0%

BlueWhale OpenJudge Pwn Challenge WriteUp Part 1. Including "bof", "ROP", "shellcode", "canary", "test", "pwnalpha", "pwnbeta", "pwngamma", "pwndelta", "pwnepsilon", "pwnzeta", "pwneta", "pwntheta".

阅读全文 »

BlueWhale OpenJudge Web Challenge WriteUp Part 1. Including "Welcome to web", "Calculator", "RapidTyping", "XSS1", "XSS 2", "Basic SQL", "Basic PHP", "Basic PHP 2", "BabyXSS", "BasicFileInclude", "FxxkingBackdoor", "Global Page", "BabyCrack", "Baby Reverse", "Confused question", "ZipCracker".

阅读全文 »

社会工程学是一种操纵他人采取特定行动的行为,该行动不一定符合目标的最佳利益,其结果包括获取信息,取得访问权限或者让目标采取特定的行动。

阅读全文 »

Orange的一道代码审计题目,整个比赛期间的第一道web题,鄙人也认为是很难的一道题(1700多个队只解出来4个),赛后看了PDKT的题解,发现有很多可以在代码审计中学习的地方,还用到了前段时间在BlackHat USA上新提出的PHP反序列化技术,这里将分析一波。

阅读全文 »