Author: Aegean Sea [SCG] 2008/09/06 (reprinted please keep this information) In the previous article, I roughly explained the following: 1. File integrity to prevent unauthorized modification2. Check during running to prevent LOADER3. Anti-debugging
There are many encrypted discs on the market today, which are burned in special forms. After you put it into the optical drive, a software installation screen will show you to enter the serial number, if the serial number is correct, a file browsing
1. Generally, encryption is shelling.
We often consider how to encrypt an executable file to ensure security?
Generally, shells are used. The working principle of the shelling tool is to encrypt and convert the code and data of executable files and
Injection point: http://www.bkjia.com/qiuzhiguwen/job.jsp? Num = 47075
1. First, determine whether injection exists. The manual detection method is not mentioned. 2. Determine the database type. /* Is used to determine whether it is MYSQL. The
CnCxzSec's Blog
0x00Directory
0x01 Introduction
0x02 crossdomain. xml configuration
0x03 Summary
0x01Introduction
The only restriction policy for cross-origin flash is the crossdomain. xml file, which limits whether flash can read and write
This hole was discovered by faker and Ah diming! And do the test!
The title is pretty long! Haha ~
This vulnerability seems to be a weakness, but it is also very useful. But knowing how to use him depends on myself. I just want to give a
Here you find my custom XSS and CSRF cheat sheet. I know that there are running good cheat sheets out there, but since some of them are offline from time to time, I decided to create a little collection of useful XSS stuff. I added some stuff
What's a Local File transfer sion?A local file transfer Sion (usually called "LFI") is a webhacking technique that allow simply to include files from a local location. that means that we can include a file that is outside of the web directory (if we
Author: H3art Data: Jan 20, 2013 first introduces url redirection. URL redirection (URL redirection, or URL redirection or Domain Name redirection) refers to the technology that directs a user to another URL when browsing a URL. It is often used to
It may be because there are too many tests for testing dolls. A friend asked me to check the security of his website a few days ago. Wow, it's a safe dog and a 360 website guard. How can this be done. The first step is to find a place where you can
1. this hole is not the title party; 2. first refer to the vulnerability http://www.bkjia.com/Article/201302/191898.html to share a major Internet manufacturers to prevent CSRF common problems; 3. in fact, before that, I mentioned with Jin long that
I found the background by hand, tried various weak passwords, and continued to see the title siteserver cms. Then I went to Baidu to find the latest website system, it seems that I have never been dug for a vulnerability. I am not familiar with
Every day on the internet, I always see a website hacked. I admire the techniques of those infiltration experts, and admire them as if they were in the water of the river. This afternoon I was chatting with sophia. He asked me to stand up. I agreed
Although I have set the reading permission for this post, I will not name it if our moderators, core, and honors have lent their IDs to others.
If some of your friends in the internal team really need an ID to read the post in the Forum, let me know.
The stored XSS code is directly imported into the database because it is not filtered out somewhere. This is also the result of a fuzz test. During the test, the title, description, and category of the test were all filtered out. Or the tag is
Today, I am going to watch a set of shadows and sleep for hundreds of times. I didn't think tudou was hijacked. -_-|!Start the cool dog music and listen to the live broadcaster and then sleep. -_-|!Let's go and have a look! Let's Go !~ Ps: xsser: I
Vulnerabilities include XSS, SQL injection, command execution, upload vulnerabilities, local inclusion, remote inclusion, Permission Bypass, information leakage, cookie forgery, and CSRF (cross-site request. These vulnerabilities are not only for
After the verification code is enabled for logon, The Zhengfang educational administration system can change the logon page address to bypass the verification code, so as to write a script to brute force crack the jwc01 password, or scan weak
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.
A Free Trial That Lets You Build Big!
Start building with 50+ products and up to 12 months usage for Elastic Compute Service