China Resources Shuanghe roaming from mailbox to Group intranet
Account Design ProblemsDetailed description:
The problem started with: https://webmail.dcpc.com/owa/ (China Resources Shuanghe Mail System)Outlook mailbox, can be cracked, get more than
I heard that plug-ins can also be used to steal train tickets? Don't tease me! | Focus on hackers and geeks
On April 9, December 8, train tickets for the Spring Festival began to be pre-sold. A large number of "city migratory birds" flocked to 12306
Tami financial information leakage (up to 0.2 billion RMB)
Involving 0.2 billion RMB, 20 points is definitely not enough!Scared to death, login a 100 millionDetailed description:
https://github.com/superman66/ChiQiFound/blob/0f45e27f1309e668417958357
Shuanghui OA system becomes a horse farm/all employees leak Plaintext Passwords/has logged on to General Manager OA
Recently wooyun about Shuanghui group vulnerabilities, a greater impact that is WooYun-2015-120872, but this vulnerability, the
Malicious Software Analysis Using RTF files as transmission Vectors
During the analysis of malware, we often see that attackers use features to transmit and confuse malware in an innovative way. Recently, we found that the number of samples that use
TrueCrypt and CryptSetup)
Select a hard disk without a system.
1. Install the Windows system on the hard disk. The installation process is simple. You can directly start the computer on the CD, or install it on PE.
2. After Windows is installed,
How can I set up a 14-digit natural number password without being guessed?
Original problem address: http://www.zhihu.com/question/36989779Problem description
An APP is displayed with a common calculator. After you enter a specific number, you can
Weak background passwords of a game in (various pictures and classification information are included) Podoano ** \ cangjing * \ yanze ** \ jizawa ** \ xiaoze ** and other beautiful pictures, sent 5wb to the communityDetailed description:
Information Leakage of auspicious aviation big wave personnel (domain password + work system password + new mailbox password)
I saw your internal weak password modification email ~ Just a reminder is not mandatory... =. =Detailed description:
[Email
A vulnerability in ruiqibao allows you to log on to an account at will.
Ruiqibao Internet Financial Management Investment and Financing platform is a P2C Internet Financial investment platform established by Beijing ruiqibao Information Service Co.,
Password retrieval vulnerability in the monitoring eye Network Camera (any user password can be reset \ user privacy is involved)
Xmeye downloads the first web camera mobile phone viewing software, and the password retrieval vulnerability exists,
Getshell can threaten the Intranet caused by improper configuration of a system in changkelong supermarket chains
Hundreds of Chain EnterprisesGetshell caused by improper configurationDetailed description:
System address: http: // 58.211.236.158: 808
Run a command somewhere in the home of Beijing
RTDetailed description:
Jboss invoker/JMXInvokerServlet Code ExecutionThe http://oa.juran.com.cn: 8086/invoker/JMXInvokerServletProof of vulnerability:
Solution:
Security suggestion: add an access
The SQL blind injection vulnerability exists somewhere on the main site of a Provincial Branch of China Unicom.
RtDetailed description:
The post SQL blind injection vulnerability exists in the following link:
Proof of vulnerability:
Run it with
The main site of Shi nun's milk powder, getshell, involves millions of member users (a large increase in baby data after the establishment of the second child)
(After the establishment of the second child, there is a large increase in baby
SQL Injection of an International Hotel Group system (leaked name/ID card/phone/address/internal financial information/position/text message/Contract/employee information/partner Information)
It took four days to prove its hazard .. Before running,
An SQL injection vulnerability exists in a management system of Faw.
RtDetailed description:
Post injection
POST/pub_yz.jsp HTTP/1.1Content-Length: 95Content-Type: application/x-www-form-urlencodedX-Requested-With: XMLHttpRequestReferer.
SQL Injection exists in the OA system of a branch of CNPC
An OA of CNPC has SQL InjectionDetailed description:
POST /Login1.aspx HTTP/1.1Host: **.**.**.**:8080User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:28.0) Gecko/20100101 Firefox/28.0Accept:
I hijack your dns
This article divides Dns into two types: host or embedded device dns, and website domain name dns, to describe the harm caused by the fall of dns.I. vrodns dns hijackingThe dns of your local network connection is obtained through
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.
A Free Trial That Lets You Build Big!
Start building with 50+ products and up to 12 months usage for Elastic Compute Service