阿里云安全专家,主要负责阿里云云产品安全。
https://www.owasp.org/index.php/Category:OWASP_Application_Security_Assessment_Standards_Project http://www.
http://msdn.microsoft.com/zh-cn/library/77hkfhh8(v=vs.
http://timashley.me/node/368 SSL Strip This tool provides a demonstration of the HTTPS ...
为加强北海市电子政务系统的安全管理,形成科学有效、反应迅速的处置机制,提高网络与信息安全事件的应急处置能力,最大限度地保障系统的设备安全、数据安全和运行安全,根据《中华人民共和国突发事件应对法》、公安部《关于信息安全等级保护工作的实施意见》、《广西壮族自治区政府系统电子政务安全保密管理办法》(桂政办发〔2008〕64号)和《北海市突发公共事件应急预案》等有关法律法规和规定要求,结合我市实际,制定本预案。
http://www.jb51.net/hack/17239.html
http://book.51cto.com/art/201010/231916.htm http://www.
http://www.amazon.com/Database-Security-Alfred-Basta/dp/1435453905/ref=sr_1_251?s=books&ie=UTF8&qid=1316328635&sr=1-251 http://www.
http://iase.disa.mil/stigs/app_security/database/oracle.
www.amzease.com
http://www.laureatebookstore.com/
受影響PHP版本 PHP ≤ 5.3.6 CVE: CVE 2011-2202 PHP bug #54939 File path injection vulnerability in R...
http://www.nsfocus.com/6_about/6_9.html
http://www.oracle.com/technetwork/documentation/vm-096300.
http://candon123.blog.51cto.com/704299/658909 http://download.
http://www.amazon.com/s/ref=nb_sb_noss?field-keywords=Security%2C+audit+and+control+features+&u...
boxuesky.com
http://books.google.com.hk/books?id=uPsmEO-3YAEC&pg=PA188&lpg=PA188&dq=Security,+Audit+%26+Cont...
http://www.folinhou.com/?p=320 http://www.beansoft.
作者:gaohui mylcx -listen 这个命令跟lcx一样 mylcx -slave 本机端口 远程ip 远程端口 即把本机端口映射到远程ip的一个端口上 在本机执行:m...
http://www.openstack.org/projects/
1.Hadoop权威指南 http://product.china-pub.com/194011 2.
http://jackwillk.blogspot.com/2010/06/using-owasp-php-esapi-part-1.
http://www.youku.com/playlist_show/id_3427578.html
http://www.phpweblog.net/GaRY/archive/2011/08/18/Mongodb_secuirty_anaylze.html Author: wofeiwo Date: 2011-08-18 Mongodb,这么火的玩意其实早就想好好研究一下了。
http://seclists.org/pen-test/2008/May/64 Here's a list of useful resources on Lotus Domino/Notes security:http://www.
http://bbs.dospy.com/thread-8694225-1-315-1.html 1、用程序管理器,在“办公”分类中,找到QstarDict,安装。
http://penetration-testing.7safe.com/the-art-of-exploiting-lesser-known-injection-flaws-revealed-at-black-hat/ http://code.
上一篇是要借助外部的工具来实现内网代理,并且有很大的局限性,如果远程主机没开ssh或者做了防火墙规则给过滤掉一般的IP,就不能再用了 这里我们讲一下通过反向代理和本地proxychains来实现内网代理功能,对目标内网进行入侵渗透。
create table cmd(shell text) insert into cmd (shell) values('') SELECT shell into [fuck] in 'D:\web\me\backdoorx\asp.
http://u.youku.com/user_video/id_UMzU2MTI3MDE2.html
男足你们看了吗!!!
http://www.rapid7.com/vulnerability-scanner.jsp
http://www.edge-security.com/ 用过的人都说好
http://www.offensive-security.com/backtrack/metasploit-with-mysql-in-backtrack-4-r2/ http://www.
http://wrsky.com/forum.php?mod=viewthread&tid=355&extra=page%3D1 http://www.
http://wrsky.com/forum.php?mod=viewthread&tid=339&extra=page%3D1 有时候搞一些东西,不小心日到一个入口的机器,然后可能是Linux可能是BSD可能是solaris之类的,然后内网有很多XXOO的各种Windows啊,XX啊,XX系统。
http://18.158.252.17:8600/psp/hr9dev/EMPLOYEE/HRMS/?cmd=expire ...
http://www.fastandeasyhacking.com/manual
http://www.saptechies.com/sap-netweaver-70-java-and-abap-trial-version-on-linux-vmware-edition...
http://hi.baidu.com/akast/blog/item/0df325c52c15a3b38326ac3c.
http://resources.infosecinstitute.com/soap-attack-2/
http://www.soapuser.com/server3.html http://faq.
http://www.docin.com/p-6437347.html
http://www.focusecurity.org/category/Metasploit axis2/services/Version?xsd=.
sap netweaver成功破解 爽死
http://sapblog.org/enterprise-portal-ep/sap-netweaver-trial-version-license-renewal.
http://www.kodyaz.com/articles/free-license-key-install-sap-license-key-using-slicence-transaction.
http://help.sap.com/saphelp_nw04/helpdata/en/ed/18cc38e6df4741a264bddcd4f98ae2/frameset.
http://hi.baidu.com/aullik5/blog/item/ebbed3a39e50bcabcbefd0d1.