阿里云安全专家,主要负责阿里云云产品安全。
http://v.ku6.com/playlist/index_3696514.html
http://amanda.zmanda.com/
http://packetstormsecurity.org/fuzzer/
http://blogsecurity.net/wordpress/tools/wp-scanner
http://baike.baidu.com/view/15942.htm 期权 是指在未来一定时期可以买卖 的权利, 是买方向卖方支付一定数量的金额 (指权利金) 后拥有的在未来 一段时间内(指美式期权) 或未来某一特定日期(指欧式期权) 以事先规定好的价格 (指履约价格) 向卖方购买或出售一定数量的特定标的物 的权利,但不负有必须买进或卖出的义务。
职责:1.维护管理公司各类安全产品;2.对公司信息系统及应用进行安全评估,安全加固;3.信息安全事件调查处理;4.参与公司安全架构体系建设。
http://www.computec.ch/projekte/browserrecon/?
OK, this tutorial is for ppl like me who use an alternative way of searching for things on internet, EXMPL: instead of typing: www.
Der Begriff Web 2.0 ist ein Buzzword, das die meisten Techniker nicht mehr hören können.
iWatch is a real-time filesystem monitoring program.
These days, it seems like most companies have a standard for everything… Password standard – t...
Peleus here. There has been a recent focus on cross-domain policy deployments in the media, so...
The application I beat up for the ESAPI WAF preso at OWASP AppSec DC was JForum.
Even though there have already been some great posts (Rafal Los, Gunter Ollmann, RSnake, John S...
The Information Security Tools (IST) team has released the InfoSec Assessment & Protection (A&P) Suite.
错误编号:1040 问题分析: 连接数超过了 MySQL 设置的值,与 max_connections 和 wait_timeout 都有关系。
http://www.neurofuzz.com/modules/software/vidz.php
route add -net 10.10.101.0 netmask 255.255.255.
http://lamp.linux.gov.cn/Apache/ApacheMenu/mod/mod_rewrite.
公司一套系统的同步使用的donotify,不能实现子目录的实时同步,通过查资料,发现inotify可以实现子目录的实时同步,以下为笔记。
http://incubator.apache.org/trafficserver/docs/admin/
http://www.first.org/cvss/cvss-guide.html cvss http://msdn.
Jmeter、OpenSTA、WEBLOAD、Web application stress tool
http://exploits.offensive-security.com/
corkscrew /etc/ssh/ssh_config配置 ProxyCommand corkscrew ip 80 %h %p ...
http://www.owasp.org/images/0/0f/OWASP_T10_-_2010_rc1.pdf
Hi all,Just wanted to share the following links/tutorials on writing windows (stack based) expl...
http://www.opensamm.org/download/ http://www.bsi-mm.com/
» MD5 algorithmWith the use of MD5, we can easily create an 128-bit "fingerprint" (or "message digest") of a string or file.
http://www.security-database.com/toolswatch/Web-Security-Dojo-v0-2-released.
* 1.2.7 (2009-11-01)New:- Added Kernel Hardening section- Sysctl audit support in scan profile...
http://video.google.com/videosearch?q=owasp+2007&www_google_domain=www.
http://sites.google.com/site/webhoneypotsite/alpha-release/downalpha-release ...
Greasemonkey Hacks.chm apache_security.chm applied_security_visualization.
http://projects.webappsec.org/Distributed-Open-Proxy-Honeypots ...
PHP Security for Deployers If you're a Developer READ THIS and then work with your SysAdmin...
http://info.52z.com/html/14014.html
http://msdn.microsoft.com/en-us/magazine/cc794277.
刚刚有研究人员公布了一种针对TLS/SSL的中间人攻击, 该攻击 1. exploitable (可操作性比较强) 2.
http://www.howtoforge.com/set-up-a-full-featured-mail-server-with-iredos-mysql-postfix-dovecot-...
ratproxy - http://code.google.com/p/ratproxy/Paros - http://www.
1.每一种解决方案,无论是防火墙、咨询或是安全计划,都必须根据它的功能要求和确定性要求进行评估。
首先讲一下环境配置,注意我配置的环境是在win 2000 server下的,不是linux下的,配置的大致流程和操作系统无关,仅仅是在具体的安装上有差别。
http://news.ifeng.com/sports/zhuanti/wangmeizuqiusai/ 哈哈里面还有我呢,看大家找到的我吗 ...
http://www.websandbox-code.org/samples/genericsample.
http://www.ethicalhacker.net/content/view/227/24/
Powerfuzzer is a highly automated and fully customizable web fuzzer (HTTP protocol based applic...
OrakelCrackert is an Oracle 11g database password hash cracker using a weakness in the Oracle password storage strategy.
http://www.howtoforge.com/perfect-server-centos-5.
Websecurify is a web and web2.0 security initiative specializing in researching security issues ...