|
Multiple Exploiting IE8/IE7 XSS Vulnerability
|
Multiple Exploiting IE8/IE7 XSS Vulnerability
Author: www.80vul.com [Email:5up3rh3i#gmail.com] Release Date: 2009/06/22 References: http://www.80vul.com/ie8/Multiple%20Exploiting%20IE8IE7%20XSS%20Vulnerability.txt
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 19
|
|
UTF-7 XSS Cheat Sheet
|
基本样式 +ADw-script+AD4-alert(document.location)+ADw-/script+AD4- <script>alert(document.location)</script> UTF-7 XSS的最基本的样式。URL encoded 转换后的样式 %2BADw-script+AD4-alert(document.location)%2BADw-/script%2BAD4-
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 26
|
|
Green Dam 3.17 (URL) Remote Buffer Overflow Exploit (xp/sp2)
|
Green Dam remote buffer overflow exploit "Green Dam" is a software used for monitoring and anti-pornography, popularizing by Chinese goverment. After July 1st, it will be forced to install on all new Chinese PCs. Now it already has 50 million copies in China.
Read More...
|
|
Author: Admin | Category: Exploits & Codes |
Comments: 0
|
TrackBack: 0
| Views: 20
|
|
MySQL中SQL的单字节注入与宽字节注入
|
来源:互联网 作者:未知
文章摘要:MySQL中SQL的单字节注入与宽字节注入一、单字节SQL注入 MYSQL的SQL注入已经由来已久,以下是普遍采用的注入步骤: 1、在GET参数上加一个/*或者#(mysql专有的注释),判断数据库是否是mysql,比如: http://www.xxx.com.cn/article.php?id=1607 and 1=1/* 2、猜解某表的字段数,从order by 1一直更改到页面出错为止,就可以得
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 31
|
|
宽字符跨站
|
by jackal 程序代码:
<!doctype html public "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd"> <html xmlns="http://www.w3.org/1999/xhtml"> ... |
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 34
|
|
浅析浏览器的跨域安全问题
|
==Ph4nt0m Security Team==
Issue 0x02, Phile #0x04 of 0x0A
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 36
|
|
利用窗口引用漏洞和XSS漏洞实现浏览器劫持
|
==Ph4nt0m Security Team== Issue 0x03, Phile #0x05 of 0x07 |=---------------------------------------------------------------------------=| |=---------------=[ 利用窗口引用漏洞和XSS漏洞实现浏览器劫持 ]=---------------=| |=---------------------------------------------------------------------------=|
Read More...
|
|
Author: Admin | Category: 技术 |
Comments: 0
|
TrackBack: 0
| Views: 23
|