<?xml version="1.0" standalone="yes"?>
<?xml-stylesheet type="text/xsl" href="css/rss.xslt"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>凌风[0x0F]'s BloG - 技术文章</title><link>http://www.l14of.com/</link><description>Get More Fun! - </description><generator>RainbowSoft Studio Z-Blog 1.8 Walle Build 100427</generator><language>zh-CN</language><copyright>请注意:本站部分文章为网络转载,如有侵权及非法行为,请联系站长Email:web#l14of.com,谢谢合作</copyright><pubDate>Sun, 05 Sep 2010 07:44:21 +0800</pubDate><item><title>一款牛X的PHP小马 By:用PS画JJ的某淫</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/77.html</link><pubDate>Mon, 09 Aug 2010 22:57:41 +0800</pubDate><guid>http://www.l14of.com/post/77.html</guid><description><![CDATA[<p>作者:&nbsp;&nbsp;Psjj&nbsp; &nbsp; 首发:<a target="_blank" href="http://www.bhst.org/">http://www.bhst.org/</a><br />Blog:<a target="_blank" href="http://www.psjj.org/">http://www.psjj.org/</a><br /><br />写这个小马第一个要感谢的就是b4che10r，帮我订正了好多错误<br /><br />...</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/77.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=77</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=77&amp;key=2110acc1</trackback:ping></item><item><title>移动渗透之N810</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/76.html</link><pubDate>Sat, 07 Aug 2010 19:25:30 +0800</pubDate><guid>http://www.l14of.com/post/76.html</guid><description><![CDATA[<p>BHST有人用的东西，我看图不行，就把图收拾好，转我BLOG里了</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/76.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=76</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=76&amp;key=2cbde299</trackback:ping></item><item><title>[原创]帮朋友搞一棒子站手记</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/74.html</link><pubDate>Sat, 07 Aug 2010 14:59:17 +0800</pubDate><guid>http://www.l14of.com/post/74.html</guid><description><![CDATA[<div>我一开始用 and 1=1 和and 1=2 测试，发现结果是一样的，本以为没有注入，又用 having 1=1-- 和 having 1=2-- 这才发现有注入，便开始了下一步渗透，<br />用order by判断出字段数为2<br />构造如下语句<br />http://www.l14of.com/hex.php?page=product&amp;id=120 and 1=2 union select 1,2<br />返回正常，显示出字段位置<br />用手工简单的爆破了下<br />...</div>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/74.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=74</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=74&amp;key=5271898e</trackback:ping></item><item><title>SQL构造having语句暴字段</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/70.html</link><pubDate>Mon, 26 Jul 2010 02:57:55 +0800</pubDate><guid>http://www.l14of.com/post/70.html</guid><description><![CDATA[<p>新方法SQL注入</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/70.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=70</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=70&amp;key=52070156</trackback:ping></item><item><title>无fso的webshell与一句话木马利用</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/56.html</link><pubDate>Sun, 18 Jul 2010 17:59:52 +0800</pubDate><guid>http://www.l14of.com/post/56.html</guid><description><![CDATA[<p>也转自IT_SECURITY&nbsp; 妈呀，他出的东西确实很好啊</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/56.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=56</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=56&amp;key=4493d612</trackback:ping></item><item><title>各种webshell密码加密与解密相关代码</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/55.html</link><pubDate>Sun, 18 Jul 2010 17:58:15 +0800</pubDate><guid>http://www.l14of.com/post/55.html</guid><description><![CDATA[<p>转自 IT_Security</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/55.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=55</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=55&amp;key=1d9edb5b</trackback:ping></item><item><title>fckeditor editor /fck editor通过upload.asp/upload.aspx构建form直接上传</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/54.html</link><pubDate>Sun, 18 Jul 2010 17:54:26 +0800</pubDate><guid>http://www.l14of.com/post/54.html</guid><description><![CDATA[<p>转自IT Security</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/54.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=54</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=54&amp;key=f1ab8e86</trackback:ping></item><item><title>再送一点点...</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/47.html</link><pubDate>Thu, 15 Jul 2010 13:20:42 +0800</pubDate><guid>http://www.l14of.com/post/47.html</guid><description><![CDATA[<p>进来看</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/47.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=47</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=47&amp;key=381b4674</trackback:ping></item><item><title>KiTrap0d local ring0 exploit</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/46.html</link><pubDate>Thu, 15 Jul 2010 11:09:20 +0800</pubDate><guid>http://www.l14of.com/post/46.html</guid><description><![CDATA[<p><strong>本版本以这位GOOGLE黑客高手Tavis Ormandy的大作为基础改写而成.<br />修改部分如下:<br />1:根据作者个人遗憾的几点做了改进,避免了因NT系统的目录差异而失败的情况.<br />2:造成蓝屏的机率减少,改了一些宏的重复DEFINIE.<br />3:去除ROOT过程中的提示,保留了最终结果提示.<font style="font-size: 0px; color: #fff">forum.3est.com: q# D9 C: o2 H4 z/ P</font><br />4:模拟之前的MS08066 利用方法,直接在程序后接收参数,方便上传后在WEBSHELL上使用.本版本以这位GOOGLE黑客高手Tavis Ormandy的大作为基础改写而成.<br />修改部分如下:<br />1:根据作者个人遗憾的几点做了改进,避免了因NT系统的目录差异而失败的情况.<br />2:造成蓝屏的机率减少,改了一些宏的重复DEFINIE.<br />3:去除ROOT过程中的提示,保留了最终结果提示.<font style="font-size: 0px; color: #fff">forum.3est.com: q# D9 C: o2 H4 z/ P</font><br />4:模拟之前的MS08066 利用方法,直接在程序后接收参数,方便上传后在WEBSHELL上使用.</strong></p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/46.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=46</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=46&amp;key=25682103</trackback:ping></item><item><title>过icesword 1.22 ，注册表隐藏，启动项隐藏</title><author>wantusirui@foxmail.com (0x0F)</author><link>http://www.l14of.com/post/41.html</link><pubDate>Wed, 14 Jul 2010 11:51:21 +0800</pubDate><guid>http://www.l14of.com/post/41.html</guid><description><![CDATA[<p>过icesword 1.22 ，注册表隐藏，启动项隐藏 转来的 也不知道作者是谁发一段隐藏注册表项的驱动代码，可以过目前最新的IceSword1.22。以前驱动开发网悬赏挑战IceSword时写的，不过最后没公开。那时流氓软件势头正劲，我可不想火上浇油。现在反流氓软件日渐成熟，也就没关系了。知道了原理，防御是非常容易的。原理很简单，实现的代码也很短，啥都不用说，各位直接看示例代码吧。</p>]]></description><category>技术文章</category><comments>http://www.l14of.com/post/41.html#comment</comments><wfw:comment>http://www.l14of.com/</wfw:comment><wfw:commentRss>http://www.l14of.com/feed.asp?cmt=41</wfw:commentRss><trackback:ping>http://www.l14of.com/cmd.asp?act=tb&amp;id=41&amp;key=fe2a1618</trackback:ping></item></channel></rss>
