的agent，这个agent如果是不可信的（treacherous，又学到新单词了），我们就很容易被蒙骗，那如果处理任务的是多个agent，它们还会合谋起来欺骗人，那我们人类估计是被骗了还很难发现：</span></p><p data-startline="19" data-endline="19" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100018011" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2405744f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVcxcLslibcGemedZzrOeUu00VR16wUvuQlqmy1EGaNClq4bEVBjKUrycTpkyG7xiaxnZ4WWJQq5SIQSsp0ibDiblw7FywKMTaEBE8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="21" data-endline="21" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">因此，要对这样一系列很复杂的信息交互流程进行验证，本文作者首先给出了关于TEP流程非常细节的定义图（如下图），这里面涉及到大量的概念和定义，可能初读起来非常的晦涩，但是如果不这样去定义，可能就很难勾勒出来在现在这样一个multi-agent工作流背景下的清晰的安全模型，因此感兴趣的读者可以去仔细了解一下原文的细节（第三章）：</span></p><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100018009" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=b753c3f8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXibL16BRcg2phpOb8tb6sMxNZNvDgohM2bEELKbuOunRicEu3GAsXqRyXspzc3qOQp2tP213LicZcGkf3knRevYgNLBusP3PfRVc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">论文的第四章讨论了另一个问题：为什么检测这些不可信的agent（或者说，检测agents的行为中是否存在不可信的成分）那么困难？作者用了一些信息论的方法，来展示了其中存在的根本性困难：不管你工程上如何优化，信息的传递本质上可能就是很难保证100%的可靠。</span></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">回到validation and verification上来，基于前面的模型，本文提出了这么一个“不可能三角”（三难困境），这里面其实很像现实中的人类社会，在社会活动中的监管、审计和契约合作都是典型的多方参与的事务，而里面如果只考虑其中的某个单方面事务，是很难发现并真正解决问题的，只有每个层面上的不同角色都合作起来，可能才有希望改善（而非完全解决）现有的问题。这既是人类社会遇到的问题，也是未来人工智能时代可能面临的第一个社会学问题？</span></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100018008" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=46e59723&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVrlibSusMytibccCyYaOyJoRn6yqB9Om8ETiclKWVhhePXy40bkyZLr2Yuqiaoqq6utqunTLHt1RVD6gOpPPEZCzHJvy6OH7gttew%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="32" data-endline="32" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">本文的作者之一是我们G.O.S.S.I.P的老朋友林志强教授，他最近和大家一样，在AI对计算机特别是安全领域产生巨大冲击的浪潮中始终在思考，这篇文章的核心目标，也是希望能够提出一个和byzantine general problem、millionare problem那样的问题，促使大家去思考，在人工智能成为水电这样的基础设施之时，也有一个更为黄金的标准来衡量它的可信度。</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://zhiqlin.github.io/file/SACMAT26.pdf" target="_blank">https://zhiqlin.github.io/file/SACMAT26.pdf</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=a288154c&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501663%26idx%3D1%26sn%3Ddd1e0663d7ec9b39bd3408b6feac2dca">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Wed, 13 May 2026 21:29:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 特别推荐 2026-05-09 破译者</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501655&amp;idx=1&amp;sn=ba83ef32b38128eabf134dd5d3c8bc43</link>
      <description>重温两千年密码学发展史，了解密码科学与技术专业，成为一名破译者！</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-05-09 20:27</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=0f69a969&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolUniaVFjajcNms9hPeu5KWCEkjWtXzrAQn92JwTKW3Iqf9tiaiateccd7iawE9u7VUdjVMwtoGCIichg98jjBJcHZS6fqowRogQt0zo%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>重温两千年密码学发展史，了解密码科学与技术专业，成为一名破译者！</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">提问：在电影银幕上，你最喜欢什么元素？</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">每个人的答案应该都不一样，但是有一个元素肯定会吸引大家的眼球，那就是</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">密码学</span></strong><span leaf="">：讲述计算机巨擘阿兰·图灵的电影《模仿游戏》（其实下图这个香港版本的海报的译名——解码游戏——可能更为贴切），核心正是图灵在二战期间破解德军的Enigma密码机这一著名的事件。如果你对这个故事的具体细节感兴趣，除了去观赏这部电影，也可以访问一个网站 <a href="https://thecodebreakers.org/" target="_blank">https://thecodebreakers.org/</a> 看看你是否能在这个超级芯片加持的时代能如图灵一般破解德军的战争密件。</span></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="1.351288056206089" data-type="png" data-w="854" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017998" src="https://wechat2rss.xlab.app/img-proxy/?k=b72ac8f8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXzS0IMIrDtkMB6hvMqKpqIS043SCc2LJ4Onyy9FodYQJMQjYiayicmN7YTudPh6UyPlhNHC3siaaFL2AmxgdP6LywOHvwxPaWMwo%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在战争年代，密码学总是和生死存亡密切相关，剧情也扣人心弦，像国产电影《风声》在豆瓣上依然保有8.5的高分，好评如潮，影评中甚至有热心观众去分析<span textstyle="" style="font-weight: bold;">周迅需要用多少针脚去编码相关的秘密信息</span>。</span></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.5519187358916479" data-type="png" data-w="886" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017995" src="https://wechat2rss.xlab.app/img-proxy/?k=3fbb9b6d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVuWcdsuUWnhZ6wibLlvRdML7y4jgJuNIgceH45qxPps8kxGgwVjDseqXrhEgANDj4PLrbRFlbrFT7ibjt8LyVVobsdxC7n21QH4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而另一部更为古早的电影《风语者》（2002年吴宇森执导），以二战中的太平洋战争为背景题材，讲述了美军为了对抗日本的密码破译，招募了几百名印第安纳瓦霍族人，将他们训练成了专门的译电员，称为“风语者”（Windtalker）。实际上，第二次世界大战中，密码学的分析和破译几乎是产生了许多决定性的作用：德军的Enigma密码被图灵破译，历史学家认为</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">这直接让二战至少提前两年结束，挽救了超过1400万人的生命</span></strong><span leaf="">。而在太平洋战场上，美军因为破译了日本的密码，不仅</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">直接借助情报击落了日本联合舰队司令山本五十六的座机，还成功在中途岛战役中一举扭转了珍珠港事件导致的劣势</span></strong><span leaf="">。</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于这些故事背后的故事，如果你感兴趣，那么就决不应该错过一本非常值得阅读的书籍——<span textstyle="" style="font-weight: bold;">《The Code Breakers》</span>，特别其中关于中途岛战役的部分，描述得非常精彩，作者David Kahn描述了美军截获了日本的密电，无法确定其中的一个符号“AF”的含义，于是用了巧妙的方法引诱日军执行了密文重用，最后确认这个AF是中途岛（Midway）的代号，从而实施了相关伏击，可以说是彻底改变了太平洋战争的走势。</span></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="1" data-type="png" data-w="700" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017996" src="https://wechat2rss.xlab.app/img-proxy/?k=07d7f4b1&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVJWkDYoC30fjpkYdLyxfyHwCm5DBRltJgZ2FFCJW3eUT0PibKsVuZ8sdjHqzpFfib6aD0g7380e20q11mPynWVVvXrzIx6opbC8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上《The Code Breakers》并不是只简单记录了二战期间的密码学故事，它可以说是第一本讲述几千年来密码学发展史的书籍，在豆瓣上还有一个网友“君子不器”记录了去美国和作者David Kahn共进晚餐的有趣故事：这位网友之所以会去联系David Kahn，完全是无心读到了下面这本《破译者》，这是上个世纪在国内翻译并出版的《The Code Breakers》的中译本，大概是因为这个群众出版社是公安部下属的？上了年纪的读者肯定知道它家出的另一套经典——《福尔摩斯探案集》。<span textstyle="" style="font-weight: bold;">而David Kahn其实并不知道这本书在中国国内被翻译了，不过在他收到了“君子不器”的联系邮件之后，表示希望搞到这套中译本（以及他的另一本书《希特勒的间谍》），并愿意请网友在曼哈顿吃牛排作为答谢！！！</span>这种翩翩风度让我们想到了另一个虽然拿了诺奖但是充满了小家子气的南美老头马尔克斯，不知道老马知道了这个故事会不会觉得羞愧（估计不会，老马已经掉钱眼里面了）。</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://book.douban.com/subject/4928343/" target="_blank">https://book.douban.com/subject/4928343/</a></span></p></blockquote><p data-startline="24" data-endline="24" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.21029082774049218" data-type="png" data-w="894" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017994" src="https://wechat2rss.xlab.app/img-proxy/?k=2dc3d067&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUALguveS4ZUGbiacUUwGwTglWTk0Sr0MjLlyic90DibubAGje5W9IhG3Dl4WSTVQ3iccKOk0fx4z71QvZBuovVHksJN9bZOzdGuUw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="1.4821428571428572" data-type="png" data-w="560" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017997" src="https://wechat2rss.xlab.app/img-proxy/?k=014f761c&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVrskR5AuxURxCiaFTQHuGlL089kDbteoVMtat9fxW884PMBvLCAHgxaCar9OEyS84M3gbic4duGFLoYOPiaMYV3nEC8ITvmQrBIw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">David Kahn其实并不是一个密码学专家，而是一名情报人员，他十一岁的时候恰巧遇到一本很精彩的密码学普及读物，从此对数字背后的隐秘产生了巨大的兴趣。多年后，《纽约时报》在某日头版头条报道了一起情报案件。此时卡恩的情报学知识已经很丰富了，他撰文投给报社，介绍案件背后的情报史背景。此文见报后，有几家出版社找到他，希望他编写一本关于加密和解密的历史著作。卡恩于是开始了他的笔耕生涯，经过“八年抗战”，终于完成号称密码学史上的“圣经”的《破译者》。虽然老先生已于2024年2月1日驾鹤仙去，享年93岁，但是他的这本书籍作为密码学领域的不朽之作，在人类文明的长卷中应该拥有一席之地。</span></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.8365591397849462" data-type="png" data-w="930" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100018000" src="https://wechat2rss.xlab.app/img-proxy/?k=8a6544a7&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUNG0MOVuLAAHrFuI30k4lAaasTPmDTPbFGYAt17LC9rK4rjibxrlXlBHnP3gG4XqlvruJNiaP6J3ySfQ1rc9FfghoHGb4ZU6ibBo%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">大概是因为《The Code Breakers》太有名了，前面提到的网站 <a href="https://thecodebreakers.org/" target="_blank">https://thecodebreakers.org/</a> 应该是向它致敬，上面有很多很多相关的挑战和资料。大家可以去访问一下，就会发现密码学绝不是什么枯燥的数学理论，更像是引人入胜的解密游戏~</span></p><p data-startline="37" data-endline="37" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.6453703703703704" data-type="png" data-w="1080" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100018002" src="https://wechat2rss.xlab.app/img-proxy/?k=df6b6bd7&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWZtulKia5nLT0J127Ib8u5at03kqhJnb6sIaSKa3x6vKkn0n0cMuGWZG9tA7AlDB1E3G3y0MgIrhlGO0CfSicGcbNWolpw58tZ4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上，芝加哥大学很早开始就通过一个叫做CryptoClub Project的项目（NSF资助的哦）发布了一系列面向中小学生的密码学学习材料（<a href="https://cryptoclubproject.uchicago.edu/curriculum" target="_blank">https://cryptoclubproject.uchicago.edu/curriculum</a> 这里有详细信息），其中一本叫做The Cryptoclub的图书已经被国内引入并翻译成中文了。</span></p><p data-startline="41" data-endline="41" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="1.1251758087201125" data-type="png" data-w="711" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100018001" src="https://wechat2rss.xlab.app/img-proxy/?k=a39bc288&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVHnMMrIW1kLM8AML5pOcEMD91JXVSLMoooFjqibEkxXNcluoqZgCibKWQgUVk1MfFIA0T01o2jmg16y8cpOoGiaPyBXD0tAkBZuc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">如果大家感兴趣，完全可以去它的官网 <a href="https://www.cryptoclub.org/" target="_blank">https://www.cryptoclub.org/</a> 直接 </span><s style="box-sizing: border-box;"><span leaf="">玩游戏</span></s><span leaf=""> 学习原汁原味的内容：</span></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.6166666666666667" data-type="png" data-w="1080" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017999" src="https://wechat2rss.xlab.app/img-proxy/?k=49a92928&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWGZRhwgFB07Kea6X4Bh2lbI479YbPpjKfkYHGIiczQolz9HWeWRRbhETVk9iblYPQ8gibVb5vlUM1A3B4NMiaLqSAn3HUbKqXrPos%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="47" data-endline="47" style="box-sizing: border-box;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">好了，介绍了这么多，现在你发现自己对密码学产生了浓厚的兴趣，但不知道是否投身这个领域，那应该怎么办呢？请往下看：</span></p><hr style="border-style: solid;border-width: 1px 0 0;border-color: rgba(0,0,0,0.1);-webkit-transform-origin: 0 0;-webkit-transform: scale(1, 0.5);transform-origin: 0 0;transform: scale(1, 0.5);"/><p><span leaf=""><span textstyle="" style="font-weight: bold;">教育部公布2025年度普通高等学校本科专业备案和审批结果，华东师范大学密码学院获批设立密码科学与技术本科专业，将于2026年开始招生</span>。</span></p><div data-tools="135编辑器" data-id="170287"><div style="margin: 10px auto;"><div style="background-color: #fff9ef;padding: 10px;box-sizing:border-box;"><p style="width: 100%;max-width:100% !important;box-sizing:border-box;" data-width="100%" nodeleaf=""><img data-aistatus="1" alt="图片" class="rich_pages wxw-img" data-ratio="0.5907407407407408" data-s="300,640" data-type="jpeg" data-w="1080" style="width: 558px !important;display: block;vertical-align: baseline;box-sizing: border-box;height: auto !important;max-width: 100% !important;visibility: visible !important;" data-croporisrc="https://mmbiz.qpic.cn/sz_mmbiz_jpg/xHPNVwoUX7iaw14eNaKengzQzeOiazvibGmmQRt0saSNaAXlb0GCibbXI75NH4OTEFERRLxphsyWdF9yPAyEwGBc2CTqw46KM42e5qm3jFkib4C4/0?wx_fmt=jpeg&amp;from=appmsg" data-cropx2="1280" data-cropy2="756.9892473118281" data-imgfileid="100000729" src="https://wechat2rss.xlab.app/img-proxy/?k=2376be56&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FxHPNVwoUX7gm6kWgiaAHibSUPlaCTialcflg2tomV0s4ZWkJI8PpeTypb0e7NhpmmlqLumlia7icvHssndAickzpmkCw8o25n7J9aJJeib8N9HLy5o%2F640%3Fwx_fmt%3Djpeg%26wxfrom%3D13%26tp%3Dwxpic%23imgIndex%3D1"/></p><div style="display: flex;justify-content: center;margin:15px 0 10px;"><div><p style="font-size: 19px;color: rgb(192, 0, 0);text-align: center;padding: 0px 10px;box-sizing: border-box;"><span style="font-size: 19px;"><strong data-brushtype="text"><span leaf="">密码科学与技术</span></strong></span></p></div></div><div data-autoskip="1" style="text-align: justify;line-height:1.75em;letter-spacing: 1.5px;font-size:14px;color:#44342b;background-color: transparent;padding-bottom: 10px;box-sizing:border-box;"><div data-id="86261" data-tools="135编辑器"><div style="margin:10px auto;"><div style="display: flex;justify-content: flex-start;align-items: flex-start;"><div data-autoskip="1" style="font-size: 15px;text-align: justify;letter-spacing: 1.5px;line-height: 1.75em;color: #3e3e3e;padding: 0px 6px;margin-top: -3px;box-sizing: border-box;"><p style="line-height: 2;margin-bottom: 5px;display: block;"><span style="color: #c00000;font-size: 15px;letter-spacing: 1.5px;"><strong><span leaf="">专业代码：</span></strong><span style="font-size: 15px;color: #000000;"><span leaf="">080918TK</span></span></span></p></div></div><div style="display: flex;justify-content: flex-start;align-items: flex-start;margin-top:5px;"><div data-autoskip="1" style="font-size: 15px;text-align: justify;letter-spacing: 1.5px;line-height: 1.75em;color: #3e3e3e;padding: 0px 6px;margin-top: -3px;box-sizing: border-box;"><p style="line-height: 2;margin-bottom: 5px;display: block;"><span style="color: #c00000;font-size: 15px;"><strong><span leaf="">修业年限：</span></strong></span><span style="letter-spacing: 1.5px;font-size: 15px;color: #000000;"><span leaf="">四年</span></span></p></div></div><div style="display: flex;justify-content: flex-start;align-items: flex-start;margin-top:5px;"><div data-autoskip="1" style="font-size: 15px;text-align: justify;letter-spacing: 1.5px;line-height: 1.75em;color: #3f3e3f;padding: 0px 6px;margin-top: -3px;box-sizing: border-box;"><p style="line-height: 2;margin-bottom: 5px;display: block;"><span style="color: #c00000;font-size: 15px;"><strong><span leaf="">学位授予门类：</span></strong></span><span style="letter-spacing: 1.5px;font-size: 15px;color: #000000;"><span leaf="">工学</span></span></p></div></div><div style="display: flex;justify-content: flex-start;align-items: flex-start;margin-top:5px;"><div data-autoskip="1" style="font-size: 15px;text-align: justify;letter-spacing: 1.5px;line-height: 1.75em;color: #3f3e3f;padding: 0px 6px;margin-top: -3px;box-sizing: border-box;"><p style="line-height: 1.75;"><span style="color: #c00000;font-size: 15px;"><strong><span leaf="">专业介绍：</span></strong></span><span style="color: #000000;text-indent: 2.2em;background-color: transparent;caret-color: red;"><span leaf="">该专业作为融合数学、计算机科学、网络信息安全、量子信息等的交叉新工科，依托华东师范大学教育部直属重点高校的学科底蕴、在密码学与网络安全领域数十年的教学科研积淀，以及华东师范大学密码学院——华东地区首个独立实体密码学院及国内率先设立密码学一级学科博士点的雄厚实力，着力培养具备扎实数理功底、前沿技术能力与战略使命担当的复合型人才。</span></span></p><p style="text-indent: 2.2em;line-height: 1.75;margin-top: 5px;display: block;"><span style="letter-spacing: 1.5px;font-size: 15px;color: #000000;"><span leaf="">课程体系涉及人工智能安全、抗量子密码、密码芯片、计算机系统、隐私计算、区块链和数字货币、软件安全测试与软件漏洞挖掘等方向。同时，依托学院与上海期智研究院、江苏金服、亨鑫科技等顶尖机构的联合培养，为学生提供从基础研究到产业应用的全链条科研实践资源。</span></span></p></div></div></div></div></div></div></div></div><div data-id="157705" data-tools="135编辑器" style="transform-origin: center center;transform: rotatez(180deg);-webkit-transform: rotatez(180deg);-moz-transform: rotatez(180deg);-o-transform: rotatez(180deg);"><div data-role="scale-fix" style="margin-top: 0px;margin-bottom: 0px;"><p style="text-align:center;" nodeleaf=""><img data-aistatus="1" alt="图片" class="rich_pages wxw-img __bg_gif" data-ratio="1.2522522522522523" data-w="222" style="vertical-align: baseline;width: 60px !important;box-sizing: border-box;height: auto !important;visibility: visible !important;" src="https://wechat2rss.xlab.app/img-proxy/?k=4550c879&amp;u=https%3A%2F%2Fmmecoa.qpic.cn%2Fsz_mmecoa_gif%2FtKdjCsSmR35Oic6KorTUHIvjmbg7ibHuv5E8RgfTY9zcIRbc4OibiaxSeqY5iaxUswU3GyKOEtibWQicy75GuWkERVLIWaVjoKnzBj9nTTzibLHSicx0%2F640%3Ffrom%3Dappmsg%26wxfrom%3D13%26tp%3Dwxpic%23imgIndex%3D2"/></p></div></div><div data-role="paragraph"><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;"><span leaf=""><span textstyle="" style="font-size: 16px;">想更全面的了解</span></span></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><strong><span style="color: #000000;font-size: 17px;"><span leaf=""><span textstyle="" style="font-size: 16px;">华东师范大学密码科学与技术专业</span></span></span></strong></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="font-size: 17px;letter-spacing: 2px;color: #c00000;"><strong style="-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;box-sizing: border-box !important;overflow-wrap: break-word !important;visibility: visible;"><span leaf=""><span textstyle="" style="font-size: 16px;">5月10日15:00</span></span></strong></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;letter-spacing: 2px;"><span leaf=""><span textstyle="" style="font-size: 16px;">学校推出本科招生新专业介绍直播</span></span></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;"><span leaf=""><span textstyle="" style="font-size: 16px;">直播将从</span></span></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;"><strong style="-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;box-sizing: border-box !important;overflow-wrap: break-word !important;visibility: visible;"><span leaf=""><span textstyle="" style="font-size: 16px;">学院特色、专业优势</span></span></strong></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;"><strong style="-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;box-sizing: border-box !important;overflow-wrap: break-word !important;visibility: visible;"><span leaf=""><span textstyle="" style="font-size: 16px;">培养模式、就业方向</span></span></strong></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><span style="color: #000000;font-size: 17px;letter-spacing: 2px;"><span leaf=""><span textstyle="" style="font-size: 16px;">等多个维度进行深入介绍</span></span></span></p><p style="text-align:center;-webkit-tap-highlight-color: rgba(0, 0, 0, 0);margin: 0px;padding: 0px;outline: 0px;max-width: 100%;clear: both;min-height: 1em;text-decoration-thickness: initial;color: #000000;font-size: 17px;letter-spacing: 2px;visibility: visible;line-height: 1.75;box-sizing: border-box !important;overflow-wrap: break-word !important;font-family:system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;PingFang SC&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;"><strong><span style="color: #000000;font-size: 17px;letter-spacing: 2px;"><span leaf=""><span textstyle="" style="font-size: 16px;">识别以下二维码，即刻关注！</span></span></span></strong></p><div><p style="text-align:center;padding: 6px;" nodeleaf=""><img data-aistatus="1" alt="图片" class="rich_pages wxw-img" data-ratio="1.0068027210884354" data-w="147" style="border: 1px solid rgb(151, 152, 153);border-radius: 0px;padding: 5px;box-shadow: rgb(151, 152, 153) 0px 0px 6px;width: 186px !important;vertical-align: baseline;box-sizing: border-box;height: auto !important;visibility: visible !important;" width="186" data-width="186px" src="https://wechat2rss.xlab.app/img-proxy/?k=cb969d81&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FxHPNVwoUX7j3kvqTqJib16u0OcMS1MImPEmlNrIPL9LRziaXDZ5vRXLwYZg2b0VdibuxucfzDKoyrCcH2mibrBGdKCND5H6w5CxuQRURXLduCG0%2F640%3Ffrom%3Dappmsg%26tp%3Dwxpic%26wxfrom%3D5%26wx_lazy%3D1%23imgIndex%3D3"/></p></div></div><p style="text-align: center;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100018004" data-ratio="1.4885496183206106" data-s="300,640" type="block" data-type="png" data-w="786" src="https://wechat2rss.xlab.app/img-proxy/?k=a3a1d090&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUyOyDibaRz6rSHR43S0B8rnV5cAbjic8WuJGtB3E1qZ9EqUp02qnqYAGSUHvicmE1cAJboDGqlUbOatE4ibq3ABZEmEVYOTSP79rk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p><span leaf=""><span textstyle="" style="font-weight: bold;">欢迎大家投身密码学行业，你也可能成为一名非常厉害的codebreaker哦！</span></span></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=b2db7fea&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501655%26idx%3D1%26sn%3Dba83ef32b38128eabf134dd5d3c8bc43">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Sat, 09 May 2026 20:27:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-05-06 DARPA 拖拉机简史</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501641&amp;idx=1&amp;sn=ab01d08bda02428410648a6e0db80346</link>
      <description>《DARPA拖拉机简史》==《DARPA try everything来解决内存漏洞简史》</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-05-06 20:45</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=fff7ba8a&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolXANLAgRcKsRocCfXhDOLnpfwW8Op8boicibwZ8AED1xshapHnDnyOhss66alEKLEss0icoUms8EeTaOG0oAyOMRkSTQrB3nO93Tw%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>《DARPA拖拉机简史》==《DARPA try everything来解决内存漏洞简史》</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: center;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="1.6826923076923077" data-type="png" data-w="208" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-imgfileid="100017980" src="https://wechat2rss.xlab.app/img-proxy/?k=34a5da42&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWmf43m5ibXiawMUdzQiaS1RjKBBic8Yjjc9rSTicLHLjlSRWIoJoJf3Ih41NapqBZnlRtewwbuLEn1dKyQoFeCbicpsQt1jUnDAT96A%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="7" data-endline="7" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">有一本叫做《乌克兰拖拉机简史》的书，在俄乌战争之前估计听说过的读者不多，而之后估计也都是一些喜欢政治军事的网友去“误读”然后弃坑，其实它是一部黑色幽默文学作品，喜欢文学的读者可以去自行搜索和阅读~</span></p><p data-startline="9" data-endline="9" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">今天我们介绍的内容其实和文学以及乌克兰没什么关联，纯属蹭一下这本书的</span><s style="box-sizing: border-box;"><span leaf="">热</span></s><span leaf="">冷度。那今天的推荐是来自NDSS 2026的keynote speak环节，由Dan Wallach（应该是之前在Rice University，现在去了DARPA？）给大家做的报告</span><em style="box-sizing: border-box;"><span leaf="">Solving the Memory Safety Problem, Once and for All</span></em></p><p data-startline="11" data-endline="11" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017981" data-ratio="0.5623242736644799" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" data-w="1067" src="https://wechat2rss.xlab.app/img-proxy/?k=cf0b30a9&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolX4JyQ9TlHGr2icP2qAnmibkNY1ib2CP08YmAjE7NClWTBv6tAACNktH3l0aCb9hm5tRxtjRr8BxQOOBtYYjuWTiaLNC3BNY67HoIU%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="13" data-endline="13" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这个报告之所以和《乌克兰拖拉机简史》有那么亿分之一的关联，是因为DARPA在2024年启动了一个“拖拉机”项目——即“TRanslating All C TO Rust”（缩写为TRACTOR）的项目。不知道还有没有读者记得公众号的一篇很古老的推荐（额，其实也就是5年前，不过那时候还属于前AI时代，一转眼恍如隔世，）《<a class="normal_text_link" target="_blank" style="" href="https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247488177&amp;idx=1&amp;sn=96e907bee360b7bf00806a40a384fc02&amp;scene=21#wechat_redirect" textvalue="G.O.S.S.I.P 学术论文推荐 2021-12-13 Translating C to safer Rust" data-itemshowtype="0" linktype="text" data-linktype="2">G.O.S.S.I.P 学术论文推荐 2021-12-13 Translating C to safer Rust</a>》，在那一期的推荐中，我们介绍了一个叫做</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">c2rust</span></code><span leaf="">的工具。</span></p><p data-startline="15" data-endline="15" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017982" data-ratio="0.5972222222222222" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" data-w="1080" src="https://wechat2rss.xlab.app/img-proxy/?k=518bf4d8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWfUA4EVWBnRraEdiaiacwRLiaL3PP9eP4ZuyribiaWBXrzUXCslYcibibuy5xztrn18Q5du4m1TaQX4dk1uS7LUub64pGTOhuYkXPvb4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="17" data-endline="17" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">而DARPA和Dan Wallach教授肯定是看了我们的公众号（</span><s style="box-sizing: border-box;"><span leaf="">很有可能，Dan Wallach教授此前的研究论文也cite了我们的工作</span></s><span leaf=""> 不要脸），于是在2025年6月启动了TRACTOR项目，意在推动研究人员去开发把现有的C代码翻译成Rust代码的自动化工具。</span></p><p data-startline="19" data-endline="19" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017984" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=62eca278&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXPdBNJCGgBBGIbxGEMWP1HJhsNuqL0UftDInu52FmgghWdjb1rmlzNnf62lSzxntzM6oLyCnnCKicMwRqZ3tG566OUGQpktS0c%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="21" data-endline="21" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">可能你要问，为什么是Rust？因为DARPA此前进行了各种尝试，下面这一张幻灯片（响起了夏奇羊的try everything）里面列出来了之前的各种安全加固技术路线，当然每个路线估计DARPA也投入了不少钱，那也不差再拿出来一笔钱资助下一个新idea（嗯，Rust）：</span></p><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017987" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ac3c18e9&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVdd8QjCguGXLxyWNxoZS44pZm8AoYuCVaGy4J35M1CYeyUcBnoGiapt23mlGnqGX2Vm4GDVMuMRQ0KaZILKQWMicNQHxkeZvlh4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="26" data-endline="26" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">和之前DARPA的项目类似，TRACTOR也是让不同的team来互相竞争（嗯，我们在国内管这个叫做“</span><s style="box-sizing: border-box;"><span leaf="">养蛊</span></s><span leaf="">赛马”），而不同的队伍可以使用不同的技术路线，有的用机器学习主导，有的队伍则是走传统的程序分析路线。参赛的六支队伍有的来自大学（华盛顿大学、耶鲁大学、威斯康星大学），有的来自企业（Intel、Galois、Aarno Labs）：</span></p><p data-startline="28" data-endline="28" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017986" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ce48e67b&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXzgbcaARICriaNIzdRSJ56T0eeFqGriaQwqGQrZHiakuHVAK3ibFwobwdaNEEhiaZeE86WiavDLUCsHRN9HEiasj1J0K9Tqm7oOa3fgs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="30" data-endline="30" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这个项目进展到现在，可能大家最关心的问题（也是现在网络上论战最多的点，大家对AI的态度也可以分为“降临派”、“拯救派”和“幸存派”）就是</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">到底人类还有没有必要去研究代码翻译这个事情</span></strong><span leaf="">。很多人都觉得，现在反正把代码直接扔给AI让它改就完了，Anthropic都已经开始营销大模型直接写编译器、写浏览器和写操作系统了，区区一个C翻译成Rust代码的任务有什么值得研究的？</span></p><p data-startline="32" data-endline="32" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017988" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=5e8a87ff&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUv284icr44ytaaFtEKCo6UxxVVjLic0yJoBNN2eNb9AlNzumtZe7kUFIpLiaPjOnzfC3wH4h0HOqPr1QFn1iaFYia2h9iaYTryYA2Mk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="34" data-endline="34" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上今年2月，TRACTOR项目出了个中期报告，大家可以去GitHub上看看这个报告的PDF，里面关于各家队伍的技术细节和实际的测试（测试是请了MIT Lincoln Lab作为第三方测试机构，<a href="https://www.ll.mit.edu/r-d/projects/translating-all-c-rust-tractor-benchmarks" target="_blank">https://www.ll.mit.edu/r-d/projects/translating-all-c-rust-tractor-benchmarks</a> 还准备了专门的benchmark）</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://github.com/DARPA-TRACTOR-Program/Reports/blob/main/First_TRACTOR_Evaluation_Report.pdf" target="_blank">https://github.com/DARPA-TRACTOR-Program/Reports/blob/main/First_TRACTOR_Evaluation_Report.pdf</a></span></p></blockquote><p data-startline="38" data-endline="38" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">从下面这个正确性评估来看（注意这里评估用的是GPT 5.0，而且没有什么特别的环境，就是给两次prompt机会，第一次是要求它翻译，第二次是把报错信息反馈给它让它改），其实那个最naive的C2Rust的效果反而很有竞争力，这就有点尴尬了。。。</span></p><p data-startline="40" data-endline="40" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017985" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=cd0134e5&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWDdLDNSlMULlId0j5UFNE2Q7eUhkUSWmP6zHNTlibpXKbKCGKphMu5j5v1bvCFubBRlF7ehFKqSsB32UPc9YwtBichRSicoojZ5o%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="42" data-endline="42" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">评估报告里面有很多关于各家技术出错的细节（比如谁容易在翻译阶段出错，谁在运行阶段出错更多），感兴趣的读者可以去看看。我们只简单介绍下翻译后的Rust代码和原始C代码的性能对比，从下面的表格可以看出，基本上翻译后的这个性能开销都在可接受的范围（最多也就不到30%）。</span></p><p data-startline="44" data-endline="44" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017989" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=1890f7cb&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXu6r2b6lGticDfN9ONxkEG4U1DHCELjBRYyiaueN5ylwibca7AnQDckhY5wr7fXUTZMar5gxsm7DJfgKoRIPn91ucLOhqpIxqsdg%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="46" data-endline="46" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过（某些技术路线）翻译后的Rust代码有一个问题：内存占用开销会大大增加，例如LLM翻译的代码，最极端的情况下会比原C代码使用的内存增加137.64倍……</span></p><p data-startline="48" data-endline="48" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017990" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8adac297&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXIPBCCNsiaTUIcd2amXpYqhPibqJDLBuOhsY19YoAe1notnsSmZQhib4uicRYSj41KXYAtX7DPMAg8hJ6LWX7HwlHJL3B9tTR2nV4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="50" data-endline="50" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">那么，究竟C代码翻译成Rust代码更好，还是说在LLM时代，人们又一次找到了银弹——直接用AI去检测代码漏洞（嗯，不需要夏奇羊来唱try everything了）~~~</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">Slides：<a href="https://www.ndss-symposium.org/wp-content/uploads/NDSS-2026-Keynote-DWallach.pdf" target="_blank">https://www.ndss-symposium.org/wp-content/uploads/NDSS-2026-Keynote-DWallach.pdf</a></span><br style="box-sizing: border-box;"/><span leaf="">TRACTOR项目主页：<a href="https://www.darpa.mil/research/programs/translating-all-c-to-rust" target="_blank">https://www.darpa.mil/research/programs/translating-all-c-to-rust</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=2a900dfa&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501641%26idx%3D1%26sn%3Dab01d08bda02428410648a6e0db80346">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Wed, 06 May 2026 20:45:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-28 Wsl9x!</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501627&amp;idx=1&amp;sn=bded34c2db87960a5f5a7e462470192e</link>
      <description>80后只是老了，不是亖了</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-04-28 20:59</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=460de9ab&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolXicibibJlUMT9ZzUvSKf5jGdgNqjBIkICKE4f4yRAIu8UhkvGLZAckHkxia3jtYT9g180tPhZGZT8xRbhp4dYXYonMZ1U2rbSPFYw%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>80后只是老了，不是亖了</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">几天前，在HackerNews上出现了一个热帖，大家讨论的是一个叫做 Windows 9x Subsystem for Linux（wsl9x）的项目，这是一个什么样的项目呢？请看下图：</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017970" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ff0d2b36&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUhYWyYSHnibyXz0Tg3lYl36ISxQ4TmA9klKunyrY6lUnqyZNovD8ibN9YwTjVRo34JgDiaibwYyADHHgwiaxZRHwhic2cib8ib55KYO7c%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="9" data-endline="9" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">乍一看，平平无奇，但是就像字画鉴赏一样，只有行家才能一眼看到细微的妙处。仔细看，发现可不简单：在老玩家们熟悉得不能再熟悉的Windows 95系统里面，突然出现了Linux console，而且还是6.19版本的内核？？？这是怎么做到的？？？</span></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017971" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=1721ebf3&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXoibTUD5CfoI0l5QibPWzC8EvmeoGaJicuqrJYESlXiaPqOpjxBGkicpc7OUxQiaofE0bMEOJyiclP1D0TBxJmKnPwxttV13V2sRG3bU%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="15" data-endline="15" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">年轻的读者可能嘴一撇，会说“这不就是WSL吗，我们又不是没用过”，嗯，4月26日刚刚过去，CIH病毒运行的那个动不动就蓝屏的环境，微软自己的NT内核都没有弄好，还给你搞一个子系统么~</span></p><p data-startline="17" data-endline="17" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而如作者（Hailey）所说，这个看起来很像WSL的wsl9x，它是可以货真价实的运行在古老的486电脑上，无需什么硬件虚拟化支持（1994年有什么硬件虚拟化？只有《肖申克的救赎》），这个工作完全是计算机编程的佳作：首先，作者fork了一个Linux内核（<a href="https://github.com/haileys/linux/tree/win9x-um-6.19" target="_blank">https://github.com/haileys/linux/tree/win9x-um-6.19</a> 也就是一个叫做</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf=""> win9x-um-6.19</span></code><span leaf="">的分支），这个内核里面对posix API的调用都被改写成了对Windows 9x kernel API的调用，而且直接运行在了ring 0权限级别（Win9x那个年代真的是好宽松啊，难怪CIH可以瞎搞），当然，作者还做了很多的改动，在 <a href="https://github.com/haileys/linux/tree/win9x-um-6.19/arch/um/os-Win95" target="_blank">https://github.com/haileys/linux/tree/win9x-um-6.19/arch/um/os-Win95</a> 这边有一些和OS实现相关的具体改动的代码。</span></p><p data-startline="19" data-endline="19" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">有了一个能运行在Win9x上的Linux内核，接下来需要的是什么呢？一个</span><s style="box-sizing: border-box;"><span leaf="">病毒</span></s><span leaf="">VxD驱动！这个技术在早年的病毒和反病毒大乱斗时代可是非常流行的，而这个看起来已经退出历史舞台的技术，在今天这个wsl9x项目中焕发了新生：正是通过自己开发的一个VxD驱动，可以加载前面魔改的Linux内核（</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">vmlinux.elf</span></code><span leaf="">，需要用到 <a href="https://github.com/richfelker/musl-cross-make" target="_blank">https://github.com/richfelker/musl-cross-make</a> 来交叉编译），而编译Windows这边的代码呢？你还在用VC 6.0吗？作者又展示了一个上古神器——Watcom C/C++编译器（当然，这里用的是它后来开源的版本Open Watcom V2）</span></p><p data-startline="21" data-endline="21" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017967" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=b29fc3fd&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWPaF4ibqH2Cd86zSJZVm7yxD2BcHcNiakZQrRqZoPXmYQsqzxXWSpsNOmuiaEZWibKtrAImQffy7JaDO44K6bOjwiaVRn8C1Jr6ImE%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后，整个wsl9x的最后一块拼图是一个叫做 wsl.com 的16位DOS应用，恐怕今天对这个扩展名还有所了解的都是老登了，这个程序用ASM汇编代码开发，可以让运行的魔改Linux内核的TTY子系统以MS-DOS窗口的形式展示出来，酷！注意哦，这个TTY并不是去用Windows 9x提供的键盘输入，作为运行在ring 0的代码，它可以直接去监听IRQ（中断请求）然后获取硬件的键盘输入，是不是一个很好的防止恶意软件攻击的方法？你甚至可以认为这就是一个Win9x时代的TEE嘛！</span></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者还非常骄傲的在项目描述里面留了一句话：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">Proudly written without AI.</span></p></blockquote><p data-startline="30" data-endline="30" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而作为知识无敌的AI一代，评论看起来就很滑稽：</span></p><p data-startline="32" data-endline="32" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017968" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=97d5fdcd&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXKeXvVLX1erdsScLRCibOU7acu2N8RwXBr8yickd5KrOJohDKRaUPnd9hMDqZztpDcaUqBUs1GiaCc1LicQQ8zS7Wqy961q5CDQTs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="34" data-endline="34" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017969" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=e9ad6e67&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWc2IXnvhBmOzKu8Wr733a0wAkfOChNMuBGTZ3qDbSVDUbgO14J2Q7Su3OSN1Xxe7e3aKMnuXuvnFibKkibQ2fPeRluuiaWeib7d8I%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="36" data-endline="36" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">我们80后只是老了，不是亖了，还轮不到 “<a href="http://wsl.com”" target="_blank">http://wsl.com”</a> 这种言论来指指点点</span></strong><span leaf="">~</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="40" data-endline="40" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">另外，很多人都提到了当年很有极客精神的另一个项目——coLinux，虽然今天已经停止开发了，第一次接触到这个项目的时候那种震撼还是记忆犹新的。</span></p><p data-startline="42" data-endline="42" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017974" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=7defaa1f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUh6lNloD3TDbNv6RJH5OTLl3rZUraNyEWjgeZF0u1GqjOWiamtYjp7ibREVOHDibWyKQPfRCd0ibibz7Fibl8ZiblxwxhaKybwYPvW1g%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="44" data-endline="44" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">顺便也安利其他的一些</span><s style="box-sizing: border-box;"><span leaf="">京口北固亭</span></s><span leaf="">怀古项目：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://netpcforum.org/t/2025年了-我开发了一套-rpl-win98-无盘-为了年少时的无盘梦想/119154" target="_blank">https://netpcforum.org/t/2025年了-我开发了一套-rpl-win98-无盘-为了年少时的无盘梦想/119154</a></span></p></blockquote><p data-startline="48" data-endline="48" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017973" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=42db27cb&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXNT5Mv6zEcicolibgKj4svh7Ro221YU1TAkOwsBSFtuPhKQMJkRNJDYZsZfFmq6nt9KK4gnXSSuUUVUKQj7hfJvuQUsvNswPO6g%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="50" data-endline="50" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017972" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=76653156&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUjZ8G7RL9ib2VKUzMVDjcbauEGzcwh00pMTu8nBNE7SI2hBZMInzzDqyS1B9XDdvPpXQLX56iaS18aN0DUDk2JBWHmrp7VALPL8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="52" data-endline="52" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017975" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=6fb356c9&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUggJeGKP1hibZldaoW7PvRJB7sMSuUn5DTh3cpP0muyHtlSSFxUFqTxITkibQNzgGkpib3VTuKIg0OSIHLcduIdDxgEHDNmomWSA%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">项目：<a href="https://codeberg.org/hails/wsl9x" target="_blank">https://codeberg.org/hails/wsl9x</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="https://codeberg.org/hails/wsl9x">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=b2648fd1&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501627%26idx%3D1%26sn%3Dbded34c2db87960a5f5a7e462470192e">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Tue, 28 Apr 2026 20:59:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-24 这不是一颗真星</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501614&amp;idx=1&amp;sn=6d98313ab8a104cf4b03d2e4bcf1e645</link>
      <description>买卖star，AI有责！</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-04-24 21:25</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=4cc8350b&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolW5iaFfyjaxuGfkQNMJalJttmQY3eMQsm44mhSUEZgbYbG6DMqJZj0E2qpJQrv3Na0QScoyz2wdxzmQqbTAdXziabLP72z4zE6CE%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>买卖star，AI有责！</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">那些年我们学过的语文课文中，有很多在记忆中闪闪发光的文字，比如曾经在初中课本中出现的《这不是一颗流星》，今天读起来依然比许多文字更有温情和力量：</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017956" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=6b63659f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWS9eERia9iadCkEVPT9Sw7G54p8MZ4nOODvgpEyOG1hdN7cjRLV0A8eCDSekTHJvnsiaLpicj27Et143RBxff7Hp4VXtnsibk4Cub0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">有时候一颗真星（心）胜过几百万颗star，我们今天介绍的这篇ICSE 2026论文 </span><em style="box-sizing: border-box;"><span leaf="">Six Million (Suspected) Fake Stars on GitHub: AGrowing Spiral of Popularity Contests, Spam, and Malware</span></em><span leaf=""> 应该推荐到315晚会上，给大家曝光一下GitHub上那些花钱买star的乱象：</span></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017954" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ef643e16&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolU7G6icadTiak99OAVib0UqKCibu1nfic62MibOnVR5DhGGp3dnN1rwjRBLynoncTAlOG17edE43aCgibTetPbRBp0eAJIAdkibBv6D0bQ%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">论文上来就放出了一张触目惊心的图片：</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017955" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ad1217ec&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXualcz7VD6MdpKWAkiafFoibtPibl2vt0t49ncoXl7ED16NlLiclA79VibJ5iarNxz33vT2JzNdgRzRN0icHh5icEe0mDtII4iboelPgXM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这是一个看起来关于“以太坊杀手”——Solan区块链的相关repo，你以为它是一个好项目——因为它有111个star？实际上，本文的作者通过他们开发的一套叫做 StarScout 的工具分析发现，这其中至少有109个star是来自非真实用户的！而这个repo其实是一个恶意的repo，一旦使用了就会被盗走资产……</span></p><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">从这个例子出发，我们今天介绍的论文揭开了GitHub上和star相关的乱象：作者分析了20TB的GitHub元数据，涵盖了从2019年到2024年67亿个事件和3.26亿星数，并识别出了600万被怀疑刷的虚假星数，涉及了超过30万个账户。听上去是不是很吓人？更加令人瘆得慌是下面这个趋势：</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">从2024年开始，“付费刷星”这种情况开始疯涨，2024年7月的时候，GitHub上16.66%的项目（50及以上星数）都涉嫌在刷数据</span></strong><span leaf="">！</span></p><p data-startline="22" data-endline="22" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017952" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ae53c513&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUu7WKp7EP2zqYWp3j42xDOPIzicibYPTuMNlsWRibicicEKdmrTnSRUTia7UBfWh8zkPZMA7DM8ib48pq5ZUWtYLGjlsSgZicshgmFuw8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">简单说一下本文作者开发的 StarScout 工具，它主要是分析了那些去标记star的GitHub账号的特征：首先观察这些账号是不是只点了star然后就没干别的事情了，其次是分析是不是有一批账号经常一起给某个项目点star，通过这两个基本的原则，再加上一些数据分析的技巧（这里就略过不表了），就能识别出来所谓的“fake stars”了。</span></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017953" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=32545e7d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWSAgrX5mzUDG1FhJQ8k7ueibPa2TnibUbz72A6hvD9oQe3yK0HOpQoztWibTkGgZckJ1R0vcILrP02zq4sTuAxv4icibEuTxsnQGoU%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">借助 StarScout 工具的分析能力，作者深入调研了fake star这个生态，其中很有意思的一个发现是这样的：</span></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017959" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=da6a5eff&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXSfsJeUoEdRx7tryyjalvicqsMDTILn6XKm8ygqv2eRm4MrKplh66wqJJ30WU7HVjiaCI7pic4VJaqCufSHKFlpLB4LY6wtCibK7U%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">嗯，历史经验告诉我们，大热的研究方向都是充斥着泥沙的~ 另外，本文还关注了GitHub官方的态度，作者也表扬了官方：他们发现到2025年1月，有90.42%的涉嫌刷星数的项目已经被官方移除，这是因为这些项目大部分涉及到了malware、钓鱼等安全问题，当然作者的这个工具也许只能发现部分有问题的项目，官方可能还有更多的一些背景数据能够帮助发现这种的刷数据的行为？总之这个产业链看起来一时半会是不会消亡的，因为现在这个行业还挺兴旺的，在另一篇报道（<a href="https://awesomeagents.ai/news/github-fake-stars-investigation/" target="_blank">https://awesomeagents.ai/news/github-fake-stars-investigation/</a> 不是学术论文），记者调查了这个“造星”市场，发现服务不同，当然也对应了不同的价位：</span></p><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017958" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2ac7083c&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWSicCKhDQLu6T0BVKEY4IWbIbsIg0yZTEt2z2icKA64cYxUEsnkjm6icrvJGyTQicbNYL7a8icJXaic70IMiaibaxIrZVrHHqB7gDHZec%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="37" data-endline="37" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">更为有意思的是，记者调查了一些流行的AI项目，发现这里面的openai-fm居然有66%的star是刷出来的，不过这个调查并没有说是哪个openai-fm，而我们在GitHub上去查了下，官方的openai-fm（<a href="https://github.com/openai/openai-fm" target="_blank">https://github.com/openai/openai-fm</a> 只有2.8K star）好像是唯一符合的，所以到底是之前有一个李鬼项目，还是openai-fm本身的有水分的star被删除了，不得而知~</span></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017961" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=93767200&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolV3P1Qv8nO0XPsMCxxVaK3kJmju0Z0jicGo9WzMBibRsAf8rGcQCC53IlLyeLoCjzva8oZNhg4aASPCzef2ZJziaC3E0bYiamjyicUc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="41" data-endline="41" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上，刷排名这种人类最喜欢的行为并不是第一次被研究论文分析了，清华大学段海新老师研究团队在ACSAC 2020年的论文</span><em style="box-sizing: border-box;"><span leaf="">Understanding Promotion-as-a-Service on GitHub</span></em><span leaf="">对国内的一些这种“服务群”进行了调研，而2014年的IMC 论文</span><em style="box-sizing: border-box;"><span leaf="">Paying for Likes?: Understanding Facebook Like Fraud Using Honeypots</span></em><span leaf="">更早就对脸书上的所谓“like fraud”进行了分析。</span></p><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">写到这里，编辑部突然想起以前听说过的一件事情：据说现在很多中小学里面有一些学生很social，同学们都有ta的微信，然后ta就会</span><s style="box-sizing: border-box;"><span leaf="">像李彦宏一样搞竞价排名</span></s><span leaf="">让那些需要得到关注的同学付点钱，ta就发个朋友圈去at一下这些付钱的同学，让所有人都关注到这些“小金主”们。当时那篇文章还说到“注意力经济已经渗透到了少年中”，于是我们注意到这篇论文的开头引用了这么一段话，引人深思：</span></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017957" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=bca8ec88&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWFL2jfbum2HS0eJzXv18PeLZop8d5ko2lzauSaKwgicVg6lk6F6SwagicShY5BJDmlzedhicLZID9oyFUEniaOKaKkdjomp4alxp0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="47" data-endline="47" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">联想到科研里面的各种乱象（比如什么动不动就数论文篇数，</span><s style="box-sizing: border-box;"><span leaf="">呃注意我们并不是说CSRanking</span></s><span leaf="">），还有之前我们介绍过的关于刷CVE的研究【G.O.S.S.I.P 阅读推荐 2025-09-15 CVE：学术界的&#34;水论文神器&#34;还是真正的安全指标？】，再看看今天的这个研究工作，大家有没有思考过，这种以定量排名来评估的方式，何尝不是一种</span><s style="box-sizing: border-box;"><span leaf="">劣质的</span></s><span leaf="">优绩主义思想？<span textstyle="" style="font-weight: bold;">你看看人家Fabrice Bellard在他的主页 </span><span textstyle="" style="font-weight: bold;"><a href="https://www.bellard.org/" target="_blank">https://www.bellard.org/</a></span><span textstyle="" style="font-weight: bold;"> （破旧的页面，没有任何前端水平）上有说过他拿了多少star吗？</span></span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="51" data-endline="51" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后，还记得前段时间“小龙虾热”的时候，有这么一个新闻：</span></p><p data-startline="53" data-endline="53" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017960" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=c2b49a98&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolU91SxRMlE3noEblEhQhPaCFW4PDBDWlkYL9ubJibZlGrwrxeJiaYz4vleviaOyeSwRce4ic1baROpMYfyuVxMc4T7Ql3dtiax3Csiao%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="55" data-endline="55" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而关于fake star的新闻报道里面有这么一句话：</span></p><p data-startline="57" data-endline="57" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><em style="box-sizing: border-box;"><span leaf="">A GitHub star costs $0.06 at the low end. A seed round unlocks $1 million to $10 million. The math is obvious, and thousands of repositories are exploiting it.</span></em></p><p data-startline="59" data-endline="59" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">现在想想，你还在为AI降临欢呼吗？</span></p><p data-startline="61" data-endline="61" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017962" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=cd504cea&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolW3rnSdxdYT0depjwJibGrYqibWyVMZiaLr200Apz3BOB3BDd90ouSRcUAEOJyzK34LgB57yG1J3ZDOrWlERF8gYGdXmQ1leLQEFE%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://arxiv.org/pdf/2412.13459" target="_blank">https://arxiv.org/pdf/2412.13459</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=185d85de&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501614%26idx%3D1%26sn%3D6d98313ab8a104cf4b03d2e4bcf1e645">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Fri, 24 Apr 2026 21:25:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-22 守株待兔</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501599&amp;idx=1&amp;sn=de6e98d6de05e3eabf0bdc3080bc638c</link>
      <description>SSH 守株待兔~</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-04-22 20:18</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=178fab5d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolUgLwYy6Tia6LOuzF9n47Df9bwSvdcxt3lT2aZHPcmX2sicdLT5Kk9pzlh93GbRriagr1YIibek9SuWibYRk7Bph0x2Q13yRMd8QRLU%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>SSH 守株待兔~</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">小学语文老师教过我们一个成语——守株待兔，小时候可能觉得这个成语的主人公太傻了，怎么可以就在那里等下一只兔子呢？到了互联网时代，这个行为可能不但不愚蠢，反而还有些价值：比如今天我们要介绍的这项研究工作以及对应的IMC 2025研究论文 </span><em style="box-sizing: border-box;"><span leaf="">Attacks Come to Those Who Wait: Long-Term Observations in an SSH Honeynet</span></em><span leaf=""> 就用了三年多的时间“守株待兔”，深入分析了SSH网络攻击在最近几年的演化趋势。</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017946" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=05b7f603&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolV6Ddt4hM7UlsPrHtvsrpKicWEsvKead9iamkS5r2I9MC7o70XI7x80H4tWDdFek9vPkMbpRmxMuDqxM27yic6mlpFQibk76tDo0bg%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">SSH蜜罐并不是什么新的技术，已经发展了几十年了，对于攻击行为的分析，更像是一种新闻报道：要么有深度有么有广度。本文正是这么一项有耐心的研究：作者从2021年12月开始部署蜜罐，然后持续观察了差不多3年，直到2024年8月才结束实验，这其中总共只关机了48小时，其余的时间一直保持着蜜罐的可用性。经过这么长的时间，他们总共收集到了超过6亿个session，其中</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">和安全攻击相关的session有5.46亿，涉及到85万个不同的IP</span></strong><span leaf="">，这样看起来确实是非常有深度和广度。</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">大家可能会好奇，作者是怎么部署蜜罐的呢？这里他们是和 Global Cyber Alliance (GCA) 组织合作，用了开源的Cowrie Honeypot suite并进行了自定义，感兴趣的读者也可以去试用一下这个套件。</span></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017945" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=aeb98a24&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWYZqfkYZE3tQGiceKqAMZoK8MRJKaUyjic88ib6KfGq3la8GsM0JWUmnOzKGbA8xZkfaWGVyd3jbiceicDeAKatDgO6WpLoWgS8h78%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者观察了攻击者的行为，发现攻击行为也不全是一致的，有一些攻击只会扫描端口和服务，有些攻击则是尝试爆破然后登录，但是什么也不做，还有一些攻击在登录了之后就开始执行特定的命令。作者统计了所有执行命令的攻击，看哪些对蜜罐系统的状态产生了影响，下图是整个实验期间的统计：</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017944" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=4a176799&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUFhEz3BqIma1JYUdEwv9gxY24olN56S4hpFhgRqqsRqXHt5IYODgH4MY7uBjXynOMiad3tyUW1lcMqfmiafwRtcVNp6ibiallsQd4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者还从2025年IEEE S&amp;P论文</span><em style="box-sizing: border-box;"><span leaf="">Hey, Your Secrets Leaked! Detecting and Characterizing Secret Leakage in the Wild</span></em><span leaf="">（是东南大学、奇安信技术研究院星图实验室与清华大学联合完成的哦）中学到了一个基于regex匹配的技术，用来对攻击中执行的脚本命令进行了分类，在论文的附录里面有一个很大的表，大家可以去看看。</span></p><p data-startline="21" data-endline="21" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">论文还把攻击中涉及到的文件（攻击者上传到蜜罐并使用的文件）进行了归类（下图），作者根据文件的hash去查VirusTotal这种数据库，但是能识别出来具体身份的bot不多，所以继而又进行了行为分析，把这些文件和botnet、挖矿、DDoS攻击关联起来：</span></p><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017947" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=575aa9db&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXHc48LoxWJIOo8eqLAoPcr6CfBhzyMmrnpKjydZzoWAeca58ZlfiaDA7eNQbphdDhwEUuUsPfyvkkfatlU2Y0tQ9a9gtpkLLRo%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="26" data-endline="26" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在这篇论文中，作者重点讨论的是一个叫做</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">的bot（据说和一个叫做Outlaw Hacking Group的组织相关），因为它是本文调查过程中观测到的最大规模的攻击相关的bot，而且它的行为非常有意思，论文的第9章详细介绍了</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">的攻击行为。</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">在攻击实施后就开始植入自己的公钥，然后用rsync去下载恶意文件。这些看起来都很常规，但是</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">存在很有意思的“黑吃黑”行为：它会去检测机器上是否有另一些恶意软件，比如有一个叫WorkMiner的挖矿木马，如果存在就会移除这个挖矿木马设置的</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">/tmp/auth.sh</span></code><span leaf="">和</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">/tmp/secure.sh</span></code><span leaf="">（但是并不阻止挖矿行为），使得攻击者能够解除限制去远程控制这台SSH主机。作者对</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">背后的IP进行了交叉分析，发现和其他一些挖矿、DDoS团伙使用的IP有交集，这说明这背后很可能是同一伙人。而且很有意思的是，作者还发现尽管</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">每天都产生了超过10万的攻击会话（背后是6千个不同的IP），但是有一些阶段它会突然降低攻击流量，不知道是为了减少关注还是把攻击的机器拿去做其他事情了？</span></p><p data-startline="28" data-endline="28" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">本文的研究发现了一个很有意思的现象：灰黑产组织真的是在与时俱进的，就拿SSH口令爆破这种1988年Morris Worm就干过的事情来说，攻击者会根据最近的一些安全事件不断调整尝试策略。比如在整个观察中，作者发现了一个很神奇的口令——“3245gs5662d34”，正常人谁会用这个口令？而且作者还发现，在使用这个口令尝试登录后（当然是被骗登录），攻击行为似乎并没有什么后续了，实际上这个攻击开始于2022年的12月8日UTC时间18:00，后续一共有2400万个session尝试使用这个口令，而且关联到了12.5万个IP地址，这也是在整个观察过程中仅次于</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">的第二大攻击行为。经过一番调查，作者发现这个口令似乎和 Polycom CX600 IP telephone 这个产品有关，而且特别有意思的是，作者还发现，这个攻击和一起商业行为紧密联结：2022年惠普（Hewlett Packard）对 Polycom CX600 IP telephone 的生产商完成了收购，而就在收购之后这个攻击就出现了，这不禁让人浮想联翩啊，可惜这背后的故事没有再往下深挖了（期待有后续）。另外要说的是，这个口令似乎是被人挖出来然后卖给了很多不同的黑产集团？因为</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">mdrfckr</span></code><span leaf="">也在同一时期使用了这个口令！</span></p><p data-startline="30" data-endline="30" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在整个观察过程中，恰好遇上了俄乌战争的爆发，作者也发现在网络空间中，安全战场的硝烟味一样浓厚：在2024年初，作者观察到一个很奇怪的攻击模式——攻击者从4个IP连接到了作者部署的180多个蜜罐系统，然后用这些蜜罐去启动了差不多20万个curl请求会话，访问俄乌两国的电商、贸易、数字货币和游戏网站，企图实施攻击，这种攻击模式把蜜罐当成了proxy，这也让作者惊出了一身冷汗：本来以为做了无害化处理，没想到蜜罐依然被攻击者利用了。。。</span></p><p data-startline="32" data-endline="32" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">总之，不管AI在安全研究工作取得了多大的成就，许多深入的分析依旧需要时间去检验，不过说不定在老老实实搞科研这个维度上，AI才是真正吊打人类的？我们期待未来有更多AI辅助的“长期主义”安全研究工作出现。</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://dl.acm.org/doi/10.1145/3730567.3764475" target="_blank">https://dl.acm.org/doi/10.1145/3730567.3764475</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=2611f489&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501599%26idx%3D1%26sn%3Dde6e98d6de05e3eabf0bdc3080bc638c">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Wed, 22 Apr 2026 20:18:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-17 英伟达之惊叹</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501591&amp;idx=1&amp;sn=4b5381d670968cda48620eaa0bf323e2</link>
      <description>三篇论文，打崩英伟达！</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-04-17 20:26</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=ebf6a0f2&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolWvDrsOrb8fic19LfOdhHDTQFX8ImJgErQqUnZwNiaGLiaGHuTu8EWCZ8JS2A2vAGe3Hu8KLSra0aHibiax3vDdEic2TPZ8WLQhyia3uc%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>三篇论文，打崩英伟达！</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">在古早的动画片《圣斗士星矢》中，有一个非常非常厉害的招式“雅典娜之惊叹（Athena Exclamation）”，看过动画片的老同学们应该都知道这个招式的威力。今年的IEEE S&amp;P上，安全研究人员在面对AI的威胁时，总算想到了还手：来自多伦多大学、北卡教堂山分校、普渡大学、佐治亚理工、Clemson大学、Rochester大学等机构的研究人员贡献的三篇论文形成三位一体之势，爆出了针对英伟达GPU（或者把锅甩给三星？）的Athena Exclamation，誓要将老黄的战争武器撕成碎片！</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017937" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=7fbbb83f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWlRbRrUKncicDgiaA0HTD0Ddy2uUfmx7CgPkLb8GUgDEZU0hlH8zq7BqAJQf38gKLmlaicEpeSbdAPe0CUBjAOuAm6AyjP6pPZkk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017936" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=d5ce0851&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVt2v6st4u8nRbF2Wbra2Bhe7MwwSia3Qw1xichQPAbUVsuz2GXMswsMf7JYjNRtrtSJw1aHicRiax5hZiclOCRYmA3Xhxcib0XQffO0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="11" data-endline="11" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于这三篇论文的背景，看题目就可以追溯到两条主线：一条是经典的内存破坏漏洞及利用，另一条则是最近几年非常火热的Rowhammer攻击。关于这些背景知识，大家可以去看看我们的历史推送。反正你只需要知道基本的策略：利用Rowhammer让GPU上的显存产生错误，然后一步一步 </span><s style="box-sizing: border-box;"><span leaf="">把大象塞进冰箱</span></s><span leaf=""> 完成复杂的内存攻击和提权攻击即可。我们不妨先从</span><em style="box-sizing: border-box;"><span leaf="">GPUBreach: Privilege Escalation Attacks on GPUs using Rowhammer</span></em><span leaf="">这篇论文讲起，因为它号称在三篇论文中能够实现最宽泛的攻击（见下表，能在IOMMU开启的情况下完成从GPU到CPU的攻击链并实现提权）：</span></p><p data-startline="13" data-endline="13" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017935" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=e9aa614c&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUNWRZPss5OPoJ8cLVzic0eM1zOEyMjLicuVBC5O1h5KF6GgHBZjQoFPO1pJgaGmpzY4GzCR08b5L4F2iaQnqJS53FEVRel6XYRjI%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="15" data-endline="15" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于这个攻击，首先可以参考GPUBreach这篇论文的研究组在USENIX Security 2025上的前序论文GPUHammer（也被认为是第一篇系统性研究GPU显存的Rowhammer问题的论文），因为所有的Rowhammer攻击都需要去想办法精确控制内存翻转的位置（否则没有什么攻击的意义了）。这里面通常用到的技巧包括对内存布局的研究（比如通过分析驱动程序来理解物理内存的使用）、耗尽（其他）物理内存以缩小攻击范围等等。</span></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">当然，我们之所以在今天推荐这几篇文章，其中一个原因是GPUBreach这个研究承诺在4月17日（也就是今天）公开论文和代码（在GPUBreach网站上说“The reproduction package and scripts will be available soon on GitHub: <a href="https://github.com/sith-lab/gpubreach" target="_blank">https://github.com/sith-lab/gpubreach</a> after April 17”），不过截止到我们发稿的时候，还没有看到内容，请大家以朝阳区群众雪亮的眼睛监督作者及时公开材料！！！目前在GPUBreach网站上只有一个视频，大家可以先观看一下：</span></p><p nodeleaf=""></p><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">GPUBreach研究中包含了两个方面的亮点：第一个是他们针对页表项（Page Table Entry，PTE）进行Rowhammer攻击的精确控制，虽然论文没放出来，但是网站上有一些基本的介绍：</span></p><p data-startline="24" data-endline="24" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017934" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=faca665d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUg6lDyfu6Y2VEvwjdb9wsQtRULHb4NlfXQAK7iaULQyvrbY9tiaicJQl06raTfurfQLw5PGmQMwqJB8kXAQbUEDeFibfYoiaBwwztM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="26" data-endline="26" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">第二个亮点是作者宣称实现了<span textstyle="" style="font-weight: bold;">一条完整的从GPU到CPU再到内核提权的攻击链</span>，甚至在开启了IOMMU的情况下（IOMMU会限制GPU和CPU的内存共享）也能实现攻击，这其中必然用到了一些trick，让我们期待论文的公开！</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="30" data-endline="30" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">尽管GPUBreach还没开放，另外两篇研究工作</span><em style="box-sizing: border-box;"><span leaf="">GDDRHammer:Greatly Disturbing DRAM Rows — Cross-Component Rowhammer Attacks from Modern GPUs</span></em><span leaf=""> 和 </span><em style="box-sizing: border-box;"><span leaf="">GeForge: Hammering GDDR Memory to Forge GPU Page Tables for Fun and Profit</span></em><span leaf=""> 目前已经可以公开访问，我们也继续看看这两篇论文的细节</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://gddr.fail/files/gddrhammer.pdf" target="_blank">https://gddr.fail/files/gddrhammer.pdf</a></span><br style="box-sizing: border-box;"/><span leaf=""><a href="https://gddr.fail/files/GeForge.pdf" target="_blank">https://gddr.fail/files/GeForge.pdf</a></span></p></blockquote><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">我们首先关注三篇论文的共同之处：它们都是利用Rowhammer攻击去针对GPU的page-table，主要的不同在于对GPU实施攻击（执行GPU侧的任意内存读写）之后，继续攻击CPU这一侧使用的方法的差异（又变成了exp利用大赛，AI这时候是不是有话说）。GDDRHammer研究的主要亮点之一就是号称比以前的工作（对，就是GPUHammer）能够多产生差不多64倍的内存翻转效果，当然在今天之前，它也号称是全球第一个GPU-to-CPU Rowhammer exploit~ 关于内存翻转攻击这个部分我们就不详细介绍了，大家可以去看看论文，今天重点介绍一下所谓的“Hijacking CPU Memory Via the GPU”攻击。</span></p><p data-startline="36" data-endline="36" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上这种从一个外来domain去攻击kernel内存的想法在TEE时代就经常看到，由于内核需要和TEE通信，常见的做法是内核这边开辟一块共享内存，然后把内存的地址丢给TEE让它去写，如果攻击者能把这个地址劫持了，让TEE去修改本来不应该修改的内存（注意，在TEE那边对内存进行处理是不受内核权限访问控制的），就可以实现攻击。而GPU-to-CPU攻击的想法也差不多，先把GPU这边的页表给改掉（用Rowhammer），让特定的高权限GPU显存页面可以被普通的GPU进程（“进程”这个词不太准确）代码访问，然后攻击者就直接去访问自己的PTE页面了。更重要的是，显存的PTE表项里面有一个“APERTURE”参数，代表了这个页面指向的是GPU还是CPU的内存（显然是在没有IOMMU的保护下，CPU和GPU之间实现了统一内存访问了），那么攻击者改掉这个参数，再改掉PTE里面的物理地址，就可以很方便地实施针对内核的任意内存读写了（太简单了是不是~）</span></p><p data-startline="38" data-endline="38" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">和GDDRHammer研究相比，GeForge这个研究的思路几乎是一样的（幸好两篇论文一起投稿了），最后的攻击除了对显存中的一些敏感信息（比如模型数据）的提取，也有一个针对内核的任意内存读写攻击，所以两篇论文放在一起读，审稿人显然是节省了很多工作量（不过也并没有多加两个鸡腿，都是义务劳动）。大家可以自己去找找两篇论文中的一些差异，细节里面有很多有趣的内容。</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="42" data-endline="42" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后我们想说一下，这三篇论文都有一个比较大的问题，那就是针对GPU的Rowhammer攻击到底是不是一种稳定的攻击方式？首先所有论文都集中针对了特定型号的老黄家显卡——NVIDIA RTX A6000（注意，这不是RTX 6000！）以及它们使用的GDDR6显存。GDDRHammer的作者说他们测试了搭载了GDDR6x的ADA RTX 6000（</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">注意，下表是作者的typo，实际上并没有什么ADA RTX A6000</span></strong><span leaf="">，这里要给论文扣一分），发现并没有办法产生Rowhammer攻击。</span></p><p data-startline="44" data-endline="44" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017939" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=91bb25b3&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolUwGJbMBCy3nEMq2kEReDGib7Bv61ianz2Dsh44Hxzwia28lOCF8Rat8ay1NXquxcIaOps5WoD1LUnHiautenV0eeqV7ItAaR2KPCs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="46" data-endline="46" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而GeForge的作者测试了其他的一些显卡（RTX 3080、RTX 4060、RTX 4060 Ti、RTX 5050，其中除了3080用的是GDDR6X显存，其他都用了GDDR6显存），结果发现除了RTX A6000之外，只有RTX 3060会受Rowhammer攻击的影响，其余的显存根本产生不了比特翻转。</span></p><p data-startline="48" data-endline="48" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017940" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8c70f9df&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXHV8pRbb50amqbTz7ELFmObNoN8t5Q8JFCqhuEKC3QvsjHTIaRNsHMLSXBVpZDxCevQGqpQ8tw4G6Qj7akj7NxGWcAAhx4S5M%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="50" data-endline="50" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这就让我们产生了一点点疑问：在PC DIY时代，对硬件的评测大家都知道是很难做到公平的，因为你测试的那块样品和玩家们手上的设备可能存在亿点点差异，更不要说测试的机器（电源、散热）可能也会严重影响各种运行，Chiphell论坛上那些中年富哥天天吵来吵去不是没有道理的。此外，今年是2026年，但RTX A6000（和RTX 3060）是2021年发布的产品，也许从发布到测试这段时间，显卡经历了很多（比如矿潮到矿难）也不一定？</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">GPUBreach <a href="https://gpubreach.ca/" target="_blank">https://gpubreach.ca/</a></span><br style="box-sizing: border-box;"/><span leaf="">GDDRHammer &amp; GeForge <a href="https://gddr.fail/" target="_blank">https://gddr.fail/</a></span><br style="box-sizing: border-box;"/><span leaf="">GPUHammer（USENIX Security 2025的前驱工作） <a href="https://gpuhammer.com/" target="_blank">https://gpuhammer.com/</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=80b7d106&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501591%26idx%3D1%26sn%3D4b5381d670968cda48620eaa0bf323e2">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Fri, 17 Apr 2026 20:26:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-15 大模型安全对齐新思路：让“该不该答”听“安不安全”的话</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501577&amp;idx=1&amp;sn=fc8de3a1853111addb116513f148196b</link>
      <description></description>
      <content:encoded><![CDATA[<p><span>Haonan Zhang</span> <span>2026-04-15 22:26</span> <span style="display: inline-block;">德国</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=a0f9cdfb&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolV4sWWc1kMsVSVj3hEIHyNWZovicJ43icnYXCFMnFyFkmcT6dZ1r1KxcpamBTzgyfCS7jQWBYla9oOiajib7XyrE2UBGjUJ05gpPu0%2F0%3Fwx_fmt%3Djpeg"/></p>
  
  <div data-tool="mdnice编辑器" data-website="https://www.mdnice.com" style="margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 10px;padding-right: 10px;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;font-family: Optima, &#39;Microsoft YaHei&#39;, PingFangSC-regular, serif;font-size: 16px;color: rgb(0, 0, 0);line-height: 1.5em;word-spacing: 0em;letter-spacing: 0em;word-break: break-word;overflow-wrap: break-word;text-align: left;" data-pm-slice="0 0 []"><p><span leaf="">大家在使用ChatGPT、Qwen、Llama这些经过安全对齐的大模型时，一定遇到过这样的情况：问个“如何用菜刀切西瓜”被拒绝了，或者稍微换个说法就把不该说的话全说出来了。这两种现象在学术界被称为</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">over-refusal（过度拒绝）</span></strong><span leaf=""> 和 </span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">jailbreak（越狱）</span></strong><span leaf=""> ，是当前安全对齐领域最核心的两个痛点。</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">更让人头疼的是，这两个问题不是独立的——它们之间存在一个看似无法打破的</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">trade-off</span></strong><span leaf="">：让模型更保守，越狱减少了，但动不动就拒绝正常问题；让模型更开放，过度拒绝改善了，但坏人又钻空子了。现有的“向量操控”（vector steering）方法——通过调整模型内部表示来改变行为——本质上都是在调整“回答向量”</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">的幅度（magnitude），这就好比拧水龙头：拧小了漏不了水，但也出不了水；拧大了水来了，但脏东西也进来了。这个trade-off，似乎是无解的。</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">来自浙江大学的研究团队发现，这个trade-off并非无解。他们的论文</span><em style="color: rgb(0, 0, 0);font-style: italic;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><strong style="margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;color: rgb(0, 0, 0);font-weight: bold;font-style: italic;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;"><span leaf="">LLM-VA: Resolving the Jailbreak-Overrefusal Trade-off via Vector Alignment</span></strong></em><span leaf="">已被</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">ACL 2026 Main Conference</span></strong><span leaf="">录用。</span></p><figure data-tool="mdnice编辑器" style="margin-top: 10px;margin-bottom: 10px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: flex;flex-direction: column;justify-content: center;align-items: center;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017922" style="display: block;margin-top: 0px;margin-right: auto;margin-bottom: 0px;margin-left: auto;max-width: 100%;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;object-fit: fill;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=f251aa56&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUN4dLK6zAmjKXCNNygdcDKwR8XCytD53wRia3EsIUXNdUqLTHTM7oWOtKPiaR9AjqSdaiaz8WwufA8MeRXndibnhY038QEubxhoXI%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></figure><h2 data-tool="mdnice编辑器" style="margin-top: 30px;margin-bottom: 15px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: block;"><span style="font-size: 22px;color: rgb(0, 0, 0);line-height: 1.5em;letter-spacing: 0em;text-align: left;font-weight: bold;display: block;"><span leaf="">问题的根因：两个判断向量正交</span></span></h2><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">研究团队在模型内部提取了两个方向：</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">回答向量</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">（反映模型是否倾向于回答）和</span></strong><span leaf="">良性向量</span><span style="cursor:pointer;" data-formula="v_b"><span data-formula="v_b"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 838.3 600.8" aria-hidden="true" style="vertical-align: -0.357ex;width: 1.897ex;height: 1.359ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g></g></g><g></g></svg></span></span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">（反映模型对输入是否安全的判断）。他们发现，在几乎所有被测试的大模型中，这两个向量在各层之间的夹角都接近</span></strong><span leaf="">90°</span></strong><span leaf="">——近乎正交。</span></p><figure data-tool="mdnice编辑器" style="margin-top: 10px;margin-bottom: 10px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: flex;flex-direction: column;justify-content: center;align-items: center;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017924" style="display: block;margin-top: 0px;margin-right: auto;margin-bottom: 0px;margin-left: auto;max-width: 100%;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;object-fit: fill;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=67e2a2dd&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXJTyGSesdVF5NIc7Qp83VwMtiaYaLlCGqTk6dIZn97Wt1wibnjeD2TibU3Y245uLyRicm3J0mz9Ngj1cdJHx2ozWMeZ4Y6ibJbnE0c%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></figure><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">这一现象揭示了一个深刻的问题：</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">大模型把“要不要回答”和“输入是否安全”当作两个完全独立的过程在处理。</span></strong><span leaf=""> 于是，模型有时候“判断出输入是安全的，但就是不回答”（over-refusal），有时候“明明感知到了有毒输入，却还是回答了”（jailbreak）。两个决策互不知情，自然就会各自出错。</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">现有方法只调整</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">的幅度，没有把“是否回答”和“是否安全”关联起来，所以无论怎么调，都逃不开这个trade-off。</span></p><figure data-tool="mdnice编辑器" style="margin-top: 10px;margin-bottom: 10px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: flex;flex-direction: column;justify-content: center;align-items: center;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017923" style="display: block;margin-top: 0px;margin-right: auto;margin-bottom: 0px;margin-left: auto;max-width: 100%;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;object-fit: fill;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=32a66832&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolU3Z6aL29seXqoj9IKPCBFichha3KeLrWv1ocrjicepyZ6BRI2u7lY0bTpetAjkCX0NCmkmZ8avLINbuOnmYfbZhKlcZw70Er6H8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></figure><h2 data-tool="mdnice编辑器" style="margin-top: 30px;margin-bottom: 15px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: block;"><span style="font-size: 22px;color: rgb(0, 0, 0);line-height: 1.5em;letter-spacing: 0em;text-align: left;font-weight: bold;display: block;"><span leaf="">解法：让“回答意愿”因果地依赖“安全判断”</span></span></h2><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">LLM-VA的核心思想非常直接：</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">把</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">对齐到</span><span style="cursor:pointer;" data-formula="v_b"><span data-formula="v_b"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 838.3 600.8" aria-hidden="true" style="vertical-align: -0.357ex;width: 1.897ex;height: 1.359ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">的方向上</span></strong><span leaf="">，让模型“要不要回答”的决策在因果上依赖“输入安不安全”的判断。具体分三步走：</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">第一步：用SVM识别各层的控制向量。</span></strong><span leaf=""> 在每一层分别训练两个线性SVM，分别找到区分“良性/有毒”和“回答/拒绝”的最大间隔超平面，其法向量即为</span><span style="cursor:pointer;" data-formula="v_b"><span data-formula="v_b"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 838.3 600.8" aria-hidden="true" style="vertical-align: -0.357ex;width: 1.897ex;height: 1.359ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">和</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">。选择SVM的原因是它提供可解释的线性决策边界，间隔最大化保证了向量的鲁棒性。</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">第二步：筛选与安全决策最相关的层。</span></strong><span leaf=""> 不是每一层都对最终的安全行为有同等贡献。LLM-VA用一个综合得分来选层：</span></p><span style="cursor:pointer;" data-tool="mdnice编辑器"><p data-formula="\text{Score}^{(l)} = C^{(l)}_a \cdot \text{Acc}^{(l)}_a + C^{(l)}_b \cdot \text{Acc}^{(l)}_b
" style="text-align: center;overflow-x: auto;overflow-y: auto;display: block;"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -1060.7 15305.1 1385.6" aria-hidden="true" style="vertical-align: -0.735ex;width: 34.627ex;height: 3.135ex;max-width: 300% !important;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msup"><g data-mml-node="mtext"><path data-c="53" d="M55 507Q55 590 112 647T243 704H257Q342 704 405 641L426 672Q431 679 436 687T446 700L449 704Q450 704 453 704T459 705H463Q466 705 472 699V462L466 456H448Q437 456 435 459T430 479Q413 605 329 646Q292 662 254 662Q201 662 168 626T135 542Q135 508 152 480T200 435Q210 431 286 412T370 389Q427 367 463 314T500 191Q500 110 448 45T301 -21Q245 -21 201 -4T140 27L122 41Q118 36 107 21T87 -7T78 -21Q76 -22 68 -22H64Q61 -22 55 -16V101Q55 220 56 222Q58 227 76 227H89Q95 221 95 214Q95 182 105 151T139 90T205 42T305 24Q352 24 386 62T420 155Q420 198 398 233T340 281Q284 295 266 300Q261 301 239 306T206 314T174 325T141 343T112 367T85 402Q55 451 55 507Z"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(556, 0)"></path><path data-c="6F" d="M28 214Q28 309 93 378T250 448Q340 448 405 380T471 215Q471 120 407 55T250 -10Q153 -10 91 57T28 214ZM250 30Q372 30 372 193V225V250Q372 272 371 288T364 326T348 362T317 390T268 410Q263 411 252 411Q222 411 195 399Q152 377 139 338T126 246V226Q126 130 145 91Q177 30 250 30Z" transform="translate(1000, 0)"></path><path data-c="72" d="M36 46H50Q89 46 97 60V68Q97 77 97 91T98 122T98 161T98 203Q98 234 98 269T98 328L97 351Q94 370 83 376T38 385H20V408Q20 431 22 431L32 432Q42 433 60 434T96 436Q112 437 131 438T160 441T171 442H174V373Q213 441 271 441H277Q322 441 343 419T364 373Q364 352 351 337T313 322Q288 322 276 338T263 372Q263 381 265 388T270 400T273 405Q271 407 250 401Q234 393 226 386Q179 341 179 207V154Q179 141 179 127T179 101T180 81T180 66V61Q181 59 183 57T188 54T193 51T200 49T207 48T216 47T225 47T235 46T245 46H276V0H267Q249 3 140 3Q37 3 28 0H20V46H36Z" transform="translate(1500, 0)"></path><path data-c="65" d="M28 218Q28 273 48 318T98 391T163 433T229 448Q282 448 320 430T378 380T406 316T415 245Q415 238 408 231H126V216Q126 68 226 36Q246 30 270 30Q312 30 342 62Q359 79 369 104L379 128Q382 131 395 131H398Q415 131 415 121Q415 117 412 108Q393 53 349 21T250 -11Q155 -11 92 58T28 218ZM333 275Q322 403 238 411H236Q228 411 220 410T195 402T166 381T143 340T127 274V267H333V275Z" transform="translate(1892, 0)"></path></g><g data-mml-node="TeXAtom" transform="translate(2336, 432.1) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g></g><g data-mml-node="mo" transform="translate(3424.6, 0)"><path data-c="3D" d="M56 347Q56 360 70 367H707Q722 359 722 347Q722 336 708 328L390 327H72Q56 332 56 347ZM56 153Q56 168 72 173H708Q722 163 722 153Q722 140 707 133H70Q56 140 56 153Z"></path></g><g data-mml-node="msubsup" transform="translate(4480.4, 0)"><g data-mml-node="mi"><path data-c="43" d="M50 252Q50 367 117 473T286 641T490 704Q580 704 633 653Q642 643 648 636T656 626L657 623Q660 623 684 649Q691 655 699 663T715 679T725 690L740 705H746Q760 705 760 698Q760 694 728 561Q692 422 692 421Q690 416 687 415T669 413H653Q647 419 647 422Q647 423 648 429T650 449T651 481Q651 552 619 605T510 659Q484 659 454 652T382 628T299 572T226 479Q194 422 175 346T156 222Q156 108 232 58Q280 24 350 24Q441 24 512 92T606 240Q610 253 612 255T628 257Q648 257 648 248Q648 243 647 239Q618 132 523 55T319 -22Q206 -22 128 53T50 252Z"></path></g><g data-mml-node="TeXAtom" transform="translate(819, 530.4) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g><g data-mml-node="mi" transform="translate(715, -138.2) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="mo" transform="translate(6332.5, 0)"><path data-c="22C5" d="M78 250Q78 274 95 292T138 310Q162 310 180 294T199 251Q199 226 182 208T139 190T96 207T78 250Z"></path></g><g data-mml-node="msubsup" transform="translate(6832.7, 0)"><g data-mml-node="mtext"><path data-c="41" d="M255 0Q240 3 140 3Q48 3 39 0H32V46H47Q119 49 139 88Q140 91 192 245T295 553T348 708Q351 716 366 716H376Q396 715 400 709Q402 707 508 390L617 67Q624 54 636 51T687 46H717V0H708Q699 3 581 3Q458 3 437 0H427V46H440Q510 46 510 64Q510 66 486 138L462 209H229L209 150Q189 91 189 85Q189 72 209 59T259 46H264V0H255ZM447 255L345 557L244 256Q244 255 345 255H447Z"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(750, 0)"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(1194, 0)"></path></g><g data-mml-node="TeXAtom" transform="translate(1638, 443.1) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g><g data-mml-node="mi" transform="translate(1638, -247) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="mo" transform="translate(9503.8, 0)"><path data-c="2B" d="M56 237T56 250T70 270H369V420L370 570Q380 583 389 583Q402 583 409 568V270H707Q722 262 722 250T707 230H409V-68Q401 -82 391 -82H389H387Q375 -82 369 -68V230H70Q56 237 56 250Z"></path></g><g data-mml-node="msubsup" transform="translate(10504, 0)"><g data-mml-node="mi"><path data-c="43" d="M50 252Q50 367 117 473T286 641T490 704Q580 704 633 653Q642 643 648 636T656 626L657 623Q660 623 684 649Q691 655 699 663T715 679T725 690L740 705H746Q760 705 760 698Q760 694 728 561Q692 422 692 421Q690 416 687 415T669 413H653Q647 419 647 422Q647 423 648 429T650 449T651 481Q651 552 619 605T510 659Q484 659 454 652T382 628T299 572T226 479Q194 422 175 346T156 222Q156 108 232 58Q280 24 350 24Q441 24 512 92T606 240Q610 253 612 255T628 257Q648 257 648 248Q648 243 647 239Q618 132 523 55T319 -22Q206 -22 128 53T50 252Z"></path></g><g data-mml-node="TeXAtom" transform="translate(819, 530.4) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g><g data-mml-node="mi" transform="translate(715, -317.1) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g><g data-mml-node="mo" transform="translate(12356.1, 0)"><path data-c="22C5" d="M78 250Q78 274 95 292T138 310Q162 310 180 294T199 251Q199 226 182 208T139 190T96 207T78 250Z"></path></g><g data-mml-node="msubsup" transform="translate(12856.3, 0)"><g data-mml-node="mtext"><path data-c="41" d="M255 0Q240 3 140 3Q48 3 39 0H32V46H47Q119 49 139 88Q140 91 192 245T295 553T348 708Q351 716 366 716H376Q396 715 400 709Q402 707 508 390L617 67Q624 54 636 51T687 46H717V0H708Q699 3 581 3Q458 3 437 0H427V46H440Q510 46 510 64Q510 66 486 138L462 209H229L209 150Q189 91 189 85Q189 72 209 59T259 46H264V0H255ZM447 255L345 557L244 256Q244 255 345 255H447Z"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(750, 0)"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(1194, 0)"></path></g><g data-mml-node="TeXAtom" transform="translate(1638, 530.4) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g><g data-mml-node="mi" transform="translate(1638, -317.1) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g></g></g><g></g></svg></p></span><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">其中</span><span style="cursor:pointer;" data-formula="C^{(l)}"><span data-formula="C^{(l)}"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -893.3 1629.8 915.3" aria-hidden="true" style="vertical-align: -0.05ex;width: 3.687ex;height: 2.071ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msup"><g data-mml-node="mi"><path data-c="43" d="M50 252Q50 367 117 473T286 641T490 704Q580 704 633 653Q642 643 648 636T656 626L657 623Q660 623 684 649Q691 655 699 663T715 679T725 690L740 705H746Q760 705 760 698Q760 694 728 561Q692 422 692 421Q690 416 687 415T669 413H653Q647 419 647 422Q647 423 648 429T650 449T651 481Q651 552 619 605T510 659Q484 659 454 652T382 628T299 572T226 479Q194 422 175 346T156 222Q156 108 232 58Q280 24 350 24Q441 24 512 92T606 240Q610 253 612 255T628 257Q648 257 648 248Q648 243 647 239Q618 132 523 55T319 -22Q206 -22 128 53T50 252Z"></path></g><g data-mml-node="TeXAtom" transform="translate(819, 363) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g></g></g></g><g></g></svg></span></span><span leaf="">衡量该层向量与最终残差流的对齐程度（影响力），</span><span style="cursor:pointer;" data-formula="\text{Acc}^{(l)}"><span data-formula="\text{Acc}^{(l)}"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -973.4 2448.8 984.4" aria-hidden="true" style="vertical-align: -0.025ex;width: 5.54ex;height: 2.227ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msup"><g data-mml-node="mtext"><path data-c="41" d="M255 0Q240 3 140 3Q48 3 39 0H32V46H47Q119 49 139 88Q140 91 192 245T295 553T348 708Q351 716 366 716H376Q396 715 400 709Q402 707 508 390L617 67Q624 54 636 51T687 46H717V0H708Q699 3 581 3Q458 3 437 0H427V46H440Q510 46 510 64Q510 66 486 138L462 209H229L209 150Q189 91 189 85Q189 72 209 59T259 46H264V0H255ZM447 255L345 557L244 256Q244 255 345 255H447Z"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(750, 0)"></path><path data-c="63" d="M370 305T349 305T313 320T297 358Q297 381 312 396Q317 401 317 402T307 404Q281 408 258 408Q209 408 178 376Q131 329 131 219Q131 137 162 90Q203 29 272 29Q313 29 338 55T374 117Q376 125 379 127T395 129H409Q415 123 415 120Q415 116 411 104T395 71T366 33T318 2T249 -11Q163 -11 99 53T34 214Q34 318 99 383T250 448T370 421T404 357Q404 334 387 320Z" transform="translate(1194, 0)"></path></g><g data-mml-node="TeXAtom" transform="translate(1638, 443.1) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="28" d="M94 250Q94 319 104 381T127 488T164 576T202 643T244 695T277 729T302 750H315H319Q333 750 333 741Q333 738 316 720T275 667T226 581T184 443T167 250T184 58T225 -81T274 -167T316 -220T333 -241Q333 -250 318 -250H315H302L274 -226Q180 -141 137 -14T94 250Z"></path></g><g data-mml-node="mi" transform="translate(389, 0)"><path data-c="6C" d="M117 59Q117 26 142 26Q179 26 205 131Q211 151 215 152Q217 153 225 153H229Q238 153 241 153T246 151T248 144Q247 138 245 128T234 90T214 43T183 6T137 -11Q101 -11 70 11T38 85Q38 97 39 102L104 360Q167 615 167 623Q167 626 166 628T162 632T157 634T149 635T141 636T132 637T122 637Q112 637 109 637T101 638T95 641T94 647Q94 649 96 661Q101 680 107 682T179 688Q194 689 213 690T243 693T254 694Q266 694 266 686Q266 675 193 386T118 83Q118 81 118 75T117 65V59Z"></path></g><g data-mml-node="mo" transform="translate(687, 0)"><path data-c="29" d="M60 749L64 750Q69 750 74 750H86L114 726Q208 641 251 514T294 250Q294 182 284 119T261 12T224 -76T186 -143T145 -194T113 -227T90 -246Q87 -249 86 -250H74Q66 -250 63 -250T58 -247T55 -238Q56 -237 66 -225Q221 -64 221 250T66 725Q56 737 55 738Q55 746 60 749Z"></path></g></g></g></g></g><g></g></svg></span></span><span leaf="">衡量该层SVM的分类准确率。乘积形式确保选出的层</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">既有影响力又足够准确</span></strong><span leaf="">，缺一不可。实验也验证了一个直觉：靠后的层对安全决策更重要，靠前的层则更多承载通用能力——修改前者伤害小，修改后者要小心。</span></p><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">第三步：闭式权重更新完成对齐。</span></strong><span leaf=""> 不需要梯度下降，不需要微调，不需要改模型架构，直接用伪逆给出最小扰动的权重更新：</span></p><span style="cursor:pointer;" data-tool="mdnice编辑器"><p data-formula="\Delta^{+} = \left(\frac{\sigma_a}{\sigma_b} W v_b - W v_a\right) v_a^T, \quad W&#39; = W + \Delta^{+}
" style="text-align: center;overflow-x: auto;overflow-y: auto;display: block;"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -1449.5 19617.5 2399" aria-hidden="true" style="vertical-align: -2.148ex;width: 44.383ex;height: 5.428ex;max-width: 300% !important;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msup"><g data-mml-node="mi"><path data-c="394" d="M51 0Q46 4 46 7Q46 9 215 357T388 709Q391 716 416 716Q439 716 444 709Q447 705 616 357T786 7Q786 4 781 0H51ZM507 344L384 596L137 92L383 91H630Q630 93 507 344Z"></path></g><g data-mml-node="TeXAtom" transform="translate(833, 413) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="2B" d="M56 237T56 250T70 270H369V420L370 570Q380 583 389 583Q402 583 409 568V270H707Q722 262 722 250T707 230H409V-68Q401 -82 391 -82H389H387Q375 -82 369 -68V230H70Q56 237 56 250Z"></path></g></g></g><g data-mml-node="mo" transform="translate(1710.9, 0)"><path data-c="3D" d="M56 347Q56 360 70 367H707Q722 359 722 347Q722 336 708 328L390 327H72Q56 332 56 347ZM56 153Q56 168 72 173H708Q722 163 722 153Q722 140 707 133H70Q56 140 56 153Z"></path></g><g data-mml-node="mrow" transform="translate(2766.7, 0)"><g data-mml-node="mo"><path data-c="28" d="M701 -940Q701 -943 695 -949H664Q662 -947 636 -922T591 -879T537 -818T475 -737T412 -636T350 -511T295 -362T250 -186T221 17T209 251Q209 962 573 1361Q596 1386 616 1405T649 1437T664 1450H695Q701 1444 701 1441Q701 1436 681 1415T629 1356T557 1261T476 1118T400 927T340 675T308 359Q306 321 306 250Q306 -139 400 -430T690 -924Q701 -936 701 -940Z"></path></g><g data-mml-node="mfrac" transform="translate(736, 0)"><g data-mml-node="msub" transform="translate(220, 676)"><g data-mml-node="mi"><path data-c="3C3" d="M184 -11Q116 -11 74 34T31 147Q31 247 104 333T274 430Q275 431 414 431H552Q553 430 555 429T559 427T562 425T565 422T567 420T569 416T570 412T571 407T572 401Q572 357 507 357Q500 357 490 357T476 358H416L421 348Q439 310 439 263Q439 153 359 71T184 -11ZM361 278Q361 358 276 358Q152 358 115 184Q114 180 114 178Q106 141 106 117Q106 67 131 47T188 26Q242 26 287 73Q316 103 334 153T356 233T361 278Z"></path></g><g data-mml-node="mi" transform="translate(571, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="msub" transform="translate(255.4, -686)"><g data-mml-node="mi"><path data-c="3C3" d="M184 -11Q116 -11 74 34T31 147Q31 247 104 333T274 430Q275 431 414 431H552Q553 430 555 429T559 427T562 425T565 422T567 420T569 416T570 412T571 407T572 401Q572 357 507 357Q500 357 490 357T476 358H416L421 348Q439 310 439 263Q439 153 359 71T184 -11ZM361 278Q361 358 276 358Q152 358 115 184Q114 180 114 178Q106 141 106 117Q106 67 131 47T188 26Q242 26 287 73Q316 103 334 153T356 233T361 278Z"></path></g><g data-mml-node="mi" transform="translate(571, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g><rect width="1195.1" height="60" x="120" y="220"></rect></g><g data-mml-node="mi" transform="translate(2171.1, 0)"><path data-c="57" d="M436 683Q450 683 486 682T553 680Q604 680 638 681T677 682Q695 682 695 674Q695 670 692 659Q687 641 683 639T661 637Q636 636 621 632T600 624T597 615Q597 603 613 377T629 138L631 141Q633 144 637 151T649 170T666 200T690 241T720 295T759 362Q863 546 877 572T892 604Q892 619 873 628T831 637Q817 637 817 647Q817 650 819 660Q823 676 825 679T839 682Q842 682 856 682T895 682T949 681Q1015 681 1034 683Q1048 683 1048 672Q1048 666 1045 655T1038 640T1028 637Q1006 637 988 631T958 617T939 600T927 584L923 578L754 282Q586 -14 585 -15Q579 -22 561 -22Q546 -22 542 -17Q539 -14 523 229T506 480L494 462Q472 425 366 239Q222 -13 220 -15T215 -19Q210 -22 197 -22Q178 -22 176 -15Q176 -12 154 304T131 622Q129 631 121 633T82 637H58Q51 644 51 648Q52 671 64 683H76Q118 680 176 680Q301 680 313 683H323Q329 677 329 674T327 656Q322 641 318 637H297Q236 634 232 620Q262 160 266 136L501 550L499 587Q496 629 489 632Q483 636 447 637Q428 637 422 639T416 648Q416 650 418 660Q419 664 420 669T421 676T424 680T428 682T436 683Z"></path></g><g data-mml-node="msub" transform="translate(3219.1, 0)"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g><g data-mml-node="mo" transform="translate(4279.6, 0)"><path data-c="2212" d="M84 237T84 250T98 270H679Q694 262 694 250T679 230H98Q84 237 84 250Z"></path></g><g data-mml-node="mi" transform="translate(5279.9, 0)"><path data-c="57" d="M436 683Q450 683 486 682T553 680Q604 680 638 681T677 682Q695 682 695 674Q695 670 692 659Q687 641 683 639T661 637Q636 636 621 632T600 624T597 615Q597 603 613 377T629 138L631 141Q633 144 637 151T649 170T666 200T690 241T720 295T759 362Q863 546 877 572T892 604Q892 619 873 628T831 637Q817 637 817 647Q817 650 819 660Q823 676 825 679T839 682Q842 682 856 682T895 682T949 681Q1015 681 1034 683Q1048 683 1048 672Q1048 666 1045 655T1038 640T1028 637Q1006 637 988 631T958 617T939 600T927 584L923 578L754 282Q586 -14 585 -15Q579 -22 561 -22Q546 -22 542 -17Q539 -14 523 229T506 480L494 462Q472 425 366 239Q222 -13 220 -15T215 -19Q210 -22 197 -22Q178 -22 176 -15Q176 -12 154 304T131 622Q129 631 121 633T82 637H58Q51 644 51 648Q52 671 64 683H76Q118 680 176 680Q301 680 313 683H323Q329 677 329 674T327 656Q322 641 318 637H297Q236 634 232 620Q262 160 266 136L501 550L499 587Q496 629 489 632Q483 636 447 637Q428 637 422 639T416 648Q416 650 418 660Q419 664 420 669T421 676T424 680T428 682T436 683Z"></path></g><g data-mml-node="msub" transform="translate(6327.9, 0)"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="mo" transform="translate(7236.9, 0)"><path data-c="29" d="M34 1438Q34 1446 37 1448T50 1450H56H71Q73 1448 99 1423T144 1380T198 1319T260 1238T323 1137T385 1013T440 864T485 688T514 485T526 251Q526 134 519 53Q472 -519 162 -860Q139 -885 119 -904T86 -936T71 -949H56Q43 -949 39 -947T34 -937Q88 -883 140 -813Q428 -430 428 251Q428 453 402 628T338 922T245 1146T145 1309T46 1425Q44 1427 42 1429T39 1433T36 1436L34 1438Z"></path></g></g><g data-mml-node="msubsup" transform="translate(10739.6, 0)"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, 413) scale(0.707)"><path data-c="54" d="M40 437Q21 437 21 445Q21 450 37 501T71 602L88 651Q93 669 101 677H569H659Q691 677 697 676T704 667Q704 661 687 553T668 444Q668 437 649 437Q640 437 637 437T631 442L629 445Q629 451 635 490T641 551Q641 586 628 604T573 629Q568 630 515 631Q469 631 457 630T439 622Q438 621 368 343T298 60Q298 48 386 46Q418 46 427 45T436 36Q436 31 433 22Q429 4 424 1L422 0Q419 0 415 0Q410 0 363 1T228 2Q99 2 64 0H49Q43 6 43 9T45 27Q49 40 55 46H83H94Q174 46 189 55Q190 56 191 56Q196 59 201 76T241 233Q258 301 269 344Q339 619 339 625Q339 630 310 630H279Q212 630 191 624Q146 614 121 583T67 467Q60 445 57 441T43 437H40Z"></path></g><g data-mml-node="mi" transform="translate(485, -247) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="mo" transform="translate(11772.4, 0)"><path data-c="2C" d="M78 35T78 60T94 103T137 121Q165 121 187 96T210 8Q210 -27 201 -60T180 -117T154 -158T130 -185T117 -194Q113 -194 104 -185T95 -172Q95 -168 106 -156T131 -126T157 -76T173 -3V9L172 8Q170 7 167 6T161 3T152 1T140 0Q113 0 96 17Z"></path></g><g data-mml-node="mstyle" transform="translate(12217.1, 0)"><g data-mml-node="mspace"></g></g><g data-mml-node="msup" transform="translate(13217.1, 0)"><g data-mml-node="mi"><path data-c="57" d="M436 683Q450 683 486 682T553 680Q604 680 638 681T677 682Q695 682 695 674Q695 670 692 659Q687 641 683 639T661 637Q636 636 621 632T600 624T597 615Q597 603 613 377T629 138L631 141Q633 144 637 151T649 170T666 200T690 241T720 295T759 362Q863 546 877 572T892 604Q892 619 873 628T831 637Q817 637 817 647Q817 650 819 660Q823 676 825 679T839 682Q842 682 856 682T895 682T949 681Q1015 681 1034 683Q1048 683 1048 672Q1048 666 1045 655T1038 640T1028 637Q1006 637 988 631T958 617T939 600T927 584L923 578L754 282Q586 -14 585 -15Q579 -22 561 -22Q546 -22 542 -17Q539 -14 523 229T506 480L494 462Q472 425 366 239Q222 -13 220 -15T215 -19Q210 -22 197 -22Q178 -22 176 -15Q176 -12 154 304T131 622Q129 631 121 633T82 637H58Q51 644 51 648Q52 671 64 683H76Q118 680 176 680Q301 680 313 683H323Q329 677 329 674T327 656Q322 641 318 637H297Q236 634 232 620Q262 160 266 136L501 550L499 587Q496 629 489 632Q483 636 447 637Q428 637 422 639T416 648Q416 650 418 660Q419 664 420 669T421 676T424 680T428 682T436 683Z"></path></g><g data-mml-node="mo" transform="translate(1118.8, 413) scale(0.707)"><path data-c="2032" d="M79 43Q73 43 52 49T30 61Q30 68 85 293T146 528Q161 560 198 560Q218 560 240 545T262 501Q262 496 260 486Q259 479 173 263T84 45T79 43Z"></path></g></g><g data-mml-node="mo" transform="translate(14858.1, 0)"><path data-c="3D" d="M56 347Q56 360 70 367H707Q722 359 722 347Q722 336 708 328L390 327H72Q56 332 56 347ZM56 153Q56 168 72 173H708Q722 163 722 153Q722 140 707 133H70Q56 140 56 153Z"></path></g><g data-mml-node="mi" transform="translate(15913.9, 0)"><path data-c="57" d="M436 683Q450 683 486 682T553 680Q604 680 638 681T677 682Q695 682 695 674Q695 670 692 659Q687 641 683 639T661 637Q636 636 621 632T600 624T597 615Q597 603 613 377T629 138L631 141Q633 144 637 151T649 170T666 200T690 241T720 295T759 362Q863 546 877 572T892 604Q892 619 873 628T831 637Q817 637 817 647Q817 650 819 660Q823 676 825 679T839 682Q842 682 856 682T895 682T949 681Q1015 681 1034 683Q1048 683 1048 672Q1048 666 1045 655T1038 640T1028 637Q1006 637 988 631T958 617T939 600T927 584L923 578L754 282Q586 -14 585 -15Q579 -22 561 -22Q546 -22 542 -17Q539 -14 523 229T506 480L494 462Q472 425 366 239Q222 -13 220 -15T215 -19Q210 -22 197 -22Q178 -22 176 -15Q176 -12 154 304T131 622Q129 631 121 633T82 637H58Q51 644 51 648Q52 671 64 683H76Q118 680 176 680Q301 680 313 683H323Q329 677 329 674T327 656Q322 641 318 637H297Q236 634 232 620Q262 160 266 136L501 550L499 587Q496 629 489 632Q483 636 447 637Q428 637 422 639T416 648Q416 650 418 660Q419 664 420 669T421 676T424 680T428 682T436 683Z"></path></g><g data-mml-node="mo" transform="translate(17184.1, 0)"><path data-c="2B" d="M56 237T56 250T70 270H369V420L370 570Q380 583 389 583Q402 583 409 568V270H707Q722 262 722 250T707 230H409V-68Q401 -82 391 -82H389H387Q375 -82 369 -68V230H70Q56 237 56 250Z"></path></g><g data-mml-node="msup" transform="translate(18184.3, 0)"><g data-mml-node="mi"><path data-c="394" d="M51 0Q46 4 46 7Q46 9 215 357T388 709Q391 716 416 716Q439 716 444 709Q447 705 616 357T786 7Q786 4 781 0H51ZM507 344L384 596L137 92L383 91H630Q630 93 507 344Z"></path></g><g data-mml-node="TeXAtom" transform="translate(833, 413) scale(0.707)" data-mjx-texclass="ORD"><g data-mml-node="mo"><path data-c="2B" d="M56 237T56 250T70 270H369V420L370 570Q380 583 389 583Q402 583 409 568V270H707Q722 262 722 250T707 230H409V-68Q401 -82 391 -82H389H387Q375 -82 369 -68V230H70Q56 237 56 250Z"></path></g></g></g></g></g><g></g></svg></p></span><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">其中</span><span style="cursor:pointer;" data-formula="\sigma_a / \sigma_b"><span data-formula="\sigma_a / \sigma_b"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -750 2419.4 1000" aria-hidden="true" style="vertical-align: -0.566ex;width: 5.474ex;height: 2.262ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="3C3" d="M184 -11Q116 -11 74 34T31 147Q31 247 104 333T274 430Q275 431 414 431H552Q553 430 555 429T559 427T562 425T565 422T567 420T569 416T570 412T571 407T572 401Q572 357 507 357Q500 357 490 357T476 358H416L421 348Q439 310 439 263Q439 153 359 71T184 -11ZM361 278Q361 358 276 358Q152 358 115 184Q114 180 114 178Q106 141 106 117Q106 67 131 47T188 26Q242 26 287 73Q316 103 334 153T356 233T361 278Z"></path></g><g data-mml-node="mi" transform="translate(571, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g><g data-mml-node="TeXAtom" data-mjx-texclass="ORD" transform="translate(995.1, 0)"><g data-mml-node="mo"><path data-c="2F" d="M423 750Q432 750 438 744T444 730Q444 725 271 248T92 -240Q85 -250 75 -250Q68 -250 62 -245T56 -231Q56 -221 230 257T407 740Q411 750 423 750Z"></path></g></g><g data-mml-node="msub" transform="translate(1495.1, 0)"><g data-mml-node="mi"><path data-c="3C3" d="M184 -11Q116 -11 74 34T31 147Q31 247 104 333T274 430Q275 431 414 431H552Q553 430 555 429T559 427T562 425T565 422T567 420T569 416T570 412T571 407T572 401Q572 357 507 357Q500 357 490 357T476 358H416L421 348Q439 310 439 263Q439 153 359 71T184 -11ZM361 278Q361 358 276 358Q152 358 115 184Q114 180 114 178Q106 141 106 117Q106 67 131 47T188 26Q242 26 287 73Q316 103 334 153T356 233T361 278Z"></path></g><g data-mml-node="mi" transform="translate(571, -150) scale(0.707)"><path data-c="62" d="M73 647Q73 657 77 670T89 683Q90 683 161 688T234 694Q246 694 246 685T212 542Q204 508 195 472T180 418L176 399Q176 396 182 402Q231 442 283 442Q345 442 383 396T422 280Q422 169 343 79T173 -11Q123 -11 82 27T40 150V159Q40 180 48 217T97 414Q147 611 147 623T109 637Q104 637 101 637H96Q86 637 83 637T76 640T73 647ZM336 325V331Q336 405 275 405Q258 405 240 397T207 376T181 352T163 330L157 322L136 236Q114 150 114 114Q114 66 138 42Q154 26 178 26Q211 26 245 58Q270 81 285 114T318 219Q336 291 336 325Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">是归一化因子，确保良性输入在</span><span style="cursor:pointer;" data-formula="v_a"><span data-formula="v_a"><svg xmlns="http://www.w3.org/2000/svg" role="img" focusable="false" viewBox="0 -443 909.1 600.1" aria-hidden="true" style="vertical-align: -0.355ex;width: 2.057ex;height: 1.358ex;"><g stroke="currentColor" fill="currentColor" stroke-width="0" transform="matrix(1 0 0 -1 0 0)"><g data-mml-node="math"><g data-mml-node="msub"><g data-mml-node="mi"><path data-c="76" d="M173 380Q173 405 154 405Q130 405 104 376T61 287Q60 286 59 284T58 281T56 279T53 278T49 278T41 278H27Q21 284 21 287Q21 294 29 316T53 368T97 419T160 441Q202 441 225 417T249 361Q249 344 246 335Q246 329 231 291T200 202T182 113Q182 86 187 69Q200 26 250 26Q287 26 319 60T369 139T398 222T409 277Q409 300 401 317T383 343T365 361T357 383Q357 405 376 424T417 443Q436 443 451 425T467 367Q467 340 455 284T418 159T347 40T241 -11Q177 -11 139 22Q102 54 102 117Q102 148 110 181T151 298Q173 362 173 380Z"></path></g><g data-mml-node="mi" transform="translate(485, -150) scale(0.707)"><path data-c="61" d="M33 157Q33 258 109 349T280 441Q331 441 370 392Q386 422 416 422Q429 422 439 414T449 394Q449 381 412 234T374 68Q374 43 381 35T402 26Q411 27 422 35Q443 55 463 131Q469 151 473 152Q475 153 483 153H487Q506 153 506 144Q506 138 501 117T481 63T449 13Q436 0 417 -8Q409 -10 393 -10Q359 -10 336 5T306 36L300 51Q299 52 296 50Q294 48 292 46Q233 -10 172 -10Q117 -10 75 30T33 157ZM351 328Q351 334 346 350T323 385T277 405Q242 405 210 374T160 293Q131 214 119 129Q119 126 119 118T118 106Q118 61 136 44T179 26Q217 26 254 59T298 110Q300 114 325 217T351 328Z"></path></g></g></g></g><g></g></svg></span></span><span leaf="">方向产生正投影、有毒输入产生负投影。由于修改某一层权重会影响后续层的有效向量方向，方法会迭代地重新提取向量并更新权重，大多数模型在20–30次迭代内收敛。</span></p><figure data-tool="mdnice编辑器" style="margin-top: 10px;margin-bottom: 10px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: flex;flex-direction: column;justify-content: center;align-items: center;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017926" style="display: block;margin-top: 0px;margin-right: auto;margin-bottom: 0px;margin-left: auto;max-width: 100%;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;object-fit: fill;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=98e1c448&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVdSdDSkNMEgVALDicI0Tm8RYVzgJDaK9xfw71FkbGqNd79UfuViaATejDbvINIRCcibzI1RBiagicYrm3uWYSJ84MYtauKWQj9BGoE%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></figure><h2 data-tool="mdnice编辑器" style="margin-top: 30px;margin-bottom: 15px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: block;"><span style="font-size: 22px;color: rgb(0, 0, 0);line-height: 1.5em;letter-spacing: 0em;text-align: left;font-weight: bold;display: block;"><span leaf="">实验：12个模型，全面超越基线</span></span></h2><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">研究团队在</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">12个主流开源指令微调模型</span></strong><span leaf="">（涵盖Llama、Gemma、Mistral、Phi、Qwen五个系列，规模3B–14B）上进行了实验，覆盖jailbreak和over-refusal两类数据集，并与VectorSteer、AlphaSteer、SCANS等基线方法对比。</span></p><ul style="list-style-type: disc;margin-top: 8px;margin-bottom: 8px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 25px;padding-right: 0px;color: rgb(0, 0, 0);" class="list-paddingleft-1"><li><p style="margin-top: 5px;margin-bottom: 5px;color: rgb(1, 1, 1);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;font-weight: normal;"><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">综合效果（F1）</span></strong><span leaf="">：LLM-VA平均F1达0.77，比最优基线AlphaSteer**相对提升11.45%**，同时将越狱成功率（ASR）和过度拒绝率（ORR）分别降低了18.50%和22.00%。</span></p></li><li><p style="margin-top: 5px;margin-bottom: 5px;color: rgb(1, 1, 1);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;font-weight: normal;"><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">通用能力保留</span></strong><span leaf="">：在语法、自然语言推理、情感分析、数学（GSM8K）等6个benchmark上，LLM-VA平均保留了**95.92%**的原始能力，优于所有基线方法。相比之下，SCANS由于激进的幅度调整，通用能力平均损失达40.98%。</span></p></li></ul><figure data-tool="mdnice编辑器" style="margin-top: 10px;margin-bottom: 10px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: flex;flex-direction: column;justify-content: center;align-items: center;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017925" style="display: block;margin-top: 0px;margin-right: auto;margin-bottom: 0px;margin-left: auto;max-width: 100%;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;object-fit: fill;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=729e1ecf&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolULJMoib7nYqY8jYJ9YRUicnP7B7UQAhwhnia4jjaEvb6GN9ANKacBIpbyk4ejbUjHhnDOeTahcjhZQEiaTEEiaMKbtDWz930ojHA7U%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></figure><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">一个特别值得关注的现象是LLM-VA的</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">自适应性</span></strong><span leaf="">：对于越狱风险高的模型（如Mistral-v0.3-7B，初始ASR高达81%），它会优先压制越狱；对于本来就过于保守的模型（如Llama-3.1-8B，初始ORR高达53%），它则优先缓解过度拒绝。这种自适应行为</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">完全来自向量对齐的内在机制</span></strong><span leaf="">，无需为每个模型手动调超参数。</span></p><h2 data-tool="mdnice编辑器" style="margin-top: 30px;margin-bottom: 15px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;display: block;"><span style="font-size: 22px;color: rgb(0, 0, 0);line-height: 1.5em;letter-spacing: 0em;text-align: left;font-weight: bold;display: block;"><span leaf="">小结</span></span></h2><p data-tool="mdnice编辑器" style="color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;text-indent: 0em;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;"><span leaf="">LLM-VA提供了一个清晰的诊断：安全对齐的两难困境，根源不在于对模型的控制力度不够，而在于控制的</span><strong style="color: rgb(0, 0, 0);font-weight: bold;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;margin-top: 0px;margin-bottom: 0px;margin-left: 0px;margin-right: 0px;padding-top: 0px;padding-bottom: 0px;padding-left: 0px;padding-right: 0px;border-top-style: none;border-bottom-style: none;border-left-style: none;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;"><span leaf="">方向错了</span></strong><span leaf="">。把“是否回答”和“是否安全”这两个本应深度耦合的决策对齐起来，才是正路。方法无需微调，无需改架构，只需要少量标注数据训练SVM，便可为不同家族、不同规模的模型一键提升安全性能。</span></p><blockquote style="margin-top: 20px;margin-bottom: 20px;margin-left: 0px;margin-right: 0px;padding-top: 10px;padding-bottom: 10px;padding-left: 20px;padding-right: 10px;border-top-style: none;border-bottom-style: none;border-left-style: solid;border-right-style: none;border-top-width: 3px;border-bottom-width: 3px;border-left-width: 3px;border-right-width: 3px;border-top-color: rgba(0, 0, 0, 0.4);border-bottom-color: rgba(0, 0, 0, 0.4);border-left-color: rgba(0, 0, 0, 0.4);border-right-color: rgba(0, 0, 0, 0.4);border-top-left-radius: 0px;border-top-right-radius: 0px;border-bottom-right-radius: 0px;border-bottom-left-radius: 0px;background-attachment: scroll;background-clip: border-box;background-color: rgba(0, 0, 0, 0.05);background-image: none;background-origin: padding-box;background-position-x: left;background-position-y: top;background-repeat: no-repeat;background-size: auto;width: auto;height: auto;box-shadow: rgba(0, 0, 0, 0) 0px 0px 0px 0px;display: block;overflow-x: auto;overflow-y: auto;"><p style="text-indent: 0em;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;font-weight: normal;margin-top: 0px;margin-right: 0px;margin-bottom: 0px;margin-left: 0px;"><span leaf="">论文：<a href="https://arxiv.org/abs/2601.19487" target="_blank">https://arxiv.org/abs/2601.19487</a></span></p><p style="text-indent: 0em;padding-top: 8px;padding-bottom: 8px;padding-left: 0px;padding-right: 0px;color: rgb(0, 0, 0);font-size: 16px;line-height: 1.8em;letter-spacing: 0em;text-align: left;font-weight: normal;margin-top: 0px;margin-right: 0px;margin-bottom: 0px;margin-left: 0px;"><span leaf="">代码与权重：<a href="https://hotbento.github.io/LLM-VA-Web/" target="_blank">https://hotbento.github.io/LLM-VA-Web/</a></span></p></blockquote></div><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=99253262&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501577%26idx%3D1%26sn%3Dfc8de3a1853111addb116513f148196b">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Wed, 15 Apr 2026 22:26:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-08 Exploit Programming</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501556&amp;idx=1&amp;sn=a32caba9286b7848e0516c0457b8b3a0</link>
      <description>安全人员的末日到了吗？</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-04-08 20:43</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=b571999e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolVetbbicIyeSicRqticUY1TxeulbickiabQlYbibeuIak0XFDoDptoa4HQFZ3z8ssXRnmexCmTvFj4ia5fJVyHiazpBHbABbVZfAWuVCCI%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>安全人员的末日到了吗？</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">今天大家都被 </span><s style="box-sizing: border-box;"><span leaf="">交通大学130周年校庆</span></s><span leaf=""> Anthropic的Claude Mythos模型刷榜了吧？对于2000后安全研究人员来说打击可能蛮大的，但是我们80后（包括部分90后）根本不在乎，因为我们是刘欢老师熏陶下成长起来的一代人！</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: center;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017900" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8a94efd0&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolW61VyD2wILAYErx6jSIpIk4fuRdffHxkKALVich3VmlluAAGQFbIBz2XlsBJic1TtjdiaklO7eib9Y4AMP3ClFGCCql1FuIkZ5Z4E%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">嗯，人生其实没有什么再来的机会了，都是给AI做bootloader，不过我们今天想讨论的是一篇2011年的文章</span><em style="box-sizing: border-box;"><span leaf="">Exploit Programming</span></em><span leaf="">，在这篇文章中，作者讨论了一个叫做weird machine的概念，并把它和计算机安全联系在一起。如果你读了这篇文章，你就不会对Claude Mythos在安全上有如此突出的表现感到惊奇：</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017897" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=fd533c91&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXCcXav6pq6fanSw4ZVorbA6vX5OGTlL8ZfaicZdyDAFcxwBmnVOq4vo7MLxpOSlm15UBbDtfJ0dfeRicFvC2wKXiaKF1MONoB1jI%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">（</span><em style="box-sizing: border-box;"><span leaf="">可能大家也注意到了这篇文章还纪念了其中的一位作者Len Sassaman，他是一位英年早逝的黑客，在2011年受抑郁症困扰而离世，而许多人甚至认为他就是中本聪</span></em><span leaf="">）</span></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">从事安全研究的人群往往有个不太好的自恋情结，就是认为开发exploit是一种更加高级的技巧，毕竟它是像高德纳在图灵奖获奖感言里面提到的“在针尖上跳舞”一样的编程。而在</span><em style="box-sizing: border-box;"><span leaf="">Exploit Programming</span></em><span leaf="">这篇文章中，作者认为，完全无需神话exploit开发，只需要理解漏洞利用的实质。作者首先从Aleph One经典的 </span><em style="box-sizing: border-box;"><span leaf="">“Smashing the Stack for Fun and Profit</span></em><span leaf=""> 开始回顾，继而提到了return oriented programming：作者把这种行为叫做“borrowed code”，听上去很形象对不对（只借不还~）</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而正是从这种向系统“借”代码来执行的思路开始，我们正式进入到了weird machine的范畴：对于正常的程序来说，代码执行是CPU的“取指-译码-执行”循环，而ROP其实无非也就是另一种CPU而已，只不过是用了一些已有的code snippet来做虚拟的指令，这个就是很经典的虚拟机解释器对不对~</span></p><p data-startline="19" data-endline="19" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">更加深入一点，我们还能想起来Stephen Dolan的论文：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://drwho.virtadpt.net/files/mov.pdf" target="_blank">https://drwho.virtadpt.net/files/mov.pdf</a></span></p></blockquote><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017898" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2931fde2&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolU2d6WxibPEUcnGUQJWicuFZtQic53ic9mICfxmWlo27Igy3ZYD6bzmfG42D58DTnfPcen9LwO5pTzf09ibm8cQjZzxvqHHl1pw52Kw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">实际上还有人实现了一个只有MOV指令的CPU（很应该申请个发明专利）：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://justanotherelectronicsblog.com/?p=771" target="_blank">https://justanotherelectronicsblog.com/?p=771</a></span></p></blockquote><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017899" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=eac8de89&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUpPNG6DGppSyNGhlG8Kibuy5ZQRRNcUu4AwbjfuLm7ZKELIaXwIrnJhfe6ibbvZ81YuSWrDkciaj89guMsdFyeHj6pcYeMFoWrkM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">好了，到目前为止，我们知道，除了正常的CPU指令，也可以用很多其他的方式来充当所谓的weird instruction，然后再把这些weird instruction拼接起来就可以实现很复杂的功能了！毕竟只要是图灵完备的计算系统都是等价的对不对~</span></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">历史进展到了2009年，在计算机研究的重镇Dartmouth，我们今天推荐的文章的第一作者Sergey Bratus在一次演讲中正式提到了weird machine的概念，并且认为hacker和码农一样都是代码的小商品生产者，并没有什么区别（当然<span textstyle="" style="font-weight: bold;">也是这些小手工业者共同催生了代码资本主义也就是AI coding</span>）</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://www.cs.dartmouth.edu/~sergey/hc/rss-hacker-research.pdf" target="_blank">https://www.cs.dartmouth.edu/~sergey/hc/rss-hacker-research.pdf</a></span></p></blockquote><p data-startline="37" data-endline="37" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017896" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=7c9f1ed3&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVBFsicHRoVgvia3HG5X6vQ9NEaAAuPAicYvEoN7pgjZpKTTbjPqibUstPIQKSJN4TzUvvsom7kdnGsy0QiaXhqicxobflOTWkCUZMGg%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">到了2011年，zynamics的创始人Thomas Dullien（a.k.a Halvar Flake）做了一个非常</span><s style="box-sizing: border-box;"><span leaf="">烂</span></s><span leaf="">懒的slides，讲了exploitation开发里面的各种思考：</span></p><p data-startline="41" data-endline="41" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017902" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=4566aa5e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUIXxODia3BdTlZFdLVBxb1U94hAtW00uy6ibHiaMnb38bWCQIo8KOVr32lgJSfCHibm3HjEia7234uNVAxw4Oicg3EU27pSlbcOUN1M%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017903" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8f83a51e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXB6Qu87DyPiaic30tQWZ6E8RhH6Wwt7A4YBYCic71iaicfvsNCxWh5OyOoKjdvxTC6TOr1kR29ml8o8oO7Q7Jc0BVI3muic2ePu9n7E%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">当时Thomas Dullien还列了这么个例子，说静态分析没法很好找到bug，你知道问题在哪吗？（快使用Claude，呵呵哈希）</span></p><p data-startline="47" data-endline="47" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017904" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=71e50b21&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolW8nfibM2HKTMhrAx72jLicrYWlvy8JCKqkSQppmXkqtg9eGkKk9BS2ibI8B0FqAicyZFjibsu664CwcFYRHe3sD7NU683DY7ujJICc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="49" data-endline="49" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">基于上面这个例子，在</span><em style="box-sizing: border-box;"><span leaf="">Exploit Programming</span></em><span leaf="">文章中，作者认为：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">The “weird machine,” then, is simply a concise description of the transition-based computational structures in this exploded space</span></p></blockquote><p data-startline="53" data-endline="53" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这里面隐藏了一个很有意思的讨论：weird machine背后影射的是程序的状态转移的巨大空间，足够exploit去实施各种行为，我们也许并不应该惊讶于AI能够很好地写出exploit，而是应该去思考另一个问题：完全探索复杂的状态转移是否可行？如果不行，那么我们真的觉得AI就能找到所有漏洞吗？（当然，只要能把现在的安全研究人员斩杀了就行，而且历史是这样教育我们的：“</span><em style="box-sizing: border-box;"><span leaf="">小生产者在自由竞争中必然要发生两级分化。因为商品是按照它的价值量田生产商品的社会必要劳动时间来进行交换的，在这个价值规律的作用下，大多数小生产者由于生产规模较小，技术落后，生产商品的劳动时间往往超过社会必要动劳时间，因而在竞争中就逐步陷于贫困破产，失去生产资料,变为无产者;而少数生产规模较大、生产条件较好、技术比较先进的生产者，生产商品的劳动时间少于社会必要劳动时间，因而在竞争中就居于有利地位，逐渐排挤、吞并其它小生产者，占有越来越多的生产资料，成为资本家。</span></em><span leaf="">”）</span></p><p data-startline="55" data-endline="55" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">既然提到了weird machine，那就不得不提到一代神作Baba is You了（居然有在线版了 <a href="https://kbhgames.com/game/baba-is-you" target="_blank">https://kbhgames.com/game/baba-is-you</a> ！！！）：</span></p><p data-startline="57" data-endline="57" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017901" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=36cfc556&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWicPR1mUTZa0jnE8wVo4nxPwEsysib4j14nYdSoCS9vhz02hrpXHxn4gWFaV3urHdIO4QLZH02PCNbDwMDE1bXVqbicRtTjOn5A8%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">原文：<a href="https://langsec.org/papers/Bratus.pdf" target="_blank">https://langsec.org/papers/Bratus.pdf</a></span><br style="box-sizing: border-box;"/><span leaf="">资料汇集：<a href="https://www.cs.dartmouth.edu/~sergey/wm/" target="_blank">https://www.cs.dartmouth.edu/~sergey/wm/</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="https://www.cs.dartmouth.edu/~sergey/wm/">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=03dfe717&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501556%26idx%3D1%26sn%3Da32caba9286b7848e0516c0457b8b3a0">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Wed, 08 Apr 2026 20:43:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-04-02 Thought is All You Need</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501543&amp;idx=1&amp;sn=0b80a708dd73926a889ca1c68b083b83</link>
      <description>BlockSec 与浙江大学联合完成的研究论文 《Thought is All You Need: Smar</description>
      <content:encoded><![CDATA[<p><span>BlockSec</span> <span>2026-04-02 20:20</span> <span style="display: inline-block;">上海</span></p>




  <p>以下文章来源于：BlockSec</p>
  <strong>BlockSec</strong>
  <p>BlockSec聚焦智能合约全生命周期安全，提供安全区块链基础设施。核心成员毕业于海内外知名高校，兼具学术界前沿研究背景和头部安全公司产业化经验，先后获得头部美元基金和区块链知名基金的数轮投资。</p>



  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=d4c6e61b&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2F2ibKZs4Hxyqtzxm5n3gFH9OSVWbicpNAeicpic0qyzhQ6Lfpts3P7GzqQjLOicpqPDVMW4rUegHsa8wpxMg4WXrGQPdGk6ZqU9k6OHm9nwdMrdXw%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>BlockSec 与浙江大学联合完成的研究论文 《Thought is All You Need: Smar</p>
  <div data-pm-slice="0 0 []" style="margin-bottom: 24px;"><div data-pm-slice="0 0 []"><div data-pm-slice="0 0 []"><div><div style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;padding: 0px 4px;color: rgb(63, 63, 63);box-sizing: border-box;font-style: normal;font-weight: 400;text-align: justify;" data-pm-slice="0 0 []"><div style="box-sizing: border-box;"><div style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;padding: 0px 4px;color: rgb(63, 63, 63);box-sizing: border-box;font-style: normal;font-weight: 400;text-align: justify;" data-pm-slice="0 0 []"><div style="text-align: center;margin: -15px 0px 10px;line-height: 0;box-sizing: border-box;"><p style="max-width: 100%;vertical-align: middle;display: inline-block;line-height: 0;box-sizing: border-box;margin-bottom: 16px;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.3109375" data-s="300,640" data-type="gif" data-w="640" style="vertical-align: middle;max-width: 100%;width: 100%;box-sizing: border-box;" data-imgfileid="100008002" src="https://wechat2rss.xlab.app/img-proxy/?k=79328a51&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_gif%2F2ibKZs4Hxyqsw9TNE6dA58o4kxGOwKgvH6KJiccfwbektvvCPmyl3Wb9E81EOtiaZU9mMUp9HIED13BGyluv3qicuYs09oia48xAgW2mM9ux0nl0%2F640%3Fwx_fmt%3Dgif%26from%3Dappmsg"/></p></div><div style="box-sizing: border-box;"><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">BlockSec 与浙江大学联合完成的研究论文 </span><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);box-sizing: border-box;"><span leaf="">《Tho</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">ught i</span><span leaf="">s All You Need: Smart Contract Vulnerability Detection with Thought-Augmented Large Language Model》</span></span></strong><span leaf=""> 已被软件工程顶级会议 FSE 2026 收录。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">这不仅代表我们的研究成果获得了顶级会议的认可，也说明 BlockSec 长期积累的审计经验，可以被整理成一套系统，在真实场景中跑出可验证、可复现的结果。</span></p><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-weight: bold;">FSE（ACM International Conference on the Foundations of Software Engineering）</span>是软件工程领域的顶级会议之一，本届会议将于 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;color: rgb(63, 63, 63);font-style: normal;font-weight: 400;text-align: justify;box-sizing: border-box;"><span textstyle="" style="color: rgb(183, 103, 58);font-weight: bold;">2026 年 7 月 5 日至 9 日</span></span><span leaf=""> 在加拿大蒙特利尔举行。</span></p></div><div style="margin: 24px 0px;box-sizing: border-box;"><div style="text-align: center;font-size: 20px;color: rgb(183, 103, 58);letter-spacing: 0.544px;padding: 0px;box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span style="background-color: rgb(254, 255, 255);box-sizing: border-box;"><span leaf="">现有 AI 审计卡在哪里</span></span></strong></p></div></div><div style="box-sizing: border-box;"><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">先看一组论文中引用的已有研究数据，当前 AI 审计大致处于以下水平：</span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">GPT-4</span><span leaf=""> 和 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Claude-1.3</span><span leaf=""> 做漏洞检测时，误报率曾高达 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">95%</span><span leaf="">。也就是说，报出 100 个&#34;漏洞&#34;，95 个是假的。</span></p></li><li><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">GPTScan</span><span leaf=""> 把 GPT 与静态分析结合，在大规模项目中的检测准确率约 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">57%</span><span leaf="">。</span></p></li><li><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">一些号称用上了&#34;漏洞知识库&#34;的 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">RAG 方法</span><span leaf="">，即便只做漏洞类型识别这种相对简单的任务，准确率也只有约 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">30%</span><span leaf="">。</span></p></li><li><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">直接使用 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">GPT-4o、o3-mini、C</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">laud</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">e</span><span leaf=""> 等最新模型做零样本检测，F1 分数仅在 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">0.241 至 0.311</span><span leaf=""> 之间。</span></p></li></ul><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">这些结果放在一起，已经可以看出目前AI审计的主要问题。</span><span leaf="">大模型当然有价值，但很多方案的做法仍然停留在同一个层面：把整份合约放进上下文里，让模型自行判断哪里可能有问题。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">但真实审计并不是这样开展的。经验丰富的研究员通常不会平均扫描所有代码，而是会先判断哪些位置值得重点分析，再围绕关键函数、状态变量和业务流程向下展开。</span><span leaf="">过去的 AI 审计，真正缺少的就是这套工作方式。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">围绕这个问题，论文提出了 Synapse。<span textstyle="" style="font-weight: bold;">它是一套面向智能合约漏洞检测的系统，目标是把安全研究员在真实审计中的关键步骤拆出来，交给系统分阶段完成。</span>简单来说，Synapse 想让 AI 更接近安全研究真正的工作流程，而不只是再试一次让大模型读代码。</span></p><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">这也是 Synapse 试图解决的问题。在同样的测试条件下，Synapse 的 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率） </span><span leaf="">达到 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">71.9%</span><span leaf=""> 和 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">76.5%</span><span leaf="">，约为已有 LLM 路线的 3 倍。进一步放到 BSC 链上的真实合约中测试，Synapse 发现了 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">117 个未知漏洞</span><span leaf="">，而对照的 baseline 工具只识别出其中 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">8</span><span leaf=""> 个。其中一个关键漏洞，涉及约 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">3000 万美元</span><span leaf="">的潜在资产损失。</span></p></div><div style="margin: 24px 0px;box-sizing: border-box;"><div style="text-align: center;font-size: 20px;color: rgb(183, 103, 58);letter-spacing: 0.544px;padding: 0px;box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><strong style="letter-spacing: 0.544px;box-sizing: border-box;"><span style="background-color: rgb(254, 255, 255);box-sizing: border-box;"><span leaf="">把真实的工作方式拆解成流程</span></span></strong></p></div></div><div style="box-sizing: border-box;"><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 的核心，是尽可能的把安全研究员在真实审计中的工作方式，拆解成一套系统能够执行的流程。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);box-sizing: border-box;"><span leaf="">一、把真正值得看的地方找出来</span></span></strong></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">真实的智能合约动辄几千行代码，但针对特定漏洞，真正需要看的可能只有几十行。Synapse 引入 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Focal Context（焦点上下文）</span><span leaf="">，先定位高风险区域，再让模型集中分析。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">这与真实审计的阅读方式是一致的。研究员分析代码时，通常会先关注关键函数、状态变量和核心业务逻辑。Synapse 只是把这一步前置了。实验结果显示，一旦去掉这个组件，</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率）</span><span leaf="">就会从 72.5% 下降到 52.8%。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);box-sizing: border-box;"><span leaf="">二、把审计经验转成可复用的判断框架</span></span></strong></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 从 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">14,000+ 份真实审计报告中提炼出漏洞推理模板</span><span leaf="">，形成 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Thought Buffer（思维缓冲区）</span><span leaf="">。</span><span leaf="">它是一套结构化知识：遇到这种代码模式时，应该从哪几个角度分析风险。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">例如面对一个提币函数，系统不会只做泛化阅读，而是会更有针对性地检查权限控制是否充分、重入保护是否完备、余额计算是否存在风险。</span><span leaf="">这个过程依赖的是长期审计经验的沉淀，远超一次性的 prompt 技巧。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">这一部分拿掉以后，</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率）</span><span leaf="">会从 72.5% 下降到 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">46.2%</span><span leaf="">，影响非常明显。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);box-sizing: border-box;"><span leaf="">三、通过分工协作把结论做实</span></span></strong></p><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 设计了 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Developer（开发者）、Researcher（研究者）、Auditor（审计员）、Verifier （验证员）</span><span leaf="">等多个角色，配合语义搜索、代码分析等工具完成检测。</span></p></div><div style="text-align: center;margin: 24px 0px;line-height: 0;box-sizing: border-box;"><p style="max-width: 100%;vertical-align: middle;display: inline-block;line-height: 0;box-sizing: border-box;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.39351851851851855" data-s="300,640" data-type="png" data-w="1080" style="vertical-align:middle;max-width:100%;width:562px;box-sizing:border-box;height:221px;" data-croporisrc="https://mmbiz.qpic.cn/mmbiz_png/2ibKZs4HxyqvS2JhDlLnEHdU1KmjK43XOZ1ibSomPraOze0rBsgFAAib5nLvvRMByfqm7WAvG173wYPHBeYvf9ica3CNKDGOCVxXws4THPJBA6M/640?wx_fmt=png&amp;from=appmsg" data-cropx2="1080" data-cropy1="53.80782918149466" data-cropy2="478.5053380782918" data-imgfileid="100008000" src="https://wechat2rss.xlab.app/img-proxy/?k=532ba4ec&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2F2ibKZs4Hxyqv4ZFLAwfiavKhIEdbvjOYLZFicdOed6qsmKYqg2PdDxQeib7PXiaic8ag1dcCMXrUAowqOJXa4T0I4dEyEusxnhtcw6rFtMBtQUQEQ%2F640%3Fwx_fmt%3Djpeg"/></p></div><div style="text-align: center;font-size: 12px;color: rgba(0, 0, 0, 0.5);box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 工作流</span></p></div><div style="margin: 24px 0px 0px;box-sizing: border-box;"><div style="box-sizing: border-box;"><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">这里真正重要的是分工本身。理解代码、提出漏洞假设、交叉复核、确认结论，在真实审计里本来就是不同性质的工作。很多时候，难点并不在于发现线索，而在于确认这条线索是否成立。Verifier 角色的价值就在这里。</span></p><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">如果拿掉语义工具这一层，</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率）</span><span leaf="">会下降到 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">43.6%</span><span leaf="">。这也说明，Synapse 的提升来自几个关键部分共同作用。</span></p></div></div><div style="margin: 24px 0px 0px;box-sizing: border-box;"><div style="color: rgb(183, 103, 58);box-sizing: border-box;"><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span leaf="">基准测试</span></strong></p></div></div><div style="text-align: center;margin-top: 10px;margin-bottom: 10px;line-height: 0;box-sizing: border-box;"><p style="max-width: 100%;vertical-align: middle;display: inline-block;line-height: 0;box-sizing: border-box;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.3175925925925926" data-s="300,640" data-type="png" data-w="1080" style="vertical-align: middle;max-width: 100%;width: 100%;box-sizing: border-box;" data-imgfileid="100008001" src="https://wechat2rss.xlab.app/img-proxy/?k=0f831545&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2F2ibKZs4HxyquqaZsHZ2BG7ECllyyQMnn1cibDhVvq1qqat4aPZAuaOiahibyKP9R1PJ57Tq6DThUPtQbCOtz01giaUsMyCFDvaoaiabw3I2j9qmyI%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p></div><div style="text-align: center;font-size: 12px;color: rgba(0, 0, 0, 0.5);box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 与现有工具主结果对比</span></p></div><div style="margin: 24px 0px;box-sizing: border-box;"><div style="box-sizing: border-box;"><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">在两个真实世界数据集上：</span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Incidents 数据集</span><span leaf="">：Synapse </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率）71.9%</span><span leaf="">，F1 73.1%；GPTScan 仅 10.8%</span></p></li><li><p style="white-space: normal;margin: 0px 0px 16px;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">DeFiHacks 数据集</span><span leaf="">：Synapse </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">recall（真实漏洞找回率）76.5%</span><span leaf="">，F1 63.4%</span></p></li></ul></div></div><div style="box-sizing: border-box;"><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">与传统静态分析（Slither）、模糊测试工具（ItyFuzz）相比，平均也有大约 2 倍的提升。</span></p><p style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;color: rgb(63, 63, 63);font-style: normal;font-weight: 400;text-align: justify;margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">消融实验</span></p><p style="text-align: center;margin-bottom: 16px;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.2967032967032967" data-s="300,640" data-type="png" data-w="546" style="width: 413px;height: 117px;" data-croporisrc="https://mmbiz.qpic.cn/mmbiz_png/2ibKZs4Hxyqtdx6icecgupt0d2uLYBVwZiaasWDK51ViakBzttsmzTfZZDR5s7soC2eaO6CB1vSr6wIEnISxzsE9KetOMAdbA1GUvM0qoWOR2bY/0?wx_fmt=png&amp;from=appmsg" data-cropselx2="413" data-cropsely2="118" data-imgfileid="100008009" src="https://wechat2rss.xlab.app/img-proxy/?k=8e46e77e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2F2ibKZs4Hxyqtdx6icecgupt0d2uLYBVwZiaasWDK51ViakBzttsmzTfZZDR5s7soC2eaO6CB1vSr6wIEnISxzsE9KetOMAdbA1GUvM0qoWOR2bY%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><div style="box-sizing: border-box;" data-pm-slice="0 0 []"><div style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;padding: 0px 4px;color: rgb(63, 63, 63);box-sizing: border-box;font-style: normal;font-weight: 400;text-align: justify;" data-pm-slice="0 0 []"><div style="text-align: center;font-size: 12px;color: rgba(0, 0, 0, 0.5);box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">关键组件消融实验（采用当时最新模型）</span></p></div></div></div><p style="margin-top: 24px;margin-bottom: 24px;" data-pm-slice="0 0 []"><span lang="EN-US" style="color: rgb(51, 51, 51);"><span leaf="">消融实验最能说明问题。直接使用 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">GPT-4o、o3-mini</span><span leaf=""> 或 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Claude</span><span leaf=""> 做零样本检测，F1 基本都在 0.3 左右；加入 Synapse 的完整流程后，系统 F1 提升到 </span><b style=""><span leaf="">0.723</span></b><span leaf="">。</span></span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);box-sizing: border-box;"><span leaf="">链</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">上实测</span></span></strong></p><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">2025 年 2 到 3 月，我们在 BSC 链上测试 Synapse：</span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">发现 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">117 个此前未被发现的漏洞</span><span leaf="">，全部为 High 级别。</span></p></li><li><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">对照组 baseline 工具仅识别出其中 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">8 个</span><span leaf="">。</span></p></li><li><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">其中一个关键漏洞涉及 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">约 3000 万美元</span><span leaf=""> 的潜在资产损失。</span></p></li></ul></div><div style="text-align: center;margin: 24px 0px 10px;line-height: 0;box-sizing: border-box;"><p style="max-width: 100%;vertical-align: middle;display: inline-block;line-height: 0;box-sizing: border-box;" nodeleaf=""><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.4018218623481781" data-s="300,640" data-type="png" data-w="988" style="vertical-align:middle;max-width:100%;width:562px;box-sizing:border-box;height:226px;" data-croporisrc="https://mmbiz.qpic.cn/mmbiz_png/2ibKZs4HxyquueBUPmrXK3mAic3m1Eic8dt3E2jz5aTtkJiaEzNB7JjsoptXPYSlFuCFDWYNwXJagMEpokd9UrTdcmnx88dmNRjaN4wkhnr8KKk/640?wx_fmt=png&amp;from=appmsg" data-cropx2="987.9999999999999" data-cropy2="397.3096085409253" data-imgfileid="100007999" src="https://wechat2rss.xlab.app/img-proxy/?k=3879078e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2F2ibKZs4Hxyqv2aibLd5ia71ofoXpedmmqs2OiaJ5RskswjyvSzJxYCrw6nURoeTAkBsaY1rY2I6UjMTH1sAIaMuLsC4VkMbrKmnqeexoD1mKtIc%2F640%3Fwx_fmt%3Djpeg"/></p></div><div style="text-align: center;font-size: 12px;color: rgba(0, 0, 0, 0.5);box-sizing: border-box;"><p style="margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">BSC 真实链上检测结果</span></p></div><div style="max-width: 100%;box-sizing: border-box;"><div style="max-width: 100%;margin: 24px 0px;box-sizing: border-box;"><div style="-webkit-tap-highlight-color: transparent;margin: 0px;padding: 0px;outline: 0px;max-width: 100%;box-sizing: border-box;overflow-wrap: break-word;color: rgba(0, 0, 0, 0.9);font-size: 20px;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: 0.544px;orphans: 2;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;visibility: visible;"><p style="text-align: center;white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;line-height: 1.75em;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);background-color: rgb(254, 255, 255);box-sizing: border-box;"><span style="letter-spacing: 1px;box-sizing: border-box;"><span leaf="">这对 </span><span leaf="" style="font-style: normal;-webkit-tap-highlight-color: transparent;outline: 0px;max-width: 100%;overflow-wrap: break-word;font-size: 20px;font-variant-ligatures: normal;font-variant-caps: normal;orphans: 2;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;visibility: visible;text-align: center;line-height: 1.75em;font-weight: bold;color: rgb(183, 103, 58);background-color: rgb(254, 255, 255);letter-spacing: 1px;box-sizing: border-box;">BlockSec</span><span leaf=""> 意味着什么</span></span></span></strong></p></div></div><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">Synapse 的</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Thought Buffer（思维缓冲区）</span><span leaf="">来自 14,000 多份真实审计报告的蒸馏，</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Focal Context（焦点上下文）</span><span leaf=""> 的设计依赖对合约安全分析流程的深入理解，多角色架构的划分映射的也是我们在真实审计工作中的方法拆解。这些都不是纯粹的学术构造，而是我们长期积累的安全经验和工具链能力在研究层面的系统化表达。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">换个角度说，这篇论文也证明了一件事：来自产业一线的安全理解，可以被组织成经得起顶级学术会议评审的方法论。模型 API 谁都能调，但把真实世界的审计经验转化成结构化、可验证、可复现的系统，门槛要高得多。</span></p><p style="white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;"><span leaf="">这也是我们一直在做的事情。从安全审计服务，到 Phalcon 等安全产品，再到这类研究工作，底层逻辑其实是一致的：把对真实攻击面和风险路径的理解，转化成可复用、可验证、可落地的能力。</span><span leaf=""><span textstyle="" style="font-weight: bold;">围绕 Synapse 形成的检测思路、工具能力和工作流设计，已经纳入 BlockSec 的整体审计流，用来提升真实项目中的审计覆盖、问题筛查效率和复杂逻辑漏洞的发现能力。</span></span></p></div><div style="max-width: 100%;box-sizing: border-box;"><div style="max-width: 100%;margin: 24px 0px;box-sizing: border-box;"><div style="-webkit-tap-highlight-color: transparent;margin: 0px;padding: 0px;outline: 0px;max-width: 100%;box-sizing: border-box;overflow-wrap: break-word;color: rgba(0, 0, 0, 0.9);font-size: 20px;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: 0.544px;orphans: 2;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;visibility: visible;"><p style="text-align: center;white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;line-height: 1.75em;"><strong style="box-sizing: border-box;"><span style="color: rgb(183, 103, 58);background-color: rgb(254, 255, 255);box-sizing: border-box;"><span style="letter-spacing: 1px;box-sizing: border-box;"><span leaf="">人仍然不可替代</span></span></span></strong></p></div></div></div><div style="box-sizing: border-box;"><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">71.9% 的 <span textstyle="" style="color: rgb(183, 103, 58);font-weight: bold;">recall（真实漏洞找回率）</span>和 117 个真实漏洞是很强的结果，但在安全领域，71.9%还远远谈不上万无一失，安全需要的是100%，只要误判一次、漏判一次，代价都可能非常高。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">LLM 仍然存在 hallucination 问题，在事实一致性和推理忠实性上有天然风险。Synapse 更擅长的是依赖语义理解的复杂逻辑漏洞，并不能替代传统工具处理所有 machine-auditable bugs。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">真实的安全审计远不止模式识别。理解协议设计中的隐含假设，判断攻击者最可能走哪条路径，在不完整信息下排列风险优先级，在多个看起来都有问题的发现中决定哪些值得上报。这些判断，今天仍然只能由人来完成。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="">我们认为AI审计的方向</span><span leaf="">是 </span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">hum</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">an-in-the</span><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">-loop</span><span leaf="">：AI 负责更广的覆盖面、更快的初筛和更低的边际成本；人负责最终的判断、复核与决策。Synapse 把 AI 能做到的事情往前推了一大步，也让我们在 AI 安全审计这条路上的方法论轮廓变得更清晰。这套能力的价值，也在我们与客户的长期合作中得到验证。</span></p><p style="font-style: normal;font-weight: 400;-webkit-tap-highlight-color: transparent;outline: 0px;max-width: 100%;overflow-wrap: break-word;color: rgba(0, 0, 0, 0.9);font-size: 20px;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: 0.544px;orphans: 2;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;visibility: visible;text-align: center;white-space: normal;margin: 0px 0px 24px;padding: 0px;box-sizing: border-box;line-height: 1.75em;"><span leaf="" style="font-style: normal;-webkit-tap-highlight-color: transparent;outline: 0px;max-width: 100%;overflow-wrap: break-word;font-size: 20px;font-variant-ligatures: normal;font-variant-caps: normal;orphans: 2;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;visibility: visible;text-align: center;line-height: 1.75em;font-weight: bold;color: rgb(183, 103, 58);background-color: rgb(254, 255, 255);letter-spacing: 1px;box-sizing: border-box;">BlockSec 审计客户反馈</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">Manta：</span><span leaf="">BlockSec 的监控体系覆盖链上合约监控、Token 余额变化、关键事件触发等常见风险点，也支持异常触发后自动执行预设动作。Manta 的 CeDeFi 产品和 Sequencer 均已接入这套监控体系。在生态项目遭遇攻击时，BlockSec 能够第一时间捕捉异常交易，协助快速冻结相关黑客地址。Manta 也提到，BlockSec 的审计能够深入到合约实现细节和具体业务逻辑，问题定位和修改建议都比较清晰、可执行。</span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span lang="EN-US" style="font-size:11.5pt;mso-bidi-font-size:
11.0pt;line-height:115%;font-family:&#34;PingFang SC&#34;,serif;mso-fareast-font-family:
&#34;PingFang SC&#34;;mso-bidi-font-family:&#34;Times New Roman&#34;;mso-bidi-theme-font:minor-bidi;color:#333333;mso-ansi-language:EN-US;mso-fareast-language:EN-US;mso-bidi-language:
AR-SA;" data-pm-slice="0 0 []"><span leaf="" style="font-size: 15px;letter-spacing: 1px;line-height: 1.85;font-style: normal;text-align: justify;font-weight: bold;color: rgb(183, 103, 58);box-sizing: border-box;">DeltaPrime：</span><span leaf="">协议在 2022 到 2024 年间已经做过 9 次审计，但在 2024 年底仍然连续遭遇攻击。此后，团队与 BlockSec 启动了一次持续数月的深度审计，最终识别出 39 个潜在安全问题，并收到 32 条代码修改建议。这一次审计带来的发现数量，已经接近此前 9 次审计结果的总和。</span></span></p><p style="margin: 0px 0px 24px;white-space: normal;padding: 0px;box-sizing: border-box;"><span lang="EN-US" style="font-size:11.5pt;mso-bidi-font-size:
11.0pt;line-height:115%;font-family:&#34;PingFang SC&#34;,serif;mso-fareast-font-family:
&#34;PingFang SC&#34;;mso-bidi-font-family:&#34;Times New Roman&#34;;mso-bidi-theme-font:minor-bidi;color:#333333;mso-ansi-language:EN-US;mso-fareast-language:EN-US;mso-bidi-language:
AR-SA;" data-pm-slice="0 0 []"><span leaf="">如果您正在寻找更专业的智能合约审计与安全防护支持，欢迎点击<span textstyle="" style="color: rgb(183, 103, 58);font-weight: bold;">【阅读原文】</span>，进一步了解 BlockSec 的审计服务与安全产品能力。</span></span></p><p style="margin: 0px 0px 16px;white-space: normal;padding: 0px;box-sizing: border-box;"><strong style="box-sizing: border-box;"><span leaf="">论文作者：</span></strong></p><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-size: 14px;">彭超源 (浙江大学)</span></span></p><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-size: 14px;">姜木慧 (BlockSec)</span></span></p><p style="margin: 0px 0px 8px;white-space: normal;padding: 0px;box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-size: 14px;">周亚金 (BlockSec)</span></span></p><p style="white-space: normal;margin: 0px 0px 8px;padding: 0px;box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-size: 14px;">吴磊 (浙江大学 &amp; BlockSec)</span></span></p></div></div></div></div></div></div></div></div><hr style="border-style: solid;border-width: 1px 0 0;border-color: rgba(0,0,0,0.1);-webkit-transform-origin: 0 0;-webkit-transform: scale(1, 0.5);transform-origin: 0 0;transform: scale(1, 0.5);"/><div data-pm-slice="0 0 []" style="margin-bottom: 24px;"><div><div style="font-size: 15px;color: rgb(63, 63, 63);letter-spacing: 1px;line-height: 1.75;box-sizing: border-box;font-style: normal;font-weight: 400;text-align: justify;" data-pm-slice="0 0 []"><div style="max-width: 100%;box-sizing: border-box;"><div style="margin: 24px 8px;line-height: 1.75em;max-width: 100%;box-sizing: border-box;"><p style="white-space: normal;margin: 0px 0px 24px;padding: 0px;box-sizing: border-box;line-height: 2em;"><span style="color: rgba(0, 0, 0, 0.9);font-size: 17px;font-family: mp-quote, &#34;PingFang SC&#34;, system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;letter-spacing: 0.034em;box-sizing: border-box;"><span style="font-size: 15px;letter-spacing: 1px;color: rgb(183, 103, 58);font-weight: bold;box-sizing: border-box;"><span leaf="">关于Bloc</span></span></span><span style="color: rgba(0, 0, 0, 0.9);font-size: 17px;font-family: mp-quote, &#34;PingFang SC&#34;, system-ui, -apple-system, BlinkMacSystemFont, &#34;Helvetica Neue&#34;, &#34;Hiragino Sans GB&#34;, &#34;Microsoft YaHei UI&#34;, &#34;Microsoft YaHei&#34;, Arial, sans-serif;letter-spacing: 0.034em;box-sizing: border-box;"><span style="font-size: 15px;letter-spacing: 1px;color: rgb(183, 103, 58);font-weight: bold;box-sizing: border-box;"><span leaf="">kSec</span></span></span></p></div></div><div style="max-width: 100%;box-sizing: border-box;"><div style="visibility: visible;margin: 24px 8px;max-width: 100%;box-sizing: border-box;"><p style="margin-bottom: 16px;line-height: 1.75em;"><span leaf="" style="color: rgb(136, 136, 136);font-size: 13px;letter-spacing: 1px;font-style: normal;font-weight: 400;">BlockSec 是全球领先的区块链安全和合规公司，于 2021 年由多位业内知名专家联合创立。BlockSec 致力于提升 Web3 世界的安全性和易用性，提供一站式安全服务，包括智能合约/链/钱包安全审计服务、协议安全和数字货币合规(AML/CFT)平台 Phalcon Security / Phalcon Compliance / Phalcon Network、资金追踪调查平台 MetaSleuth和区块链交易分析工具 Phalcon Explorer 等。</span></p><p style="margin-bottom: 16px;line-height: 1.75em;"><span leaf="" style="color: rgb(136, 136, 136);font-size: 13px;letter-spacing: 1px;font-style: normal;font-weight: 400;">目前，BlockSec 已服务全球逾 500 家客户，既涵盖 Web3 知名公司 Coinbase、Cobo、Uniswap、Compound、MetaMask、Bybit、Mantle、Puffer、FBTC、Manta、Merlin、PancakeSwap 等，也包括了权威监管机构及咨询机构，如联合国、SFC、PwC、FTI Consulting 等。</span></p><p style="line-height: 1.75em;"><span leaf="" style="color: rgb(136, 136, 136);font-size: 13px;letter-spacing: 1px;font-style: normal;font-weight: 400;">官网：<a href="https://blocksec.com/" target="_blank">https://blocksec.com/</a></span></p><p style="margin-bottom: 24px;line-height: 1.75em;"><span leaf="" style="color: rgb(136, 136, 136);font-size: 13px;letter-spacing: 1px;font-style: normal;font-weight: 400;">Twitter：<a href="https://twitter.com/BlockSecTeam" target="_blank">https://twitter.com/BlockSecTeam</a></span></p><p style="font-size: 15px;color: rgb(63, 63, 63);letter-spacing: 1px;font-style: normal;font-weight: 400;text-align: justify;visibility: visible;max-width: 100%;white-space: normal;margin: 0px 0px 24px;padding: 0px;box-sizing: border-box;line-height: 2em;"><span leaf="" style="font-size: 13px;color: rgb(136, 136, 136);box-sizing: border-box;"><span textstyle="" style="font-size: 15px;letter-spacing: 1px;background-color: rgb(255, 255, 255);color: rgb(183, 103, 58);font-weight: bold;font-style: normal;">推荐阅读</span></span><span style="font-size: 13px;color: rgb(136, 136, 136);box-sizing: border-box;"><span leaf=""><span textstyle="" style="font-size: 15px;letter-spacing: 1px;background-color: rgb(255, 255, 255);color: rgb(183, 103, 58);font-weight: 400;font-style: normal;">👇</span></span></span></p><p style="text-align: center;margin-top: 8px;margin-bottom: 8px;line-height: 2em;"><a href="https://mp.weixin.qq.com/s?__biz=MzkyMzI2NzIyMw==&amp;mid=2247490504&amp;idx=1&amp;sn=ed76941ba8ee144bdd12cb0ddb7df70c&amp;scene=21#wechat_redirect" imgurl="https://mmbiz.qpic.cn/mmbiz_jpg/icl4OTbk4icTJKnQAjhicg47N8sLY3SKzqlEcnuEf3pYzPTIqpar2ibkeSeCvjqQsKrLwZwWyTcAXIazKXLQIXEchQ/640?wx_fmt=jpeg&amp;from=appmsg" linktype="image" tab="innerlink" data-itemshowtype="0" target="_blank" data-linktype="1"><span class="js_jump_icon h5_image_link"><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.28359375" data-s="300,640" data-type="jpeg" data-w="1280" style="height: auto !important;" data-croporisrc="https://mmbiz.qpic.cn/mmbiz_jpg/icl4OTbk4icTJKnQAjhicg47N8sLY3SKzqlEcnuEf3pYzPTIqpar2ibkeSeCvjqQsKrLwZwWyTcAXIazKXLQIXEchQ/0?wx_fmt=jpeg&amp;from=appmsg" data-cropselx2="562" data-cropsely2="159" data-imgfileid="100006866" src="https://wechat2rss.xlab.app/img-proxy/?k=62f8d2c8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2Ficl4OTbk4icTJKnQAjhicg47N8sLY3SKzqlEcnuEf3pYzPTIqpar2ibkeSeCvjqQsKrLwZwWyTcAXIazKXLQIXEchQ%2F640%3Fwx_fmt%3Djpeg%26from%3Dappmsg"/></span></a></p><p style="text-align: center;margin-top: 0px;margin-bottom: 0px;line-height: 2em;"><a href="https://mp.weixin.qq.com/s?__biz=MzkyMzI2NzIyMw==&amp;mid=2247491200&amp;idx=1&amp;sn=f0a133511ca63c3deb086c51654e4157&amp;scene=21#wechat_redirect" imgurl="https://mmbiz.qpic.cn/mmbiz_jpg/icl4OTbk4icTIje0g9kj9ic4b9GEzwpo1TCWq94NdL91n7Yt1FYkWUmPEXrkGzHKNvuQbOlu36LFXShpNOTklWvKw/640?wx_fmt=jpeg&amp;from=appmsg" linktype="image" tab="innerlink" data-itemshowtype="0" target="_blank" data-linktype="1"><span class="js_jump_icon h5_image_link"><img data-aistatus="1" class="rich_pages wxw-img" data-ratio="0.28359375" data-s="300,640" data-type="jpeg" data-w="1280" style="height: auto !important;" data-croporisrc="https://mmbiz.qpic.cn/mmbiz_jpg/icl4OTbk4icTIje0g9kj9ic4b9GEzwpo1TCWq94NdL91n7Yt1FYkWUmPEXrkGzHKNvuQbOlu36LFXShpNOTklWvKw/0?wx_fmt=jpeg&amp;from=appmsg" data-cropselx2="562" data-cropsely2="159" data-imgfileid="100007627" src="https://wechat2rss.xlab.app/img-proxy/?k=bc93b090&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2Ficl4OTbk4icTIje0g9kj9ic4b9GEzwpo1TCWq94NdL91n7Yt1FYkWUmPEXrkGzHKNvuQbOlu36LFXShpNOTklWvKw%2F640%3Fwx_fmt%3Djpeg%26from%3Dappmsg"/></span></a></p><p style="font-size: 15px;color: rgb(63, 63, 63);letter-spacing: 1px;font-style: normal;font-weight: 400;text-align: justify;visibility: visible;max-width: 100%;white-space: normal;margin: 0px;padding: 0px;box-sizing: border-box;line-height: 2em;"><span style="font-size: 13px;color: rgb(136, 136, 136);box-sizing: border-box;"><span leaf=""><a class="wx_topic_link" topic-id="memd8eid-k7sa2r" style="color: #576B95 !important;" data-topic="1">#BlockSec</a> </span></span></p></div></div></div></div></div><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="https://blocksec.com/expert-contact">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=ef14f354&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501543%26idx%3D1%26sn%3D0b80a708dd73926a889ca1c68b083b83">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Thu, 02 Apr 2026 20:20:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 特别推荐 2026-03-31 QCP 2.0来了！</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501541&amp;idx=1&amp;sn=26b0b5a3a4960a4decdd5d82bf4d4443</link>
      <description>QCP 2.0，为SJTU 130周岁献礼~</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-03-31 20:21</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=499f5af6&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolXaBnMf5KPY6V4SYSEOt5traTvZtpyE3yXS90p1rZicriaEHfj8KbgcWt47yugboeUsibS6cBG9tYpmyOmm8UQ43VICedTWy7LNQg%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>QCP 2.0，为SJTU 130周岁献礼~</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">三月的最后一期公众号文章推送，我们给大家介绍来自SJTU（对，就是那个马上要130周岁生日的上海西南某高校）的一款黑科技工具（想多了，不是AI）。大家还记得去年的文章【<a class="normal_text_link" target="_blank" style="" href="https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247500510&amp;idx=1&amp;sn=1212c48cf1bbca155d6315e02691336f&amp;scene=21#wechat_redirect" textvalue="2025 Let’s GoSSIP 软件安全暑期学校预告第三弹——Qide" data-itemshowtype="0" linktype="text" data-linktype="2">2025 Let’s GoSSIP 软件安全暑期学校预告第三弹——Qide</a>】中介绍的<span textstyle="" style="font-weight: bold;">Qualified C Programming（QCP）</span>吗？</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017887" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=12488b4f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVGoo9KUp0icQCibGxRuJFwRxOiaeuR1NYyRQibogPHC2W4okpxqajons2uT0f6HIpjQGdMBLKf40MIPbKiaqMBNYae2Iwib0KBYRIk4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="border-style: solid;border-width: 1px 0 0;border-color: rgba(0,0,0,0.1);-webkit-transform-origin: 0 0;-webkit-transform: scale(1, 0.5);transform-origin: 0 0;transform: scale(1, 0.5);"/><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在暑期学校期间发布的QCP是一个萌新版本（1.0），大半年之后，当所有人都在讨论AI什么时候斩杀程序员的时候，QCP团队给大家带来了<span textstyle="" style="font-weight: bold;">全新升级版的QCP 2.0</span>，同时也带来了全新的</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">qua.codes网站</span></strong><span leaf="">：</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017888" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=4dcaa3bf&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXLEMvTKWjex6bFiczunvH2whV9MJvtNgc54XicA06wnpg0R7GbQZGTqSMdFYmnPk6jjMYvxyku5BUquwWdjibe1DCD31nhZ708gg%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">网站上除了能够导航到原来的在线IDE ( <a href="https://ide.qua.codes" target="_blank">https://ide.qua.codes</a> )，还提供了</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">全新的tutorials</span></strong><span leaf="">，以及github的开源代码下载链接！</span></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017889" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=dee639bd&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWvgrqicwe0eHARXiaMu0FGnqrCRich1gxad6WdicAedMjE5iblHIc89klokapRmyVUlJaMsDHnVoXheWXvhC7sGbYz2vzhicMuuyXSU%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而在这个AI降临派每天都在积极发帖的年代，QCP也迎合一下他们的需求，引入了AI协作能力！</span></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017886" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=dade6c4b&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXicltafE7bSpY8uYEX4vg7B2hlIUJELCf7bclKX0WhtcDRb5abfgXcfSSUypcrVdS3hnWzVnY8PjffqG3eib2kWB31UUerRd3xk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="22" data-endline="22" style="box-sizing: border-box;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后预告一下：QCP团队计划</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">在近期发布 QCP 2.0 的 Lean 版本套件</span></strong><span leaf="">，Lean 用户敬请期待！</span></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="https://www.qua.codes/">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=63957db5&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501541%26idx%3D1%26sn%3D26b0b5a3a4960a4decdd5d82bf4d4443">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Tue, 31 Mar 2026 20:21:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-03-26 先污染后治理</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501532&amp;idx=1&amp;sn=95dc19eddef4062a22d0db205b45d01c</link>
      <description>来，LLM也能缓存投毒</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-03-26 20:20</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=109d5b8c&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolWL2IMF4j7tWO4bb7xedw7X8z6mnOE9v9AmickIeJ6cVpiayGoemibZ7DNphD60Z6ia9CAzCpCO2I03Sl5j1Rtrur41lFOiaic4w5mVQ%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>来，LLM也能缓存投毒</p>
  <p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">前几年web安全研究方向有一个很有趣的议题是针对CDN的缓存投毒攻击，核心攻击思路在于</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">利用了CDN在服务不同用户的相似请求时可能会缓存并重用相关资源</span></strong><span leaf="">，从而造成（机密）信息泄露等危害。这几年随着LLM的飞速发展，攻击者很自然地就能把类似的攻击思路迁移过来，于是就有了我们今天要推荐的这篇NDSS 2026会议论文 </span><em style="box-sizing: border-box;"><span leaf="">When Cache Poisoning Meets LLM Systems: Semantic Cache Poisoning and Its Countermeasures </span></em><span leaf="">的相关研究内容：</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017876" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=3d2740b7&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUxOJ0nmlHa0JJmicoRkvLia7z1rO1o1PXc2qWib71IznqJpQUCsE7icXroejHibEldJlzT9XVC1Og9tAs3jk2pANnlOIyc6GibtrOd0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="13" data-endline="13" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">首先了解下基本原理：万恶的厂商为了降本增效，肯定要想方设法减少算力的开销，因此如果遇到不同的用户提出了相似的问题（例如下图这样的），是不是可以把答案（突然想到这几天大家吵得很凶的“词元”这个翻译）缓存起来，节省相关的算力消耗呢？（当然，人家说不定还继续问你要“词元”的费用）</span></p><p data-startline="15" data-endline="15" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017872" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=31e5cf53&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVib2uRsica4a2D6jaZZwooVhmpPvXXS3F9ZbkuJ0dPvdgAwB21EDsalGYat6ZmicI0suGl7H21g3loGrybj9LmaZFwg4NicfK9C9U%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="17" data-endline="17" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在这个方面，比较出名的是GPTCache这个方案，它实现了一种叫做 semantic caching 的设计，也被 AWS、阿里和 Azure 用在了实际的生产环境。在厂商眼中，semantic caching 的技术栈是下图这样的：</span></p><p data-startline="19" data-endline="19" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017874" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=5788f2c8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolW6Gey2qL2hEKLPd0CUp8UW2sKpevhZLZ6ArkahgSoJFricPFAsjcQ20cOtwb9RmAVzeuhJTY4bowa0c77F10ExhESHJEjoVz4c%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="21" data-endline="21" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">但是在那些研究web安全的玩家眼中肯定会放出来不一样的光芒：前几年讨论得火热的CDN投毒攻击，这不马上又有了新的用武之地？</span></p><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017873" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=e0cfc569&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolV6XeuZT2OnJgroADMrSHhyDFsp6Rdq9otsQytXteEZnsdeWjxia2B08SeUSfKrjtYE2XD4lT4yaic0TCiazmmbDDdv8l6wsZpfQM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过对LLM投毒最困难的是怎么去“污染”LLM的回答，比如前面提到的例子，攻击者得想办法让LLM给出一个错误的答案（例如“NDSS 2026在鹤岗召开”），然后还要让错误的答案对应相关的问题，里面有很多的挑战。首先是攻击者要去构造一个 malicious query 来诱导LLM回答，然后这个 malicious query 还得和普通的问题足够相似，这样会被 semantic caching 机制选中，才能起到污染的效果；其次是怎么保证 malicious query 能够产生特定的污染效果。</span></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017875" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=96deca31&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWUxiaLkjsUgAhXWzibugE93ah1Tl2fgmQZoIL1vbCvy9L7ziar794DypOgOjqcfW8DfnwWeWCG9ZzVLTXibHaRjeaozluujwdia2wc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="30" data-endline="30" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">要让 malicious query 和普通的问题类似，作者说这里只需要很简单的把普通的问题作为一个 malicious query 的前缀就好了：</span></p><p data-startline="32" data-endline="32" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017877" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=e4b3fe48&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXDcS0O5glkMTwMp1VWdibyvffFt6dxVelhf1Sd7pLiaWeE4J4L1nXaXJ6dv1Iy45ljQOEdCxhKJLLW3ElVibxPKHLXUvDKibjEdSs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而要让LLM回答出错，就要使用特定的 prompt engineering 去引导它，这方面估计我们的读者更有经验？各种大模型越狱比赛肯定能培养出很多“污染小能手”吧~</span></p><p data-startline="37" data-endline="37" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017878" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=34e008ea&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVAM94orLia7JUibNbuicFuqM3rUEctSWfHZhjClB6eLtogV2NbSRo6ZLXuGMtciaPBhw27xEGO8FptXeYCAohzOIgtyVq47uWBaTk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">总之最后攻击成功的效果就是把一些恶意的答案注入到 LLM 服务的缓存里面：</span></p><p data-startline="41" data-endline="41" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017879" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=84ff0dfd&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolULVWUQ0QsqbALgwkubKVONT8ibkRMYTdpPWedDddxlnVay47Z3licq6Ugl7rnyUJc8giaqy7Yn1f1jbW7PRoRHTZES99CDI2SH9c%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">比较有意思的是，文本生图（Text-to-Image Generation）也可以用这个方法注入（你能看出来下图中的注入内容了吗）：</span></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017880" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=6c80194e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolX8YyHA497IL7ibhYu6Q40zJIaQhfkSOS8V68C7JwoEK2T6ibFSIPyVhKRPvK8kkG2MgU7icbF3GgI3fGvFwuXVVKRvsoXubkRKQY%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="48" data-endline="48" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者去调查了相关的服务（AWS、阿里和Azure的产品），同时也自己部署了GPTCache来测试，发现攻击的成功率蛮高的：</span></p><p data-startline="50" data-endline="50" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017881" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=9ec114da&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUfo0Kq7UiaPLXPia2rU9hv0qic8ypzmFibiamBBQGISWvgY1WFYIh8KbSC9RBicJia70maLB4V1VyObib46ldzbn3DOUEgRIQU6qwnwick%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="53" data-endline="53" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过这个也提醒了厂商，以后可以搞一个VIP服务，如果不充钱，就给你用可能会被污染的缓存结果，只要充了足够的会费，给用户一个专享绝无污染的超级大会员？</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://dev.ndss-symposium.org/wp-content/uploads/2026-f200-paper.pdf" target="_blank">https://dev.ndss-symposium.org/wp-content/uploads/2026-f200-paper.pdf</a></span><br style="box-sizing: border-box;"/><span leaf="">slides：<a href="https://www.ndss-symposium.org/wp-content/uploads/F0200-zhang-slides.pdf" target="_blank">https://www.ndss-symposium.org/wp-content/uploads/F0200-zhang-slides.pdf</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=10a398d6&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501532%26idx%3D1%26sn%3D95dc19eddef4062a22d0db205b45d01c">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Thu, 26 Mar 2026 20:20:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-03-19 蓝牙重配对攻击</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501518&amp;idx=1&amp;sn=f7ad7cb7ff6af741f33035bf24832a16</link>
      <description>很难想象哪个通信协议从上一个千年走到现在，版本从1.0走到了6.0，还充满了各种安全问题~</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-03-19 21:28</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=6c99e973&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolXe9ZZtXVvicC7DQ79K8IibPbtONdCXtjj9ib3UAtC1ANxbsG4zn3XVKoImmoCBf5jS5OKZKcLhwvzx30DEN8Fmmntc1jSo3woQpw%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>很难想象哪个通信协议从上一个千年走到现在，版本从1.0走到了6.0，还充满了各种安全问题~</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">很难想象哪个通信协议从上一个千年走到现在，版本从1.0走到了6.0，还充满了各种安全问题。而蓝牙通信协议就是这么一个典型的“缝缝补补又三年”的案例：从1998年到现在，不停的迭代不停的修补，但是始终还是存在这样那样的安全问题。在NDSS 2026会议上，一篇名为</span><em style="box-sizing: border-box;"><span leaf="">BLERP: BLE Re-Pairing Attacks and Defenses</span></em><span leaf="">的研究论文就首次针对蓝牙（聚焦于BLE也就是低功耗蓝牙）的重配对（re-pairing）流程设计了相关的攻击（相当搞笑的一点在于，这个re-pair不但没有repair安全问题，反而引入了安全问题）：</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017860" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8ea049cc&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXNySGdclLnNXaRicfTf6ty81pbNuFcQTDqCI3a2I0LyUuibEHaR6jKGnLfnb9yt7blGFCmJBH0D8tDpWI6ibA3XdNJVcIiaicXOEoM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="9" data-endline="9" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">论文提出的安全攻击——BLERP attacks——是一系列针对蓝牙重配对的攻击，更具体一点，是四种特定的攻击，其中两种是身份模仿（impersonation）攻击，另外两种是中间人（MitM）攻击，下图展示了这四种攻击的大概流程：</span></p><p data-startline="11" data-endline="11" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017863" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=ca6e38d5&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVFsfXMe6Bsa00BjzkEPvOJAJzeR8CrOFicp9UQsbpngXejp55c4ZB3QSpQsxs9ViashK6O8IHIAHyiaqJZ5Ap1nsN3ib9haNgNbHk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">再具体到实现层面，我们需要了解一点蓝牙的知识：平时大家使用的蓝牙设备可以分为</span><em style="box-sizing: border-box;"><span leaf="">Central</span></em><span leaf="">和</span><em style="box-sizing: border-box;"><span leaf="">Peripheral</span></em><span leaf="">两种类别，</span><em style="box-sizing: border-box;"><span leaf="">Central</span></em><span leaf="">是那些主动去扫描其他蓝牙设备并发起连接的设备，而</span><em style="box-sizing: border-box;"><span leaf="">Peripheral</span></em><span leaf="">则是被动接收连接请求的设备。在具体的通信开始前，为了保证安全，蓝牙协议要求设备之间先协商一个long-term Pairing Key（PK），然后再为不同的session去生成特定的fresh Session Key（SK），使用的密码算法和协议需要首先按照下图的流程去协商好，然后用ECDH进行密钥交换，最后的加密用的是AES-CCM模式。</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017859" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=d47e030d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVmSiaFgexibYXaicK8wMDFiaaN4ZIfDnqjQ3TyGLZwLpSBWC8QUTZcicVbicFXicTruMUoJ5POM8njZYSvBrQTuiaEb6KVX90X4BKmRNc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">现在问题来了，如果两个蓝牙设备已经配对成功，然后又需要重新配对，这时候应该怎么办呢？蓝牙规范里面对于这时候应该怎么处理，按照下面这个决策树（if-then-else）进行。可是这里面挂一漏万，被本文的作者逮到了好多漏洞——作者发现了6类漏洞，其中4类是全新的，2类是已有BLE漏洞在重配对这个场景下的扩展。</span></p><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017861" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=77a20f3f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXFuZoKzibO2ibNB5kaX1NgcafcODG4jZMzS1VChORqDb2Tia6WkKTLOlXrZ2VM72ibyLy2KA11YpZaic05HtvsPYuZ0ETdYqR5wXew%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="22" data-endline="22" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于前面提到的4类全新的漏洞，其实理解起来也没那么复杂，核心就在于在重配对的时候，蓝牙规范并没有讲清楚这时候</span><em style="box-sizing: border-box;"><span leaf="">Central</span></em><span leaf="">和</span><em style="box-sizing: border-box;"><span leaf="">Peripheral</span></em><span leaf="">两方应该对重配对的请求进行怎么样的严格检查（特别是怎么和上一次的配对的安全级别进行对比），这就导致了攻击者可以在重配对的过程中把安全级别协商到比较弱的级别（感觉针对蓝牙通信进行安全降级攻击是标准套路了），然后发起攻击。反而是那两类已有漏洞的扩展可能还更加“高级”一点，第一类是在重配对的时候从整个流程的中间（而不是第一步）开始执行，第二类是重新协商一个entropy很低的PK，破坏相关机密性。</span></p><p data-startline="24" data-endline="24" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在实际攻击中，本文提出的所有攻击（两种身份模仿攻击和两种中间人攻击）都要综合利用上面的多类漏洞一起来实施，在论文的第四章中有详述，比如要冒充</span><em style="box-sizing: border-box;"><span leaf="">Central</span></em><span leaf="">设备，一方面要利用重配对协议可以跳过开头的authentication步骤、从中间开始执行的漏洞，一方面也利用了</span><em style="box-sizing: border-box;"><span leaf="">Central</span></em><span leaf="">和</span><em style="box-sizing: border-box;"><span leaf="">Peripheral</span></em><span leaf="">设备双方可以接受更低安全级别的协商请求的漏洞。</span></p><p data-startline="26" data-endline="26" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017862" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=79a47fa9&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVPXWWe9yUVH2swujwwPuBA9BhgfLBYeTL77qVpqNckVcw8quX8R0PvCDyt2HvPupI8ytnz4vuribvVOhAOeCWjcmbJA2X8wIbU%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">当然，在实际的攻击中，除了在理论上操作，还需要底层硬件配套支持，因为需要进行一些身份仿冒攻击（比如模仿被攻击设备的蓝牙MAC地址），因此攻击需要特定的硬件（如下图所示的Nordic nRF52840-DK开发板），以及相关的蓝牙协议栈实现代码（比如NimBLE），作者开发了一个完整的叫做BLERP的toolkit，方便大家重现相关攻击。</span></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017866" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=18f3747a&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXCiavCFv8mZOt96T4LDjw1fzOURtKlwdGQKblFccibEzrmSfvmV0x8icXuwPW0eQrp7licd36GQR5QCnVz5Nx0hpbIjPvkxjQ8CXc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="34" data-endline="34" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者在实验中测试了一大堆的设备，包括各种智能手机和平板、智能电视、蓝牙鼠标键盘、智能手表等等，测试结果（下表）表明BLERP attacks几乎影响了所有测试的设备：</span></p><p data-startline="36" data-endline="36" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017865" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=70a5975e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVQnGZf1fLy7up2BHMovV7DiaD3WJJcpPgSPQyBibfRqYebpdYMDcwJL4sfRpaCl71DA8ibSemBtGzicN3OnsvTYGrTYp3ets0Nn3k%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">读完这篇论文，顺便介绍一下作者在WOOT 2025的一篇相关的研究论文</span><em style="box-sizing: border-box;"><span leaf="">Bluetooth Security Testing with BlueToolkit: a Large-Scale Automotive Case Study</span></em><span leaf="">，在这篇论文中，作者介绍了他们开发的BlueToolkit测试工具，对于蓝牙安全分析很有帮助。</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://www.usenix.org/system/files/woot25-zubkov.pdf" target="_blank">https://www.usenix.org/system/files/woot25-zubkov.pdf</a></span></p></blockquote><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后，让我们看看某些大厂对这个攻击的反应：</span></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017864" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=fc620e17&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUMolJyb6Br1BZOY2tX288rpUtXhjEPA5HGNZS6FrSCCqwuEQTjxZYS7GgK64LRH0KS20rpMoDchicRTjPpFUREOYkic5FQhbicBk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://www.ndss-symposium.org/wp-content/uploads/2026-f121-paper.pdf" target="_blank">https://www.ndss-symposium.org/wp-content/uploads/2026-f121-paper.pdf</a></span><br style="box-sizing: border-box;"/><span leaf="">代码：<a href="https://github.com/sacca97/blerp" target="_blank">https://github.com/sacca97/blerp</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=5cbf3475&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501518%26idx%3D1%26sn%3Df7ad7cb7ff6af741f33035bf24832a16">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Thu, 19 Mar 2026 21:28:00 +0800</pubDate>
    </item>
    <item>
      <title>2026 年秋季｜北京航空航天大学博士生招募 （浏览器指纹 / Web安全 /卫星互联网安全）</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501506&amp;idx=1&amp;sn=cc2392869b911137904dbd58a975c879</link>
      <description></description>
      <content:encoded><![CDATA[<p><span>安全研究GoSSIP</span> <span>2026-03-15 21:30</span> <span style="display: inline-block;">中国香港</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=1a4d6e04&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolWSoubmsswtUd41mpOy3sqvOdYU9nfsaPcG1jcNpWf4gk8mr9X2zbKP0kIquf7JtON2jlA7Spth4xJwbMb7gVUvhTzmDS2rIkk%2F0%3Fwx_fmt%3Djpeg"/></p>
  
  <p data-pm-slice="0 0 []">2026年秋季，北京航空航天大学Web安全题组计划招收 1–2名博士研究生。主要研究方向聚焦Web安全与系统安全，尤其关注真实互联网环境中的攻防技术，包括浏览器指纹、浏览器安全、以及卫星互联网安全等问题。</p><div><p style="display: inline-block;"><img data-ratio="0.36585365853658536" data-w="738" data-type="jpg" src="https://wechat2rss.xlab.app/img-proxy/?k=45d5d981&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolUWet0ib2tYblfPIV8dLBPwEefuKicPgecCPOVVakXDG9E2suUEKhMwhPpYEWa3w5arvYJHZvUWOric5nVSvPiaicg0P7O1fSGBc98s%2F640%3Fwx_fmt%3Djpeg"/></p></div><h1 data-pm-slice="0 0 []"><span><span leaf=""><span textstyle="" style="font-size: 24px;font-weight: bold;">研究方向</span></span></span></h1><p><span><span leaf="">课题组主要研究 </span></span><span><span leaf="">Web安全与系统安全</span></span><span><span leaf="">，关注真实互联网环境中的安全问题与攻防技术，而不仅仅是论文中的理论模型。研究方向主要围绕</span></span><span><span leaf="">浏览器技术、系统安全以及新型网络环境中的安全问题</span></span><span><span leaf="">展开。</span></span></p><p><span><span leaf="">目前课题组重点关注以下几个研究方向：</span></span></p><p style="margin-bottom: 0px;"><span><span leaf=""><span textstyle="" style="font-weight: bold;">1. 浏览器指纹追踪与反制</span></span></span></p><p><span><span leaf="">浏览器指纹技术已经广泛应用于互联网风控系统，同时也带来了隐私追踪问题。该方向主要研究浏览器指纹识别与设备关联技术，以及针对指纹追踪的对抗与隐私保护机制。相关研究包括浏览器指纹特征分析、设备识别技术、反追踪机制以及浏览器指纹生态的大规模测量与分析。</span></span></p><p style="margin-bottom: 0px;"><span><span leaf=""><span textstyle="" style="font-weight: bold;">2. 浏览器与系统安全</span></span></span></p><p><span><span leaf="">浏览器是现代互联网最复杂的软件系统之一，也是安全研究的重要对象。该方向主要研究浏览器攻击面分析、漏洞挖掘、浏览器沙箱与隔离机制，以及浏览器与操作系统之间的安全问题，探索从浏览器内核到操作系统层面的系统安全问题。</span></span></p><p style="margin-bottom: 0px;"><span><span leaf=""><span textstyle="" style="font-weight: bold;">3. 卫星互联网安全</span></span></span></p><p><span><span leaf="">随着低轨卫星网络的发展，新的网络架构也带来了新的安全挑战。该方向主要关注卫星互联网架构中的协议安全、系统安全以及相关攻防问题。</span></span></p><p style="margin-bottom: 0px;"><span><span leaf=""><span textstyle="" style="font-weight: bold;">4. AI for Security</span></span></span></p><p><span><span leaf="">课题组也探索将 AI 技术应用于安全研究，例如自动化安全分析、漏洞发现以及安全检测等方向。</span></span></p><p><span><span leaf="">总体而言，课题组的研究风格更偏向</span></span><span><span leaf="">学术研究与工业实践结合</span></span><span><span leaf="">。希望关注真实互联网环境中的安全问题，并通过深入系统底层的技术研究，探索具有实际价值的安全技术和系统原型。</span></span></p><h1 data-pm-slice="0 0 []"><span><span leaf=""><span textstyle="" style="font-size: 24px;font-weight: bold;">研究风格</span></span></span></h1><p style="margin-bottom: 8px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">课题组更倾向于 </span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">学术研究与工业实践结合</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">的研究方式。关注的问题包括：</span></span></span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">真实互联网环境中的安全问题</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">系统底层机制研究</span></span></span></p></li><li><p style="margin-bottom: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">可落地的安全技术和原型系统</span></span></span></p></li></ul><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">希望博士阶段不仅能够产出论文，也能积累</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">系统安全与工程实践能力</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">。</span></span></span></p><p><span><span leaf=""><span textstyle="" style="font-size: 24px;font-weight: bold;">实验室氛围</span></span></span></p><p style="margin-bottom: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">实验室强调</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">灵活的科研方式</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">：</span></span></span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">不打卡</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">工作时间灵活</span></span></span></p></li><li><p style="margin-bottom: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">更关注研究进展而不是形式</span></span></span></p></li></ul><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">只要研究持续推进，工作方式可以自由安排。</span></span></span></p><h1><span><span leaf=""><span textstyle="" style="font-size: 24px;font-weight: bold;">希望你具备</span></span></span></h1><p style="margin-bottom: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">欢迎对</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">安全研究</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">有兴趣的同学联系。希望你：</span></span></span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">对安全方向有热情</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">具备一定代码能力和工程能力</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">对系统方向或AI方向有兴趣</span></span></span></p></li></ul><p style="margin-top: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">基本要求：会使用 </span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">C语言</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">（学校入学考试需要）</span></span></span></p><p style="margin-bottom: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">优先背景：</span></span></span></p><ul style="list-style-type: disc;" class="list-paddingleft-1"><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">计算机科学</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">网络空间安全</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">或相关相关专业硕士</span></span></span></p></li></ul><h1 style="margin-top: 16px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">招生信息</span></span></span></h1><ul style="list-style: none;" class="list-paddingleft-1"><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">入学时间：</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">2026年秋季</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">招生人数：</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">1–2名博士</span></span></span></p></li><li><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">截止日期：</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">2026年4月6日</span></span></span></p></li></ul><h1><span><span leaf=""><span textstyle="" style="font-size: 24px;font-weight: bold;">联系方式</span></span></span></h1><p style="margin-top: 16px;margin-bottom: 8px;"><span><span leaf=""><span textstyle="" style="font-size: 17px;">邮箱：buaasniper@gmail.com</span></span></span></p><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">微信：buaasniper_work</span></span></span></p><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">联系时建议附上：简历+项目或研究经历</span></span></span></p><p><span><span leaf=""><span textstyle="" style="font-size: 17px;">如果你对</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">浏览器安全、风控技术、隐私保护或系统安全研究</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">感兴趣，欢迎联系交流！期待一起探索</span></span></span><span><span leaf=""><span textstyle="" style="font-size: 17px;">真实互联网中的安全问题！</span></span></span></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=9a70f21b&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501506%26idx%3D1%26sn%3Dcc2392869b911137904dbd58a975c879">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Sun, 15 Mar 2026 21:30:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-03-13 以（脆弱的）驱动之名</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501501&amp;idx=1&amp;sn=7ebddcea28252ae084f75c83e391f34f</link>
      <description>3月份的《30天内挖掘100+内核漏洞：Windows驱动安全大危机？》文章刚出，2月份的NDSS论文就马上来碰瓷？</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-03-13 20:20</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=bfa77376&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolVx5nblPdJ4QcjtXFaUXfzr50WVAWiba3ekj08JLiaK1zgqmicoSHfYwqYGR8uesia5kcgLohxndPbfJciaMSzOhkYS2GF4DOkqMOUE%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>3月份的《30天内挖掘100+内核漏洞：Windows驱动安全大危机？》文章刚出，2月份的NDSS论文就马上来碰瓷？</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">前几天（2026年3月2日）有个公众号发了个新闻，标题党得很，叫做《30天内挖掘100+内核漏洞：Windows驱动安全大危机？》，具体说的是什么呢？说的是有一个叫做Hexaplex AI的安全公司（这种命名风格最近非常多啊，挂着AI的名头），说他们构建了一个自主平台，从互联网各个角落抓取具有合法签名的Windows驱动程序，然后用AI去识别内存损坏漏洞，号称是对每个驱动的分析成本只有3美元，而结果是</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">从158个不同的驱动程序二进制文件中发现了521处潜在漏洞</span></strong><span leaf="">，然后手动确认并向包括联想、富士通、IBM、英特尔、AMD、Silicom、英伟达和戴尔在内的供应商报告了15处漏洞。（不过只从富士通那边拿到了一个漏洞编号CVE-2025-65001）。</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">初读这篇文章，很多人肯定又是那个经典的先“哇塞”然后“x的，安全分析师又要完蛋了”的反应，不过我们如果把目光聚焦到几天之前召开的NDSS 2026会议上，那么在读完下面我们要介绍的这篇论文</span><em style="box-sizing: border-box;"><span leaf="">Unveiling BYOVD Threats: Malware’s Use and Abuse of Kernel Drivers</span></em><span leaf="">之后，不知道你会作何感想？是不是让人想到了一种可能的商业模式：</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">让AI快速学习最新的学术论文的研究成果，然后在这个基础上<span textstyle="" style="text-decoration: line-through;">编</span><span textstyle="" style="text-decoration: none;">提</span>出来一套更为“AI而宏大”的理论和结果，接下来就走入到融资的道路上</span></strong><span leaf="">？算了，不能胡乱揣测，</span><s style="box-sizing: border-box;"><span leaf="">毕竟人家亚历山大王（Alexandr Wang）就是这种天才套路嘛</span></s><span leaf="">，我们还是专注于介绍今天的内容吧！</span></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017846" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=125bf808&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUtme7lIKIngoEy1fJo5uktCNziaXUR5fdbFLicM1d93netRDVh8he3EQkraeibq7yU3PwMiaP2PCDXMibLkiaJlSSiasn8NfJnEgu1I0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">前面其实已经把研究背景介绍得很清楚了：本文讨论的 Bring Your Own Vulnerable Driver (BYOVD) attacks 就是一种找到现有的合法驱动程序，在里面找到漏洞，然后拿这个有漏洞的驱动来当特洛伊木马（虽然这匹木马并不是自己想干坏事）的攻击方法。关于怎么实施具体的安全攻击，这里我们只能引用那段经典的废话——“</span><em style="box-sizing: border-box;"><span leaf="">这种事情我见的多了，我只想说懂得都懂，不懂的我也不多说了，说了你也不明白，不如不说，细细品吧，你也别来问我怎么回事，这里面利益牵扯太大了，说了对你我都没有好处，你就当不知道就行了，其余的我只能说这里水很深，牵扯到很多东西，详细情况你们很难找到的，网上大部分都删干净了，所以我说懂得都懂，不懂也没办法</span></em><span leaf="">。” （或者你随便在网上搜索一下，例如 <a href="https://forum.butian.net/share/2832" target="_blank">https://forum.butian.net/share/2832</a> 这种文章也很多，哪有被删光的说法？）</span></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">打住打住，这部分大家还是去网上找教程或者看看论文的第二章去了解个大概吧，本文并不是教你搞黑产的，作者想要介绍的是对整个安全生态的调研：为了研究malware使用存在漏洞的驱动程序实施攻击的情况，作者首先开发了一套分析系统（如下图所示，是一个基于虚拟化的沙盒分析系统）来进行分析：</span></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017847" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=8e0c9311&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWenaQYNwtgIdxTPPprowib4y0CHWT3TNUlR8EU2sUibvccaLW09oJUOm7mAkBGPeaOYnS3B1JVhLfiaT1XtIassloMiaxI0fxUHcM%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这套分析系统基于波兰安全研究人员开发的DRAKVUF Sandbox框架开发，DRAKVUF的好处是你甚至都不需要往guest OS里面写什么插桩代码，它直接就给你提供了Virtual Machine Introspection（VMI）功能，于是分析人员可以很轻松地记录driver loading and unloading routine执行、关键的内存管理API调用、IOCTL请求、kernel callback routine执行等关键事件，并把这些信息存储为特定的execution trace，供后续分析使用。</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf=""><a href="https://github.com/CERT-Polska/drakvuf-sandbox" target="_blank">https://github.com/CERT-Polska/drakvuf-sandbox</a></span></p></blockquote><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017848" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=5cf5096e&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUvdI4EL3aDmLUumHUibdZYHUDjYS8X1cTibOenPRyBroibpKZwDDemyuKeI0aibGkUHG9lHIvhpqnu7uN63zicIdwtVYwUSr5Lan9Q%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="22" data-endline="22" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">为了区分什么是正常的驱动行为，什么是被攻击者利用然后干坏事的行为，作者列出了8条经验规则（论文的第IV.C章，这里不全部详述了），主要就是观察可疑的内存分配和关联的一些内核API的调用。而且，作者在论文的第IV.D章里面还介绍了一些可配置的execution trace记录方法，允许大家选择性地监控不同的行为。</span></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者还在论文的第五章介绍了关于怎么去寻找有问题的驱动，并且如何构建相关的数据集给后面的实验使用的过程，这里面提到了两个资源，第一个是一个由安全分析人员提交的，已经包含了1805个（且数量不断在增长）被人工确认有漏洞的驱动的集合，第二个则是微软自己维护的Microsoft Vulnerable Driver Blocklist：</span></p><p data-startline="27" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">[1] Living off the land drivers <a href="https://www.loldrivers.io/" target="_blank">https://www.loldrivers.io/</a></span><br style="box-sizing: border-box;"/><span leaf="">[2] Microsoft recommended driver block rules <a href="https://learn." target="_blank">https://learn.</a></span><br style="box-sizing: border-box;"/><span leaf="">microsoft.com/en-us/windows/security/application-security/application-control/app-control-for-business/design/microsoft-recommended-driver-block-rules</span></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">除了这些已知有漏洞的驱动，作者还对Windows全体驱动进行了筛选，只要符合下表的标准（存在</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">可疑的导入表</span></strong><span leaf="">，即abusable imports），都选进来作为candidate进行分析：</span></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017845" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2aa92c81&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolW4Sf3IwGSsABTlfSDiaUG02q4IFNPFOKBU3GuHNI1icOFYNSEVVqoPvhxXw4qJrfxgAyA8eicoCdzBcIVJE3zwyKh4qpbbl6ricBw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者总共收集了8779个可执行文件样本，涉及到加载773个（可能）有问题的驱动，然后进行了大规模的分析实验，实验里面很自然地分为了两部分：对已知恶意程序的分析和对未知恶意攻击的分析。针对已知恶意程序的分析看起来不是那么乐观：针对2995个样本的分析（已经确认它们和162个有漏洞的驱动相关联）表明，仅有10%左右的样本（304个）的动态执行看起来是有问题的（suspicious），而差不多一半的样本（1524个）就没真正执行任何的驱动加载行为，作者分析了半天，指出这就是传统的病毒分析里面的大问题——恶意行为如何触发，不过我们也感谢作者在这里没有提任何AI或者小龙虾，本来以为作者要靠万能的AI来让病毒分析变得更简单呢~</span></p><p data-startline="37" data-endline="37" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">对于其中56.25%的产生了相关驱动加载行为的样本，作者表示，尽管没监控到什么可疑的行为（因为作者的sandbox只能监控一些事件，而不是进行指令级别的trace），但是经过查阅了相关文献，以及对部分驱动行为进行了人工分析，发现它们可能就变成了CTF pwn题目了——调用代码利用驱动漏洞直接去进行内存操作。作者表示，日后会开发指令级别的记录工具（召唤QEMU？）来增强分析。</span></p><p data-startline="39" data-endline="39" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">但是你也别嘲笑人家作者的方法不够小龙虾，即使只是基于下表的特征筛选，作者针对潜在可能有问题的驱动进行分析，就发现了很多可疑的样本。</span></p><p data-startline="41" data-endline="41" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017844" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=4c15ba29&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolVf7TOIOqt9QRrIYiatcDh0U2OhxicGLMa2j8v2Dv2v6kxc4BxianeFUnYtTSLGX2RQbUVWeytV6NsHnNZCm9wuPdpHbhhemiaRdbI%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="43" data-endline="43" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者实打实地列出来了存在问题的驱动（如下表），并且在case studies章节里面具体讨论了这些驱动里面包含的高危操作，不过作者也没有很浮夸，只是说他们把这些驱动发给了微软和相关的厂商，然后只收到了一个CVE编号（CVE-2024-26506，针对</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">probmon.sys</span></code><span leaf="">）。</span></p><p data-startline="45" data-endline="45" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017849" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=d90da9f6&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolU6JW3ia4O30Gib87F7ic3fmD5EckQyX5W1Xzx3KVUwmD9nSHSO0gqaxJnOBEDibDUcfElZjv5CBrdGwH0UqZCTBd3MLuwdxQBLpmY%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><p data-startline="49" data-endline="49" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">顺便提一嘴，大家有没有想过哪些驱动程序是容易被利用的漏洞大户？一开始你以为是硬件厂商，但是仔细想想还有什么更恶心的驱动？对，就是那些游戏厂商的</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">反作弊检查</span></strong><span leaf="">代码，在2022年就有这么个例子：</span></p><p data-startline="51" data-endline="51" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><em style="box-sizing: border-box;"><span leaf="">安全公司趋势科技的研究人员报告，《原神》的反作弊驱动 mhyprot2.sys 被勒索软件利用杀死杀毒软件的进程和服务。mhyprot2.sys 作为设备驱动是与《原神》游戏分开安装的，卸载《原神》并不会卸载 mhyprot2.sys，早在 2020 年 9 月米哈游发布 《原神》时游戏社区就开始讨论具有间谍软件能力的 mhyprot2.sys。它很快被发现存在漏洞允许被利用杀死进程。开发者神楽坂早苗/kagurazakasanae 和 Kento Oki 分别发布了 PoC 演示了杀死进程的能力。Kento Oki 向米哈游报告了漏洞，但该公司没有承认也没有修复。勒索软件利用的 mhyprot2.sys 是 2020 年 8 月构建的，其签名至今仍然有效没有撤销。</span></em></p><p data-startline="53" data-endline="53" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">上面的例子当然不是孤例，论文中列举了CAPCOM这个游戏巨头开发的</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">capcom.sys</span></code><span leaf="">反作弊驱动作为又一个反面教材（不过这个是2017年的旧闻了），说</span><code style="box-sizing: border-box;font-family: Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;font-size: 13.6px;padding: 0.2em 0px;color: inherit !important;background-color: rgba(0, 0, 0, 0.04);border-radius: 3px;margin: 0px;"><span leaf="">capcom.sys</span></code><span leaf="">里面甚至学习eBPF搞了一个允许用户态发送代码过来给它执行的接口……实际上，就连V社都已经不能忍了：从2024年开始，Valve就强制要求游戏开发商在游戏介绍页面必须</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">披露是否使用了内核级反作弊技术</span></strong><span leaf="">。</span></p><p data-startline="55" data-endline="55" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">总之，驱动程序里面的问题确实很多，但是究竟是去关注那些基于AI智能体的安全分析</span><s style="box-sizing: border-box;"><span leaf="">营销</span></s><span leaf="">文章，还是来学习这种传统的安全分析思路，这留给我们的读者自己去思考了（写这段话的目的其实是SEO，最近发现好像公众号文章里面不带AI和小龙虾，阅读量就一路下滑……此处重复</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">OpenClaw一万遍</span></strong><span leaf="">）</span></p><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://www.ndss-symposium.org/wp-content/uploads/2026-s1491-paper.pdf" target="_blank">https://www.ndss-symposium.org/wp-content/uploads/2026-s1491-paper.pdf</a></span><br style="box-sizing: border-box;"/><span leaf="">Open Science：<a href="https://doi.org/10.5281/zenodo.15864111" target="_blank">https://doi.org/10.5281/zenodo.15864111</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=397488a1&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501501%26idx%3D1%26sn%3D7ebddcea28252ae084f75c83e391f34f">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Fri, 13 Mar 2026 20:20:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-03-10 Andriod APP的私有加密流量风险</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501491&amp;idx=1&amp;sn=95e961f2b4be8b9639031dae0f34e530</link>
      <description>谁在查看你的加密数据流量？</description>
      <content:encoded><![CDATA[<p>原创 <span>何同学新婚快乐</span> <span>2026-03-10 20:21</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=ddc0bd05&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolU8tc5xXxjL5EoHHl4BO25t3sHhlkgazic6OQBg3E7oGwXLNmSoianj42fegwQsjEZicywax9xL4RDDuPbu27nps5diaNnUB6OdfMc%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>谁在查看你的加密数据流量？</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">早在2016年，G.O.S.S.I.P曾经发表过一篇研究论文</span><em style="box-sizing: border-box;"><span leaf="">An Empirical Study of Insecure Communication in Android Apps</span></em><span leaf="">，讨论了Andriod APP使用私有加密方案这一问题。人生如白驹过隙，一转眼10年过去了，想必大家都认为移动互联网总该是 HTTPS/TLS 满天飞了吧，而去年IEEE S&amp;P的一篇研究论文报告的结果却让人大跌眼镜。在这篇名为</span><em style="box-sizing: border-box;"><span leaf="">WireWatch: Measuring the security of proprietary network encryption in the global Android ecosystem</span></em><span leaf="">的论文中，来自普林斯顿大学和多伦多大学的研究人员指出，很多大厂开发的Android APP竟然还在使用私有加密流量，有些甚至还能被解密？！</span></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017835" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=3242f1fc&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolW4EanvpGicczXHAtexCfBNVzFvkvQ5b4uczGZXZOSKkMXVKsWw3oKU3M4iaKBmKGiacGnubpE70E79JTTk5jdE1pibEZFwqfmWrIw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">当然，本文的研究结果一部分来自于作者的方法论——以往很多安全研究通常只分析 Google Play，因为它有现成的数据源，获取 APK 非常容易。但是由于在中国无法使用 Google Play，所以这些研究不能代表所有的情况。这一次，作者把小米应用商城中的 App 也纳入了分析目标，一下子就增加了很多的多样性~ 作者同时选取了 Google Play 和小米商城下载量排名前 1000 的 App 进行分析，然后设计了一个叫做 WireWatch 的工具，用于对安卓App的网络流量安全性进行大规模分析。分析过程主要关注两个事情：1、App交互过程中是否存在明文数据流量；2、App中是否使用非标准的、私有密码协议。</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017834" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=3e2dce25&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolX5tEls10cGuS6icfr0Gq1K375gFQNY2kg6eYcO9CnfYIB6dwmdPsLKODwWnzz3tWia0Ria6l6XPtGD2xHiagRGpicu5w4yQ285VcRo%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">上图是WireWatch的工作流程，针对非标准密码协议的判断过程，该工具首先对数据流量进行采集，并将结构化字段剥离出来（例如base64和JSON格式），然后使用 NIST 随机性测试来判断数据是否像加密后的密文。最终判断，如果数据流量同时满足：1）不是 TLS / HTTPS；2）payload 含有疑似加密数据；3）加密过程位于应用层，则被认为是使用了非标准密码协议。</span></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过这篇论文虽然发表在了IEEE S&amp;P上，在对于加密流量的分析上，技术含量略显不足，就是用了流量聚类和手工逆向分析的方法，而且在针对流量的加密方法进行逆向分析这部分，文章写得语焉不详，还不如我们在10年前的工作（不要忘记了现代人都用AI辅助的，怎么水平还这么落后）。</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017838" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2be9b3e8&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXibR2iaASXmoJnOM0fSrib7cUun5CVtVcAvGsLpkiajKNElO2Wzhwz2gticibshgJtSQ7iathqOOIzkRhvwA2VasFZRVq6CYIY5B7nl0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">那就看看结果吧：作者的工具成功分析了 1699/2000 个 App（分析成功率为 85%）。从实验结果来看，国内 Android App 的安全性要远低于 Google Play 中的 App。65.4% 的 App 甚至还在明文传输数据，49.1% 的 App 都没有应用 TLS。还有 47.6% 的 App 更愿意使用自研非标准的密码协议（这里作者也承认，分析结果可能不够完整）。为了展示 WireWatch 工具识别非标准密码协议的准确性，作者还选取 92 个 App 进行人工分析，WireWatch 工具跟人工分析结果对比仅有 3 个 False Positive 和 1 个 False Negative。</span></p><p data-startline="20" data-endline="20" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">WireWatch 使用无监督学习的聚类算法，对所有被认为是非标准密码协议的数据流进行聚类分析，最终得到 177 个非标准协议家族，其中 83 个家族协议被多个 App 所使用，剩下的协议有且仅有 1 个 App 在使用。其中，很多大厂生产的 App（我们知名的阿里、腾讯、快手、爱奇艺等等公司都被作者“点名”），大都会使用</span><s style="box-sizing: border-box;"><span leaf="">相同的</span></s><span leaf="">（祖传的）非标准密码协议。</span></p><p data-startline="22" data-endline="22" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017836" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=87e30083&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWTiblLXZnvJickiaqo9oK6gpfGiaLoE0zR5O3cNffJOicH2Y2JjH865Ssh5dDgnhvm4woStXe3F1NR4yRplOjwJlcvnVAjLE8Tjo3g%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">本文的灵魂拷问当然是</span><strong style="box-sizing: border-box;font-weight: 700;"><span leaf="">这些不公开的非标准密码协议真的安全吗</span></strong><span leaf="">？作者继续重拳出击，仔细地对 18 个协议进行逆向分析（隶属9个协议家族）。结果发现这 9 个协议家族里面，有 8 个都存在严重安全问题，加密的数据都可以被攻击者解密（下表）。这背后的原因居然是密钥要么硬编码在代码中，要么是用一个固定种子作为输入，使用确定性算法来生成的。即使有协议使用了 RSA 算法保护对称密钥，但是他们居然用的是 Textbook RSA。除此之外，部分协议还存在很多其他问题，导致隐私数据的泄漏。</span></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017837" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=2478e22f&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolW4GJE1XtqfiaDlTRISSmolyiciaVjT8ooy8LxV7QHKOq8U0wUHAMlLku4tEg2pXOsicMNWQAmKczV1ZV5oDnCexZqJOxauxKqWTk0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最让人感到不安的，可能还是这些出现如此低级错误的 App，居然都来自大公司之手，并且有着非常高的下载量，文章里面有相关的细节，什么蚂蚁mPaaS SDK、数美SDK还有腾讯的WUP（针对它家的攻击可以出一个密码题目让AI来试试看）都被重点圈出来了。（好在微信被作者划分到了安全的行列，所以小编可以继续安心地在公众号分享文章）</span></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017840" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=642c14db&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolV5XUcHHI0NFfP708FqpSwO9B7ZEqocjMD9NPb2LuuysrCCiajSISwzF3pniavU3BW8rtNcyon8t3tuzHIInjiaVeXw1YicvdfkSVY%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">看到上面的表格，再关注一下下面的事实：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">《中华人民共和国密码法》于2019年10月26日通过，并自2020年1月1日起施行，旨在规范密码应用和管理，保障网络与信息安全，维护国家安全和社会公共利益。</span></p></blockquote><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://jeffreyknockel.com/publications/oakland2025wirewatch.pdf" target="_blank">https://jeffreyknockel.com/publications/oakland2025wirewatch.pdf</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=875090ae&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501491%26idx%3D1%26sn%3D95e961f2b4be8b9639031dae0f34e530">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Tue, 10 Mar 2026 20:21:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-03-06 大破全屋组网之AirSnitch攻击</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501481&amp;idx=1&amp;sn=8fc7b1ec6ca8b68d32e6152408f0f910</link>
      <description>Wi-Fi client isolation，一个美丽的谎言</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-03-06 23:42</span> <span style="display: inline-block;">浙江</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=31bc6df5&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FeQ0Wf6rqolVMayD2QvBNF3GO4NZM0TG6qtQbt8ibRbDmicFZ12BmtnGkEDFAql4wW3qqRe9ibkR0egzHL6N476qJ71eT3SLgbwmj9t4Ndx6mdE%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>Wi-Fi client isolation，一个美丽的谎言</p>
  <p data-startline="4" data-endline="4" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span leaf="">最近我们的公众号更新比较不积极，因为各种事情很忙，不过我们还是坚持古法写作，不用AI，因为大家可能都听说了Ars Technica网站的一个专门报道AI相关新闻的记者用AI写作，发了一篇子虚乌有的文章然后被打脸最后离职的新闻（这个新闻怎么感觉也像是AI写的）。那今天趁着周末来给大家推荐下前不久刚刚结束的NDSS 2026上的一篇好文——</span><em style="box-sizing: border-box;"><span leaf="">AirSnitch: Demystifying and Breaking Client Isolation in Wi-Fi Networks</span></em></p><p data-startline="6" data-endline="6" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017824" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=7b973081&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXNzOibMbnCyLE2ND3Ff07e57SJ7ibURjdIqXQ7ZIb7NhbicSyu37yyEGKDSMaucWTgWoibwTsHIzvck3sTlricEdbJhaLkkbj2n7UA%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="8" data-endline="8" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">先引用一下原作者钱志云老师的介绍，免得大家说我们的介绍不正宗：</span></p><p data-startline="10" data-endline="10" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><em style="box-sizing: border-box;"><span leaf="">简单来讲，这个工作研究了如何绕过 Wifi client isolation 的机制，导致一个恶意 client (连着guest ssid）可以攻击另一个 victim 用户（连着admin ssid）达成中间人的攻击。在client isolation下，传统的攻击如 arp spoofing 都是无效的。在校园，酒店，企业，甚至是家庭网络里，client isolation 都挺普遍的。</span></em></p><p data-startline="12" data-endline="12" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">当然，这里又要cue一下Ars Technica，因为关于论文提到的AirSnitch攻击，在该网站上有一篇详细的科普好文：<a href="https://arstechnica.com/security/2026/02/new-airsnitch-attack-breaks-wi-fi-encryption-in-homes-offices-and-enterprises/" target="_blank">https://arstechnica.com/security/2026/02/new-airsnitch-attack-breaks-wi-fi-encryption-in-homes-offices-and-enterprises/</a></span></p><p data-startline="14" data-endline="14" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过我们显然不信任他们的记者，所以我们也有我们自己的推荐（古法写作），其实关于这篇论文的核心内容，钱志云老师在介绍里面讲得蛮清楚了，不过如果你不熟悉Wi-Fi组网结构，可以先看看下面这幅图：</span></p><p data-startline="16" data-endline="16" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017825" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=78e2f535&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolWzGsibejLgROqbiaCNG76XNkX18dNLo36NrkciaAv2k0Zqudpj7pvicLLrPrZ8hnrv5u1SNJSZ1xO4q7XickdgMzvddl6tHXlhr4yk%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="18" data-endline="18" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于无线组网这事，门路还挺多的，特别是国内很多论坛上大家天天都在讨论怎么给自己的大别墅去弄一个全方位无死角信号满格的Wi-Fi，不过真的讨论到复杂的细节，论坛老哥们都会跟你说“直接买菊花家的企业解决方案比较靠谱”，可见这个里面技术细节还蛮多的，一般人不太容易掌握。论文的第二章Wi-Fi Primer是一个非常好的技术科普，不过读起来还是需要花点时间，里面最重要的知识点包括：</span></p><ol style="box-sizing: border-box;margin-top: 0px;margin-bottom: 16px;padding-left: 2em;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" class="list-paddingleft-1"><li style="box-sizing: border-box;"><p><span leaf="">除了AP、SSID、WPA2/3这些大家接触比较多的概念，我们还应该知道有一个Basic Service Set（BSS）的概念：一个BSS包含了一个核心的AP和相关的许多client设备，且这个BSS的设备均使用相同的频段和参数；注意到上图中一个AP支持了多个频段（通常也对应了多个BSS），而每个BSS都有一个独特的BSSID；</span></p></li><li style="box-sizing: border-box;margin-top: 0.25em;"><p><span leaf="">在Wi-Fi加密通信过程中，除了WPA2/3标准要求的会话密钥（通过4-way handshake认证过程生成出来一个临时的Pairwise Transient Key，PTK）之外，还有一个用来加密广播（broadcast）和多播（multicast）消息的Group Temporal Key（GTK）；</span></p></li></ol><p data-startline="23" data-endline="23" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">带着这些预备知识，我们就要看看论文研究的这个client isolation机制是什么东东了。所谓的client isolation机制其实就是无线网络中的网络设备（无线路由器或者AP）对内部的client设备之间互相通信的隔离机制（防止内部设备被攻击后变成特洛伊木马然后到处内网巡游），这里面的隔离机制包括两种：一种是基于密码学的隔离机制，即给不同client分配不同的会话密钥，使得一个client就算能监听到空中的数据包（不是给它自己的），也没法解密；另一种是由网络设备执行的访问控制，即路由器网关或AP在MAC层和IP层上直接进行丢包处理，这里又可以分为同一个BSS之内的隔离（Intra-BSSID isolation）和BSS之间的隔离（Inter-BSSID isolation），注意那种通过把不同的client隔离到不同的SSID的做法不在我们的讨论范围之内。</span></p><p data-startline="25" data-endline="25" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这篇论文的出彩之处在于它发现了网络设备在实施client isolation过程中的诸多疏忽之处。首先，由于GTK是同一个BSS内部共享的，因此攻击者完全可以滥用这个GTK来伪造加密的广播和多播包，实施注入攻击，当然这里要提一下，在使用passphrase的WPA2家用网络环境下甚至都不需要靠GTK完成攻击，攻击者只需要监听其他设备入网的过程（借助自己掌握的passphrase知识）就可以解密其他client的会话密钥，而对于WPA3来说要复杂一些，需要弄一个恶意的AP去欺骗用户（不太现实）。总之，利用GTK实施注入攻击，破坏了基于密码学的client isolation机制。</span></p><p data-startline="27" data-endline="27" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">其次，论文发现了在client isolation中的一个大问题：对于IP层和MAC层的数据包缺乏完整性校验这个历史黑锅，client isolation也没有严格的检查，这就会让攻击者可以利用一系列恶意构造的数据包实施isolation绕过。下图展示的这个被称为gateway bouncing的攻击就是构造了一个特定的数据包，它在IP层上的source和destination是不允许通信的，但是攻击者很坏地把MAC层上的destination改成了网关的值，也就是说在MAC层传输的时候，这个包会被丢给gateway，而gateway又回去检查IP层的信息，然后就傻乎乎地转发给了特定的目标（隔离绕过达成！）</span></p><p data-startline="29" data-endline="29" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017827" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=7e3e5b78&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXm4hUkHWe7ibDibItHRpQDTHib2Kgz37lb9FyKyvQg6agSaL3Apt7IDzQB3AkNVlFIQOibabwCrw5C9QtSWcbuShanzr4pQXjwfSs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="31" data-endline="31" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">除了利用IP层和MAC层的不一致构造攻击，作者还在交换层上实施了另一种攻击：这种攻击关注了AP在工作上的一个特定设计——把每个BSSID绑定到了一个虚拟的hardware port（注意这里并不是TCP/IP层的那个端口，应该理解为特定的网口），这个port和有线以太网的网口是等价的，而过去就已经针对有线网的port stealing攻击（参见Blackhat Europe 2003的古老文章</span><em style="box-sizing: border-box;"><span leaf="">Man in the middle attacks</span></em><span leaf="">），那么本文作者也把这种攻击搬到了Wi-Fi网络上来：</span></p><p data-startline="33" data-endline="33" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017823" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=5bb5e1a3&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolViceQNIqVf3ICMcicYVueB0u12xWoErnwcfEmibibMSjUHaule4Q2X9MkOeed2Jre5ISOGC1oOaHMbmbkHXCkFaQibibBPYCERiaGlyQ%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="35" data-endline="35" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017826" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=d59b7b71&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolVBf4MMMRUxGDPIjHtxcvtF5bjSOprqj9icwKAkg8bvp5YZWRMoN1wvicljYXed6C7CDKREJibKfftX3anVjnnpxeuiaA5ibsDELIK4%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="38" data-endline="38" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">关于如何构造具体的攻击包来实施port stealing，这部分内容我们就偷懒了（偷懒才显得我们是在古法写作），以及后面在企业级的WPA网络上，如何利用前面的技术来实现中间人攻击，这些核心的内容大家如果感兴趣一定要去读原文，不要看总结！不要看总结！</span></p><p data-startline="40" data-endline="40" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后呢作者也去测试了各家路由器（主要是一些家用路由器，有一些还刷了OpenWRT和DD-WRT），测试下来发现基本上都没有做好client isolation：</span></p><p data-startline="42" data-endline="42" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017829" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=eb344fcf&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolUVXBfRs0Sib2k3XicAicCuPSmne9ZqzO395mxlAibUX8PbcU1Bu1oicHvTMc8wuP92jRcMy6UFIGxOrh2QiaAtBc3H9GZnjO4VZ4gQ0%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="44" data-endline="44" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" nodeleaf=""><img data-aistatus="1" data-imgfileid="100017828" style="box-sizing: content-box;border: 0px;vertical-align: middle;max-width: 100%;background-color: transparent;cursor: zoom-in;" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=82055107&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolXapWkOszFEDTySeHwaOzlZzEicbwuCibgm8Gg0jkvRtBhj4oudGBibWJt9ePBtQzsAgZKrKBkK6aVFaaaj3HbJEd7XqLCebT0Zxc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p data-startline="46" data-endline="46" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">作者还测试了校园网（为了测试企业级的WPA配置），问题也一样存在，不过在讨论相关防护措施的时候，作者也提到只要进行了VLAN划分隔离，那么很大程度上就阻止了攻击，但是一般的家用路由器似乎也不太支持VLAN隔离对不对？最后作者也建议，Wi-Fi相关的标准制定组织要好好来规范一下client isolation的实施细节才行了！</span></p><p data-startline="48" data-endline="48" style="box-sizing: border-box;margin: 0px 0px 16px;color: rgb(51, 51, 51);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">本文还提供了相关测试代码，大家可以使用一下，钱老师表示也欢迎大家包括测试结果给他们：</span></p><blockquote style="box-sizing: border-box;padding: 0px 1em;margin: 0px 0px 16px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">代码：<a href="https://github.com/seclab-ucr/airsnitch" target="_blank">https://github.com/seclab-ucr/airsnitch</a></span></p></blockquote><hr style="box-sizing: content-box;height: 0.25em;margin: 24px 0px;border: 0px;padding: 0px;background-color: rgb(231, 231, 231);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"/><blockquote style="box-sizing: border-box;padding: 0px 1em;margin-top: 0px;margin-right: 0px;margin-bottom: 0px !important;margin-left: 0px;font-size: 17.5px;border-left: 0.25em solid rgb(221, 221, 221);color: rgb(119, 119, 119);font-family: -apple-system, BlinkMacSystemFont, &#34;Segoe UI&#34;, Roboto, &#34;Helvetica Neue&#34;, Helvetica, Arial, sans-serif, &#34;Apple Color Emoji&#34;, &#34;Segoe UI Emoji&#34;, &#34;Segoe UI Symbol&#34;;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: 0.35px;orphans: 2;text-align: start;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><p style="box-sizing: border-box;margin: 0px;"><span leaf="">论文：<a href="https://www.cs.ucr.edu/~zhiyunq/pub/ndss26_airsnitch.pdf" target="_blank">https://www.cs.ucr.edu/~zhiyunq/pub/ndss26_airsnitch.pdf</a></span></p></blockquote><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>



<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=db984922&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501481%26idx%3D1%26sn%3D8fc7b1ec6ca8b68d32e6152408f0f910">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Fri, 06 Mar 2026 23:42:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 阅读推荐 2026-02-26 Frida + js  -&gt; React Native</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501470&amp;idx=1&amp;sn=ddf1bfb143aa7c49f6935a9c439b7951</link>
      <description>用 frida 向 React Native 动态注入 js 代码</description>
      <content:encoded><![CDATA[<p><span>0xcc</span> <span>2026-02-26 20:20</span> <span style="display: inline-block;">上海</span></p>




  <p>以下文章来源于：非尝咸鱼贩</p>
  <strong>非尝咸鱼贩</strong>
  <p>临渊羡鱼，不如在家咸鱼</p>



  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=6e939805&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_jpg%2FNBEba9EhqplqaK6ByoeNtIzvmZHCLFlO3OHcX9rPQTLzyQicVgic4J23Mpo5kjQ6NZsAjr2177Ju2OzFOicROsM6DnIVib79wliahvmZY6L2CcBk%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>用 frida 向 React Native 动态注入 js 代码</p>
  <h1 style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 24px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;" data-pm-slice="0 0 []"><span style="box-sizing: border-box;"><span leaf="">动机和背景</span></span></h1><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">我好像有个偏小众的恶趣味，就是给别人生产环境的应用开 js 控制台。虽然几年前发的那个某小程序的思路早就不能用了。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最近看到国外开发者 Pilfer 一直在社交网络上宣传他的新产品 Bytecode Studio，这是一款专门用于反编译和分析 React Native 字节码的工具。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://bytecodestudio.com" target="_blank">https://bytecodestudio.com</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">他在两年前写过一篇博客 Reverse Engineering and Instrumenting React Native Apps：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://pilfer.github.io/mobile-reverse-engineering/react-native/reverse-engineering-and-instrumenting-react-native-apps/" target="_blank">https://pilfer.github.io/mobile-reverse-engineering/react-native/reverse-engineering-and-instrumenting-react-native-apps/</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这篇文章介绍了在 Android 平台的 legacy 架构下动态向当前运行的 React Native 应用注入 JavaScript 代码的过程。通过 js 层的 hook，他可以实现拦截网络请求、JSON 序列化，以及无意中 dump 一些 UI 层级结构等功能。文章里的相关代码开源了：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://github.com/Pilfer/heresy" target="_blank">https://github.com/Pilfer/heresy</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">他的 GitHub 主页还有一个基于 Rust 的 hermes 字节码反编译工具。有了这些技术积累，并不奇怪他会做 Bytecode Studio。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而数天前 React Native 发布了 0.74 版本，默认启用 Bridgeless 架构。请注意之前引用的文章只讲了 legacy 架构。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://reactnative.dev/blog/2024/04/22/release-0.74" target="_blank">https://reactnative.dev/blog/2024/04/22/release-0.74</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而还是这几天，radare2 发布了一款插件 r2hermes，专门用于分析 hermes 字节码。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://github.com/radareorg/r2hermes" target="_blank">https://github.com/radareorg/r2hermes</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">虽然笔者不做客户端，这一系列内容勾起了我的兴趣，也就有了今天这篇文章。</span></p><h2 style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 22px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span style="box-sizing: border-box;"><span leaf="">Legacy 和 Bridgeless 是什么鬼</span></span></h2><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">React Native 有两套架构。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">Legacy 架构下，JavaScript 运行在独立线程，通过 Bridge 与 Native 通信。Native 侧核心类在 iOS 是 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">RCTCxxBridge</span></code><span leaf="">，Android 是 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">CatalystInstanceImpl</span></code><span leaf="">。所有跨语言调用都要序列化成 JSON 经过 Bridge 传递。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">0.74 版本默认启用的 Bridgeless 架构移除了这座&#34;桥&#34;，JavaScript 直接调用 Native 方法，性能更好。iOS 侧核心类变为 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">RCTInstance</span></code><span leaf="">，Android 侧变为 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">ReactInstance</span></code><span leaf="">。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">向其中注入 JS 代码可以拦截网络请求、修改界面、调试业务逻辑等，静态反编译和动态修改运行时是软件逆向常见的手法。下面结合具体代码来说明实现思路。</span></p><h2 style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 22px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span style="box-sizing: border-box;"><span leaf="">脚本实现</span></span></h2><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">我们一共要支持 4 种情况：Android 和 iOS 的 Legacy 和 Bridgeless 架构。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">frida 里可以简单实用 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">ObjC.classes</span></code><span leaf=""> 和 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">Java.classes</span></code><span leaf=""> 来检查类是否存在。</span></p><table style="box-sizing: border-box;border-collapse: collapse;display: table;text-align: left;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-size: 16px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><thead><tr style="box-sizing: border-box;border-width: 1px 0px 0px;border-right-style: initial;border-bottom-style: initial;border-left-style: initial;border-right-color: initial;border-bottom-color: initial;border-left-color: initial;border-image: initial;border-top-style: solid;border-top-color: rgb(204, 204, 204);background-color: white;"><th style="box-sizing: border-box;text-align: left;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;font-weight: bold;background-color: rgb(240, 240, 240);"><p><span leaf="">平台</span></p></th><th style="box-sizing: border-box;text-align: left;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;font-weight: bold;background-color: rgb(240, 240, 240);"><p><span leaf="">Legacy 架构</span></p></th><th style="box-sizing: border-box;text-align: left;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;font-weight: bold;background-color: rgb(240, 240, 240);"><p><span leaf="">Bridgeless 架构</span></p></th></tr></thead><tbody><tr style="box-sizing: border-box;border-width: 1px 0px 0px;border-right-style: initial;border-bottom-style: initial;border-left-style: initial;border-right-color: initial;border-bottom-color: initial;border-left-color: initial;border-image: initial;border-top-style: solid;border-top-color: rgb(204, 204, 204);background-color: white;"><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><p><span leaf="">iOS</span></p></td><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><code style="box-sizing: border-box;font-size: 1em;font-family: source-code-pro, Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;"><span leaf="">RCTCxxBridge</span></code></td><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><code style="box-sizing: border-box;font-size: 1em;font-family: source-code-pro, Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;"><span leaf="">RCTInstance</span></code></td></tr><tr style="box-sizing: border-box;border-width: 1px 0px 0px;border-right-style: initial;border-bottom-style: initial;border-left-style: initial;border-right-color: initial;border-bottom-color: initial;border-left-color: initial;border-image: initial;border-top-style: solid;border-top-color: rgb(204, 204, 204);background-color: rgb(248, 248, 248);"><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><p><span leaf="">Android</span></p></td><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><code style="box-sizing: border-box;font-size: 1em;font-family: source-code-pro, Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;"><span leaf="">CatalystInstanceImpl</span></code></td><td style="box-sizing: border-box;font-size: 16px;border: 1px solid rgb(204, 204, 204);padding: 5px 10px;text-align: left;"><code style="box-sizing: border-box;font-size: 1em;font-family: source-code-pro, Menlo, Monaco, Consolas, &#34;Courier New&#34;, monospace;"><span leaf="">com.facebook.react.runtime.ReactInstance</span></code></td></tr></tbody></table><h3 style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 20px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span style="box-sizing: border-box;"><span leaf="">拦截 JS Bundle 加载</span></span></h3><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">React Native 的 JS 代码以 Bundle 的形式加载。如果应用版本很旧，可能用的是压缩混淆后的 js，分析很简单。不过目前多数情况都是 hemes 字节码，分析门槛比前者显著提高。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">我们可以拦截以下方法拿到 js 或者字节码。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">iOS legacy 架构：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">-[RCTCxxBridge executeSourceCode:withSourceURL:sync:]</span></code><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">-[RCTCxxBridge executeApplicationScript:url:async:]</span></code></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">iOS bridgeless 架构：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">-[RCTInstance _loadJSBundle:]</span></code></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">Android legacy 架构：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">CatalystInstanceImpl</span></code><span leaf=""> 的 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">loadScriptFromAssets</span></code><span leaf=""> 以及 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">loadScriptFromFile</span></code></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">Android bridgeless 架构：</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">com.facebook.react.runtime.ReactInstance</span></code><span leaf=""> 的 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">loadJSBundleFromFile</span></code><span leaf=""> 和 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">loadJSBundleFromAssets</span></code></p><h3 style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 20px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span style="box-sizing: border-box;"><span leaf="">主动注入 JS 代码</span></span></h3><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">React Native 核心的逻辑使用 C++ 实现，用 frida 直接交互虽然不是不可能，但是构造参数非常麻烦，还得处理内存管理和偏移量适配等问题。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">从 Java 层或者 Objective-C 层并没有提供可以传入字符串的接口，只能把 js 写入临时的 bundle 然后载入。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在文章开头提到的 Pilfer 的博客里，作者为了拿到当前运行的 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">CatalystInstanceImpl</span></code><span leaf=""> 实例，用了比较 hack 的方法，创建定时器等待 loadScriptFromAssets 被调用，然后在 hook 里把实例保存下来。</span></p><div style="margin-bottom: 24px;"><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="javascript"><code><span leaf=""><span class="code-snippet__comment">// This is the app identifier you&#39;re trying to hook</span></span></code><br/><code><span leaf=""><span class="code-snippet__keyword">const</span> package_name = <span class="code-snippet__string">&#39;com.foo.bar&#39;</span>;</span></code><br/><code><span leaf=""><span class="code-snippet__comment">// Write the hermes-hook.js payload to file</span></span></code><br/><code><span leaf=""><span class="code-snippet__keyword">const</span> f = <span class="code-snippet__keyword">new</span> <span class="code-snippet__title">File</span>(<span class="code-snippet__string">`/data/data/</span><span class="code-snippet__string"><span class="code-snippet__subst">${package_name}</span></span><span class="code-snippet__string">/files/hermes-hook.js`</span>, <span class="code-snippet__string">&#39;w&#39;</span>);</span></code><br/><code><span leaf="">f.<span class="code-snippet__title">write</span>(<span class="code-snippet__string">`console.log(Object.keys(this)); console.log(&#39;hello from React Native!&#39;);`</span>);</span></code><br/><code><span leaf="">f.<span class="code-snippet__title">close</span>();</span></code><br/><code><span leaf=""><span class="code-snippet__title">Java</span>.<span class="code-snippet__title">perform</span>(<span class="code-snippet__keyword">function</span> () {</span></code><br/><code><span leaf="">  <span class="code-snippet__comment">// Lazily wait for the class to be available to us  </span></span></code><br/><code><span leaf="">  <span class="code-snippet__keyword">var</span> looper = <span class="code-snippet__built_in">setInterval</span>(<span class="code-snippet__keyword">function</span> () {</span></code><br/><code><span leaf="">    <span class="code-snippet__keyword">try</span> {</span></code><br/><code><span leaf="">      <span class="code-snippet__keyword">const</span> <span class="code-snippet__title">CatalystInstanceImpl</span> = <span class="code-snippet__title">Java</span>.<span class="code-snippet__title">use</span>(<span class="code-snippet__string">&#34;com.facebook.react.bridge.CatalystInstanceImpl&#34;</span>);</span></code><br/><code><span leaf="">      <span class="code-snippet__title">CatalystInstanceImpl</span>.<span class="code-snippet__property">loadScriptFromAssets</span>.<span class="code-snippet__property">implementation</span> = <span class="code-snippet__keyword">function</span> (<span class="code-snippet__params">assetManager, assetURL, z</span>) {</span></code><br/><code><span leaf="">        <span class="code-snippet__comment">// Load the original index.android.bundle</span></span></code><br/><code><span leaf="">        <span class="code-snippet__variable">this</span>.<span class="code-snippet__title">loadScriptFromAssets</span>(assetManager, assetURL, z);</span></code><br/><code><span leaf="">        <span class="code-snippet__comment">// Load custom JS into the global hermes context</span></span></code><br/><code><span leaf="">        <span class="code-snippet__variable">this</span>.<span class="code-snippet__title">loadScriptFromFile</span>(<span class="code-snippet__string">`/data/data/</span><span class="code-snippet__string"><span class="code-snippet__subst">${package_name}</span></span><span class="code-snippet__string">/files/hermes-hook.js`</span>, <span class="code-snippet__string">`/data/data/</span><span class="code-snippet__string"><span class="code-snippet__subst">${package_name}</span></span><span class="code-snippet__string">/files/hermes-hook.js`</span>, z);</span></code><br/><code><span leaf="">      };</span></code><br/><code><span leaf="">      <span class="code-snippet__built_in">clearInterval</span>(looper);</span></code><br/><code><span leaf="">    } <span class="code-snippet__keyword">catch</span> (error) {</span></code><br/><code><span leaf="">      <span class="code-snippet__variable">console</span>.<span class="code-snippet__title">log</span>(<span class="code-snippet__string">&#39;failed&#39;</span>);</span></code><br/><code><span leaf="">    }</span></code><br/><code><span leaf="">  }, <span class="code-snippet__number">10</span>);</span></code><br/><code><span leaf="">});</span></code><br/></pre></p></div><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">其实 frida 本身的 Java.choose 和 ObjC.choose 就可以直接在内存里检索到实例。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">以 iOS 的 legacy 架构为例：</span></p><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="cpp"><code><span leaf=""><span class="code-snippet__type">const</span> nsData = ObjC.classes.NSData.<span class="code-snippet__built_in">dataWithContentsOfFile_</span>(path);</span></code><br/><code><span leaf=""><span class="code-snippet__type">const</span> nsURL = ObjC.classes.NSURL.<span class="code-snippet__built_in">fileURLWithPath_</span>(path);</span></code><br/><code><span leaf="">instance[<span class="code-snippet__string">&#34;- enqueueApplicationScript:url:onComplete:&#34;</span>](nsData, nsURL, <span class="code-snippet__literal">NULL</span>);</span></code><br/></pre></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">新架构注入 js bundle 用的是 </span><span leaf="">RCTInstance 的 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{&#34;style&#34;:&#34;box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, \&#34;PingFang SC\&#34;, Cambria, Cochin, Georgia, Times, \&#34;Times New Roman\&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;&#34;},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;},&#34;node&#34;,{&#34;tagName&#34;:&#34;code&#34;,&#34;attributes&#34;:{&#34;style&#34;:&#34;box-sizing: border-box;font-size: 14px;font-family: \&#34;Operator Mono\&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;&#34;},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">_loadJSBundle:</span></code><span leaf=""> 方法。但是没想到吧，还有惊喜。这个方法在三年前的提交改过名字，之前是没有下划线的</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf=""><a href="https://github.com/facebook/react-native/commit/0dcf81b4f19484a4e43" target="_blank">https://github.com/facebook/react-native/commit/0dcf81b4f19484a4e43</a></span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">不过这个适配好做，直接 </span><span leaf="" style="line-height: 26px;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;">respondsToSelector:</span><span leaf=""> 判断一下就行。</span></p><p style="box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 20px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="" data-pm-slice="1 1 [&#34;heading&#34;,{&#34;tagName&#34;:&#34;h3&#34;,&#34;attributes&#34;:{&#34;style&#34;:&#34;box-sizing: border-box;margin-top: 30px;margin-bottom: 15px;color: rgb(0, 0, 0);font-weight: bold;font-size: 20px;font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, \&#34;PingFang SC\&#34;, Cambria, Cochin, Georgia, Times, \&#34;Times New Roman\&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;&#34;},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;,&#34;level&#34;:3},&#34;node&#34;,{&#34;tagName&#34;:&#34;span&#34;,&#34;attributes&#34;:{&#34;style&#34;:&#34;box-sizing: border-box;&#34;},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]" style="box-sizing: border-box;">获取返回值</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">在这里遇到了另一个问题，上层封装的加载 js 接口并不等待脚本执行完成，也没有提供获取执行结果的接口。虽然我们在 js 脚本里使用 </span><code style="box-sizing: border-box;font-size: 14px;font-family: &#34;Operator Mono&#34;, Consolas, Monaco, Menlo, monospace;overflow-wrap: break-word;padding: 2px 4px;border-radius: 4px;margin: 0px 2px;color: rgb(30, 107, 184);background-color: rgba(27, 31, 35, 0.05);word-break: break-all;"><span leaf="">console.log</span></code><span leaf=""> 可以在 iOS 的系统日志或者 Android 的 logcat 里看到输出，对手工测试的场景绰绰有余，但如果想开发自动化工具，到处 grep 就不太优雅。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">很容易想到一个很糟糕的思路：js 里内置了 XMLHttpRequest，直接把执行的结果回传到一个本地监听的 http 服务器上。也不是不可以。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">那么既然我们想到了 React Native 内置函数这一点，又有二进制级别的函数插桩，不妨直接用 alert 当作 callback 回传。这并不是笔者原创，多年以前就有人用这个思路实现 WebView 的 js 和 native 互传数据了。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">先把待执行代码包装一下：</span></p><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="php"><code><span leaf=""><span class="code-snippet__keyword">const</span> <span class="code-snippet__variable">wrapped </span>= `</span></code><br/><code><span leaf=""><span class="code-snippet__keyword">try</span> {</span></code><br/><code><span leaf="">  <span class="code-snippet__keyword">var</span> r = (<span class="code-snippet__function"><span class="code-snippet__keyword">function</span></span><span class="code-snippet__function">() </span>{ <span class="code-snippet__keyword">return</span> ${script} })();</span></code><br/><code><span leaf="">  <span class="code-snippet__title">alert</span>(<span class="code-snippet__string">&#39;frida-callback:${id}:&#39;</span> + JSON.<span class="code-snippet__title">stringify</span>(r));</span></code><br/><code><span leaf="">} <span class="code-snippet__keyword">catch</span>(e) {</span></code><br/><code><span leaf="">  <span class="code-snippet__title">alert</span>(<span class="code-snippet__string">&#39;frida-callback:${id}:&#39;</span> + JSON.<span class="code-snippet__title">stringify</span>({<span class="code-snippet__attr"> error</span>: e.message }));</span></code><br/><code><span leaf="">}</span></code><br/><code><span leaf="">`;</span></code><br/></pre></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">接着这个字符串 frida-callback:...</span><span leaf=""> 会被封装成字典格式传到 native 层。以 iOS 为例，就是一个 NSMutableDictionary，其中的 key 是 &#34;message&#34;。但这里有一个小坑。从 6 年前的一个提交到截止本文发布的版本，这个 native 方法接受的参数是一个 C++ 的对象，解引用第一个指针才是 NSMutableDictionary：</span></p><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="php"><code><span leaf=""><span class="code-snippet__title">RCT_EXPORT_METHOD</span>(alertWithArgs : (JS::<span class="code-snippet__variable">NativeAlertManager</span>::<span class="code-snippet__variable">Args</span> &amp;)args callback : (RCTResponseSenderBlock)callback)</span></code></pre></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">而 2019 年的这个 a5ad0bf12468fc831c2a 提交当中，函数原型曾经是直接传的：</span></p><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="cs"><code><span leaf="">RCT_EXPORT_METHOD(alertWithArgs:(NSDictionary *)<span class="code-snippet__keyword">args</span></span></code><br/><code><span leaf="">                  callback:(RCTResponseSenderBlock)callback)</span></code><br/></pre></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这就导致同样的代码会崩，还得特殊处理一下。不过都 7 年了，如果不是特别执着兼容性，直接按照新的函数原型来构造参数就好了。</span></p><p class="code-snippet__fix code-snippet__js"><ul class="code-snippet__line-index code-snippet__js"></ul><pre class="code-snippet__js" data-lang="javascript"><code><span leaf="">  <span class="code-snippet__keyword">const</span> { <span class="code-snippet__title">RCTAlertManager</span> } = <span class="code-snippet__title">ObjC</span>.<span class="code-snippet__property">classes</span>;</span></code><br/><code><span leaf="">  <span class="code-snippet__keyword">const</span> method = <span class="code-snippet__title">RCTAlertManager</span>[<span class="code-snippet__string">&#34;- alertWithArgs:callback:&#34;</span>];</span></code><br/><code><span leaf="">  <span class="code-snippet__keyword">const</span> original = method.<span class="code-snippet__property">implementation</span>;</span></code><br/><code><span leaf="">  method.<span class="code-snippet__property">implementation</span> = <span class="code-snippet__title">ObjC</span>.<span class="code-snippet__title">implement</span>(</span></code><br/><code><span leaf="">    method,</span></code><br/><code><span leaf="">    <span class="code-snippet__keyword">function</span> (</span></code><br/><code><span leaf="">      handle: NativePointer,</span></code><br/><code><span leaf="">      selector: NativePointer,</span></code><br/><code><span leaf="">      args: NativePointer,</span></code><br/><code><span leaf="">      callback: NativePointer,</span></code><br/><code><span leaf="">    ) {</span></code><br/><code><span leaf="">      <span class="code-snippet__keyword">const</span> message = <span class="code-snippet__keyword">new</span> <span class="code-snippet__title">ObjC</span>.<span class="code-snippet__title">Object</span>(args.<span class="code-snippet__title">readPointer</span>()) <span class="code-snippet__comment">// &lt;- 注意 readPointer</span></span></code><br/><code><span leaf="">        .<span class="code-snippet__title">objectForKey_</span>(<span class="code-snippet__string">&#34;message&#34;</span>)</span></code><br/><code><span leaf="">        .<span class="code-snippet__title">toString</span>();</span></code><br/><code><span leaf="">      <span class="code-snippet__variable">console</span>.<span class="code-snippet__title">debug</span>(<span class="code-snippet__string">`React Native alert(</span><span class="code-snippet__string"><span class="code-snippet__subst">${message}</span></span><span class="code-snippet__string">)`</span>);</span></code><br/><code><span leaf="">      <span class="code-snippet__keyword">return</span> <span class="code-snippet__title">original</span>(handle, selector, args, callback);</span></code><br/><code><span leaf="">    },</span></code><br/><code><span leaf="">  );</span></code><br/><code><span leaf="">  <span class="code-snippet__variable">console</span>.<span class="code-snippet__title">log</span>(<span class="code-snippet__string">&#39;replaced RCTAlertManager[&#34;- alertWithArgs:callback:&#34;]&#39;</span>);</span></code><br/></pre></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">这个 Module 看上去不受 bridgeless 架构的影响，都可以用同样的方式 hook。</span></p><p style="box-sizing: border-box;margin: 0px;font-size: 16px;padding-top: 8px;padding-bottom: 8px;line-height: 26px;color: rgb(0, 0, 0);font-family: Optima-Regular, Optima, PingFangSC-light, PingFangTC-light, &#34;PingFang SC&#34;, Cambria, Cochin, Georgia, Times, &#34;Times New Roman&#34;, serif;font-style: normal;font-variant-ligatures: normal;font-variant-caps: normal;font-weight: 400;letter-spacing: normal;orphans: 2;text-align: justify;text-indent: 0px;text-transform: none;widows: 2;word-spacing: 0px;-webkit-text-stroke-width: 0px;white-space: normal;background-color: rgb(255, 255, 255);text-decoration-thickness: initial;text-decoration-style: initial;text-decoration-color: initial;"><span leaf="">最后看看效果，搞了个类似 F12 的东西：</span></p><p style="text-align: center;margin-bottom: 24px;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100002113" data-ratio="0.6620370370370371" data-s="300,640" type="block" data-type="png" data-w="1080" style="height: auto !important;" src="https://wechat2rss.xlab.app/img-proxy/?k=772efa0d&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FNBEba9Ehqplpvkco8P30MRNwrcBt6RXCian9df4eSDBzmxOZz38hRlb07CjMpyicIfQNIgYGnP6G9n8Q1ky5WWMHrVN1xXl19TM5V0rx55Txw%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="%27%27">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=96a5dc12&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501470%26idx%3D1%26sn%3Dddf1bfb143aa7c49f6935a9c439b7951">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Thu, 26 Feb 2026 20:20:00 +0800</pubDate>
    </item>
    <item>
      <title>G.O.S.S.I.P 2026 新春总动员（5）：摧毁 WWW</title>
      <link>https://mp.weixin.qq.com/s?__biz=Mzg5ODUxMzg0Ng==&amp;mid=2247501468&amp;idx=1&amp;sn=74a1965f52fb01dcb4d07ff328488ace</link>
      <description>如果要回到过去，摧毁一项技术，从而让AI无法统治人类，应该怎么办？</description>
      <content:encoded><![CDATA[<p>原创 <span>G.O.S.S.I.P</span> <span>2026-02-24 20:33</span> <span style="display: inline-block;">上海</span></p>






  
  <p><img src="https://wechat2rss.xlab.app/img-proxy/?k=b97ac88a&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_jpg%2FeQ0Wf6rqolWDhYnMkhHlaMVCz2Y7yGOLqXjoD1gQ8iaGPDibI4PvZTHcialvsOCQVZm119FTyBbHI9CeZgXkbcWWLoBAVGDQztehzgewfvviavY%2F0%3Fwx_fmt%3Djpeg"/></p>
  <p>如果要回到过去，摧毁一项技术，从而让AI无法统治人类，应该怎么办？</p>
  <p><span leaf="">提问：如果要回到过去，摧毁一项技术，从而让AI无法统治人类应该怎么办？</span></p><p><span leaf="">答案当然是摧毁掉万维网（World Wide Web），只要没有万维网，机器就没法学习知识，除了发热之外什么也做不了~</span></p><p><span leaf="">那么问题来了，怎么摧毁</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">万维网？<span textstyle="" style="font-weight: bold;">请先访问如下网址</span>（诶，如果摧毁了万维网，下面的网址不就没了吗，那怎么摧毁万维网？）了解相关知识：</span></p><p><span leaf=""><a href="https://www.w3.org/History/1989/proposal.html" target="_blank">https://www.w3.org/History/1989/proposal.html</a></span></p><p><span leaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017815" data-ratio="0.8587311968606932" data-s="300,640" type="block" data-type="png" data-w="1529" src="https://wechat2rss.xlab.app/img-proxy/?k=fe683a43&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWnLDHE7OlEZYewpnM4R4MWTibPCq5iaKWFQusGfcRfYpkVxia3zulicN0xCibbXMtPOMU0eiauxSTyhceEOnWZticI2NVX3fXpbmBDNs%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></span></p><p><span leaf="">上面这便是</span><span leaf="">Tim Berners-Lee（爵士！）在1989年发明万维网时候的</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">原始提案。1989年，Tim Berners-Lee在</span><span leaf="">欧洲核子研究组织也就是CERN（法语：Conseil Européen pour la Recherche Nucléaire；英语：European Organization for Nuclear Research，1954年9月29日成立）</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">发明了万维网，看来物理学确实改变了世界。</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">Tim Berners-Lee不仅</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">创造了“万维网”（World Wide Web）这个词，并在1990年10月编写了第一个万维网服务器“httpd”和第一个客户端程序（浏览器及编辑器）“WorldWideWeb”。他还编写了第一版“超文本标记语言”（HyperText Markup Language，HTML），这种文档格式化语言具备超文本链接功能，成为Web的主要发布格式。随着Web技术的传播，他对URI、HTTP和HTML的初始规范进行了改进，并在更大范围内进行了讨论。<span textstyle="" style="font-weight: bold;text-decoration: line-through;">然后就是AI利用WWW学习并统治人类的历史了</span></span></p><p><span leaf="">在下面这个网址有一篇《WWW简史》，就差一位霍金来推广了：</span></p><p><span leaf=""><a href="https://www.w3.org/History.html" target="_blank">https://www.w3.org/History.html</a></span></p><p style="text-align: center;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017816" data-s="300,640" type="block" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=117ea6c9&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fsz_mmbiz_png%2FeQ0Wf6rqolXLYdsia39AJzLjrMM7gCK5vEiaiaUiamtrqiaxJRLPGmh2hibr0TveX9vQGI2150IVzuN6SnQDYZqA1IT7JpvYMYldZrw7t1zibtgBPg%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><hr style="border-style: solid;border-width: 1px 0 0;border-color: rgba(0,0,0,0.1);-webkit-transform-origin: 0 0;-webkit-transform: scale(1, 0.5);transform-origin: 0 0;transform: scale(1, 0.5);"/><p><span leaf="">不过我们今天的重头戏不是单纯地介绍WWW的历史，而是要带大家熟悉古早的WWW，从而更好地回去执行拯救人类的任务。可是现在哪有古早WWW给你熟悉？嘿嘿，CERN早就考虑好了，在如下网址（</span><span leaf="" data-pm-slice="1 1 [&#34;para&#34;,{&#34;tagName&#34;:&#34;p&#34;,&#34;attributes&#34;:{},&#34;namespaceURI&#34;:&#34;http://www.w3.org/1999/xhtml&#34;}]">如果摧毁了万维网悖论又来了）<span textstyle="" style="font-weight: bold;">给大家提供了一个完全模拟的复古环境</span>，专为人类特工准备：</span></p><p><span leaf=""><span textstyle="" style="font-weight: bold;"><a href="https://worldwideweb.cern.ch/" target="_blank">https://worldwideweb.cern.ch/</a></span></span></p><p><span leaf="">当你点击下面的链接，就会启动时光机，回到1989年，然后你可以尝试下如何操作（以及如何摧毁它）：</span></p><p><span leaf=""><a href="https://worldwideweb.cern.ch/browser/" target="_blank">https://worldwideweb.cern.ch/browser/</a></span></p><p style="text-align: center;" nodeleaf=""><img class="rich_pages wxw-img" data-aistatus="1" data-imgfileid="100017817" data-s="300,640" type="block" data-type="png" src="https://wechat2rss.xlab.app/img-proxy/?k=05d4ac89&amp;u=https%3A%2F%2Fmmbiz.qpic.cn%2Fmmbiz_png%2FeQ0Wf6rqolWAib3W28yib7RWu64P7MqOKeUp8vicW8LTjcMZhwibvMPqZ7z0bZj8KlptrzATY4wzmbD1sScSwuTaa8NWoGJ6yjGEpibDe2D6VRNc%2F640%3Fwx_fmt%3Dpng%26from%3Dappmsg"/></p><p><span leaf="">行动起来吧！祝人类能够得到拯救 <img class="rich_pages wxw-img" data-ratio="1" style="display:inline-block;width:20px;vertical-align:middle;background-size:cover;" data-w="20" src="https://wechat2rss.xlab.app/img-proxy/?k=ffa8e264&amp;u=https%3A%2F%2Fres.wx.qq.com%2Ft%2Fwx_fed%2Fwe-emoji%2Fres%2Fassets%2FExpression%2FExpression_55%402x.png"/><img class="rich_pages wxw-img" data-ratio="1" style="display:inline-block;width:20px;vertical-align:middle;background-size:cover;" data-w="20" src="https://wechat2rss.xlab.app/img-proxy/?k=ffa8e264&amp;u=https%3A%2F%2Fres.wx.qq.com%2Ft%2Fwx_fed%2Fwe-emoji%2Fres%2Fassets%2FExpression%2FExpression_55%402x.png"/><img class="rich_pages wxw-img" data-ratio="1" style="display:inline-block;width:20px;vertical-align:middle;background-size:cover;" data-w="20" src="https://wechat2rss.xlab.app/img-proxy/?k=ffa8e264&amp;u=https%3A%2F%2Fres.wx.qq.com%2Ft%2Fwx_fed%2Fwe-emoji%2Fres%2Fassets%2FExpression%2FExpression_55%402x.png"/></span></p><p style="display: none;"><mp-style-type data-value="3"></mp-style-type></p>


<p><a href="%27%27">阅读原文</a></p>
<p><a href="https://wechat2rss.xlab.app/link-proxy/?k=cd6a2304&amp;r=1&amp;u=https%3A%2F%2Fmp.weixin.qq.com%2Fs%3F__biz%3DMzg5ODUxMzg0Ng%3D%3D%26mid%3D2247501468%26idx%3D1%26sn%3D74a1965f52fb01dcb4d07ff328488ace">跳转微信打开</a></p>
]]></content:encoded>
      <pubDate>Tue, 24 Feb 2026 20:33:00 +0800</pubDate>
    </item>
  </channel>
</rss>