阿里云安全专家,主要负责阿里云云产品安全。
3.3.2. /proc//status包含了所有CPU活跃的信息,该文件中的所有值都是从系统启动开始累计到当前时刻。
手头有三台机器,为了安全,就打算做一个网络备份,让这三台机器互相备份一些重要文档。上网逛了一会,发现bacula(www.bacula.org)挺符合自己的要求。
估计fbsd前几天出的localroot 0day应该已经发公告发补丁了,没空去验证,有需要的同学参考下文操作下吧,freebsd-update的好处是他还带回滚功能,这个相当不错。
http://www.securityfocus.com/bid/37208/exploit 漏洞分析 http://www.
1. matriux http://www.matriux.com/ 2.sambascanner2 http://sourceforge.
Just wanted to let you know that Apache Tomcat can now be configured to use HttpOnly session cookies.
http://sla.ckers.org/forum/read.php?16,32472,32580#msg-32580 ...
Introduction Today’s networks are increasingly heterogeneous, containing different types of hard...
Adobe安全团队新发布了一篇blog, 讲解如何fuzz他们的PDF reader. 文中介绍的思路和方法,值得国内软件企业借鉴.
http://blog.larsstrand.org/article.php?story=RHEL5-SELinux-Benchmark ...
Unix sysadmin and never heard of Munin? Good news for you: You have a great tool waiting.
A short little script I stumbled across when cleaning my $HOME.
I really would like to have an encrypted swap, tmp and home partition on my laptop.
Tuesday 16 June 2009 @ 17:31 CEST Contributed by: lars To quickly encrypt a file with a password of your choice you can use OpenSSL.
Whats new?1) SQL Injection detection using time based injection method2) Database fingerprint3) ...
http://docs.python.org/library/warnings.html psyco模块 http://psyco.
After much delay, the Notacon 2009 video files are now online!You can snag them through the Notacon Media site at: http://www.
·/etc/my.cnf是默认的MySQL配置文件。应该对这个文件配置修改。它是为学习目的而设计的。
来源地址: http://www.linuxsir.org/bbs/showthread.php?t=21008 如何用bash提取网卡ip地址?比如,我想显示如下的效果: You eth0's IP = [ 192.
http://bbs.chinaunix.net/viewthread.php?tid=1388003
http://www.ngssoftware.com/papers/HackproofingMySQL.pdf
http://www.cyberciti.biz/faq/howto-clear-mysql-command-history/ http://www.
http://www.python.org/dev/peps/pep-0263/
这里简单演示下:>>> a = ((1, 2), (3, 4))>>> print [i for i in a if 3 in(i)] and True or FalsTrue>>> print [i for i in a if 5 in(i)] and True or FalseFalse其实很简单,只用了[],and...or,类似与其他语言的?:三元操作符。
安装mysqldb以前需要安装 http://pypi.python.org/packages/source/s/setuptools/setuptools-0.
链接来自:http://wiki.codemongers.com/NginxChsStubStatusModule?highlight=%28status%29 这个模块能够获取Nginx自上...
Hi!I've just released the working exploit for CTXSYS.
http://www.onapsis.com/resources/get.php?resid=ssid01 SAP Security In-Depth Vol.
download: http://www.zeus.com/downloads/evaluation/managed/your-details/id/global-load-balancer 从apache–>zeus–>lighttpd–>nginx一路走来,发现他们各有长短。
http://tinypig.javaeye.com/blog/422468 http://www.
Python 3 教程二:文件,目录和路径 http://www.cnitblog.com/yunshichen/archive/2009/04/01/55931.
http://phpro.org/tutorials/Filtering-Data-with-PHP.html
时间能证明一切误解
针对小型站点的技术普及信息,中大型网站的牛人不用看,耽误您的时间我负不起这责任。用 Windows 做网站的也别看了,不适合。
ModSecurity is an application security firewall for security all types web applications.
http://www.ethicalhacker.net/content/view/282/24/
Wget是一个十分常用命令行下载工具,多数Linux发行版本都默认包含这个工具。如果没有安装可在 http: //www.
在WML中可以调用设备的WTAI函数来呼叫特定的电话号码,代码如下所示: <input name="phone_no" format="*m" value="13"/> <do ...
http://pangty.ta139.com/bash-guide/abs3.7cnhtm/devproc.
http://www.isaca.org/riskit The Risk IT Framework fills the gap between generic risk managem...
http://code.google.com/p/websecurify/downloads/list
vmap lets you remotely ident the version of a daemon.
其实很早就有了放出来再看看吧,加深印象。。 http://seclists.org/fulldisclosure/2009/Jun/48 ...
本文一共介绍了七种方法: 一:最简单的加密解密 二:转义字符""的妙用 三:使用Microsoft出品的脚本编码器Script Encoder来进行编码 (自创简单解码) 四:任意添加...
http://www.verycd.com/topics/2783340/
http://v.youku.com/v_show/id_XMTI1MDE1MTI4.html
最近做博友推荐,发现个小问题,用$_SERVER['REMOTE_ADDR'];得到的都是服务器的地址192.
每月工资1000,300吃饭,200交际 100买书和买盗版影碟 衣服鞋袜加一起平均50吧 还剩350存起来 一年4200,15年可交一套商品房的首期 如果房价上调,就20年 20年中,工资...
http://www.netxsec.com/index.php/html/216.html 没测试过,转过来备用。