
RCE in PHP or how to bypass disable_functions in PHP installations
原文地址:https://lab.wallarm.com/rce-in-php-or-how-to-bypass-disable-functions-in-php-installations-6ccdbf4f52bb Today we wi...

原文地址:https://lab.wallarm.com/rce-in-php-or-how-to-bypass-disable-functions-in-php-installations-6ccdbf4f52bb Today we wi...

原文地址:https://www.betterhacker.com/2018/12/rce-in-hubspot-with-el-injection-in-hubl.html 本文講述如何利用HubL表示式語言中的漏洞在Hubspot伺服器...

原文地址:https://www.youtube.com/channel/UCDbWhUnMdhxi2bo-oZQ1m3Q This series focuses on analyzing Ransomware, starting with...

原文地址:https://xz.aliyun.com/t/3488 AI是手段,目標是安全,包括應用安全和AI安全。所以是AI for Application and AI Security,即AI for Security。 從應用安全的...

分享一個學習資料,從DEFCON 1 到 DEFCON 24 的所有資料,共 740G: magnet:?xt=urn:btih:b3f355fdc4f580b4496205878c843e796d23e037 PPT、影片、CTF 的抓包...

原文地址:https://xz.aliyun.com/t/3478 子域名探測是資訊蒐集階段的重要組成部分,這篇博文以簡潔明瞭的方式介紹了各種子域名探測技術。 為什麼要進行子域名探測? 子域名探測可以幫我們發現滲透測試中更多的服務,這將增加...

原文地址:https://payloads.online/archivers/2018-02-02/1 由於在內網滲透的過程中面對的網路環境都是千奇百怪的,我們需要探測連線情況。 需要使用到端口轉發技術來讓我們訪問到內網其他主機中,或者將內...

原文地址:https://hackmd.io/s/Hk-2nUb3Q Real World CTF Writeup 值得一看。 可以順便看下HITCON 2018 Orange 出的題目 One Line PHP Challenge 文章圖...

原文地址:https://payloads.online/archivers/2018-11-30/1 本次議題圍繞著Windows認證分別講解了: Pass The Hash Silver Tickets、Golden Tickets、 ...

簡報地址:https://2018.zeronights.ru/en/materials/ “Hacking is art, a hacker is an artist!”11月20-21日,Zeronights2018國際網路安全峰會在俄...