Aggregator
解决OSSEC Agent 3.6.0 无法注册问题
解决OSSEC Agent 3.6.0 无法注册问题
Cybersecurity Myths That Are Harming Your Business
Technical Controls for a Secure Open Banking Initiative
Technical Controls for a Secure Open Banking Initiative
2020 Firefox 安全、隐私、实用扩展指南
Taking a Human Approach to a Global Crisis
Blast from the past: Cross Site Scripting on the AWS Console
Great news: Amazon is now offering bounties via a security vulnerabiltiy research program
Bad news: AWS is out of scope!
When I read this I remembered that a few years ago I found persistent Cross-Site-Scripting on the AWS Console.
This post is a write up on how I found the XSS back then, techniques I used and how they evolved over the years and Amazon’s response.
AWS Console and Cross Site ScriptingThe story is that I had just created an AWS account and started using the service.
Feedspot ranked 'Embrace the Red' one of the top 15 pentest blogs
I’m excited that Feedspot ranked this blog (Embrace the Red) the number #10 pentest blog out there.
Subscribe and check-in regularly for new content related to offensive security engineering, penetration testing and red teaming.
You can also follow me on Twitter @wunderwuzzi23.
Cheers.
TCTF 2020 Web Writeup partial
今年 TCTF Web 题目比原来要多,但还是那么强(做不出来
easyphp这道题被非预期了,正确解法也是在看到一叶飘零的
欢迎各位关注我的视频号,会有一些好玩的AI产品和不一样的分享。
欢迎各位关注我的视频号,会有一些好玩的AI产品和不一样的分享。
欢迎各位关注我的视频号,会有一些好玩的AI产品和不一样的分享。
TCTF/0CTF 2020 Writeup
又是一年 0CTF, 这次一个人一队单刷一次, 做出了两题 WEB, 可惜只输出了一天, 第二天还要赶 ddl, 还是太蔡了 orz