Site updated: 2020-10-21 18:24:42

This commit is contained in:
Cool-Y 2020-10-21 18:25:01 +08:00
parent 4ad896393e
commit a70ead615f
107 changed files with 7791 additions and 1555 deletions

View File

@ -558,7 +558,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -580,7 +580,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -644,7 +644,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -656,7 +656,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -632,7 +632,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -654,7 +654,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -734,7 +734,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -746,7 +746,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -632,7 +632,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -654,7 +654,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -734,7 +734,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -746,7 +746,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -637,7 +637,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -659,7 +659,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -739,7 +739,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -751,7 +751,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -87,23 +87,23 @@
<meta property="og:site_name" content="混元霹雳手">
<meta property="og:description" content="TCP侧信道分析及利用的学习报告论文来源USENIX SECURITY 2018Off-Path TCP Exploit: How Wireless Routers Can Jeopardize Your Secrets下载原文pdf中文slides 背景知识测信道香农信息论 什么是信息? 用来减少随机不确定的东西 什么是加密? 类似于加噪声,增加随机不确定性 “从密码分析者来看,一个保">
<meta property="og:locale" content="zh-Hans">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/1.png">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/2-Man_in_the_middle_attack.svg.png">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/3-Connection_TCP.png">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/5-攻击模型.PNG">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/4-netstat获取信息.jpg">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/6-GRL-R.png">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/7-GRL-L.png">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/8-收包原理.jpg">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/8-noTrigger.PNG">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/8-trigger.PNG">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/9-序列号推断.PNG">
<meta property="og:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/9-http注入.PNG">
<meta property="og:updated_time" content="2019-04-15T07:35:38.082Z">
<meta property="og:image" content="https://raw.githubusercontent.com/Cool-Y/tcp_exploit/master/pic/1.PNG">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/2-Man_in_the_middle_attack.svg.png?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/3-Connection_TCP.png?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/5-%E6%94%BB%E5%87%BB%E6%A8%A1%E5%9E%8B.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/4-netstat%E8%8E%B7%E5%8F%96%E4%BF%A1%E6%81%AF.jpg?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/6-GRL-R.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/7-GRL-L.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-%E6%94%B6%E5%8C%85%E5%8E%9F%E7%90%86.jpg?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-Trigger.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-noTrigger.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/9-%E5%BA%8F%E5%88%97%E5%8F%B7%E6%8E%A8%E6%96%AD.PNG?raw=true">
<meta property="og:image" content="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/9-http%E6%B3%A8%E5%85%A5.PNG?raw=true">
<meta property="og:updated_time" content="2020-10-19T04:44:41.846Z">
<meta name="twitter:card" content="summary">
<meta name="twitter:title" content="wifi半双工侧信道攻击学习笔记">
<meta name="twitter:description" content="TCP侧信道分析及利用的学习报告论文来源USENIX SECURITY 2018Off-Path TCP Exploit: How Wireless Routers Can Jeopardize Your Secrets下载原文pdf中文slides 背景知识测信道香农信息论 什么是信息? 用来减少随机不确定的东西 什么是加密? 类似于加噪声,增加随机不确定性 “从密码分析者来看,一个保">
<meta name="twitter:image" content="https://cool-y.github.io/2019/01/16/wifi半双工侧信道攻击学习笔记/1.png">
<meta name="twitter:image" content="https://raw.githubusercontent.com/Cool-Y/tcp_exploit/master/pic/1.PNG">
@ -457,7 +457,7 @@
<h1 id="TCP侧信道分析及利用的学习报告"><a href="#TCP侧信道分析及利用的学习报告" class="headerlink" title="TCP侧信道分析及利用的学习报告"></a>TCP侧信道分析及利用的学习报告</h1><p><strong><em>论文来源:</em></strong>USENIX SECURITY 2018Off-Path TCP Exploit: How Wireless Routers Can Jeopardize Your Secrets<br><strong><em>下载:</em></strong><br><a href="https://www.usenix.org/conference/usenixsecurity18/presentation/chen-weiteng" target="_blank" rel="noopener">原文pdf</a><br><a href="https://res.cloudinary.com/dozyfkbg3/raw/upload/v1553316881/ARE/wifi.pptx" target="_blank" rel="noopener">中文slides</a></p>
<h2 id="背景知识"><a href="#背景知识" class="headerlink" title="背景知识"></a>背景知识</h2><h3 id="测信道"><a href="#测信道" class="headerlink" title="测信道"></a>测信道</h3><p><strong>香农信息论</strong></p>
<p><img src="./1.png" alt="信息熵"></p>
<p><img src="https://raw.githubusercontent.com/Cool-Y/tcp_exploit/master/pic/1.PNG" alt="信息熵"></p>
<p><strong>什么是信息?</strong> 用来减少随机不确定的东西</p>
<p><strong>什么是加密?</strong> 类似于加噪声,增加随机不确定性</p>
<blockquote>
@ -477,7 +477,7 @@
</blockquote>
</li>
</ol>
<p><img src="./2-Man_in_the_middle_attack.svg.png" alt></p>
<p><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/2-Man_in_the_middle_attack.svg.png?raw=true" alt></p>
<ul>
<li>公共wifi、路由器劫持</li>
<li>一般使用加密来防御</li>
@ -495,7 +495,7 @@
<li>攻击者如何得到这个随机数:侧信道</li>
</ul>
<hr>
<h3 id="TCP三次握手"><a href="#TCP三次握手" class="headerlink" title="TCP三次握手"></a>TCP三次握手</h3><p><img src="./3-Connection_TCP.png" alt></p>
<h3 id="TCP三次握手"><a href="#TCP三次握手" class="headerlink" title="TCP三次握手"></a>TCP三次握手</h3><p><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/3-Connection_TCP.png?raw=true" alt></p>
<blockquote>
<ol>
<li>客户端通过向服务器端发送一个SYN来创建一个主动打开作为三路握手的一部分。客户端把这段连接的序号设定为<em>随机数A</em></li>
@ -546,10 +546,10 @@
<li>2007年在windows场景下用IDID侧信道猜出序列号只针对Windows花费几小时</li>
</ol>
<hr>
<h2 id="Malware-assisted"><a href="#Malware-assisted" class="headerlink" title="Malware-assisted"></a>Malware-assisted</h2><p><strong>攻击模型:</strong><br>给受害者安装一个无特权的应用程序仅能网络连接这个程序跟非中间人的攻击者里应外合劫持手机上所有的TCP连接。<br><img src="./5-攻击模型.PNG" alt></p>
<h2 id="Malware-assisted"><a href="#Malware-assisted" class="headerlink" title="Malware-assisted"></a>Malware-assisted</h2><p><strong>攻击模型:</strong><br>给受害者安装一个无特权的应用程序仅能网络连接这个程序跟非中间人的攻击者里应外合劫持手机上所有的TCP连接。<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/5-%E6%94%BB%E5%87%BB%E6%A8%A1%E5%9E%8B.PNG?raw=true" alt></p>
<p><strong>如何劫持TCP</strong></p>
<ol>
<li><p>需要的信息Facebook的连接IP地址和端口号由此可以知道TCP连接的序列号利用序列号伪装成Facebook给手机发消息。<br>使用netstat命令获取<br><img src="./4-netstat获取信息.jpg" alt></p>
<li><p>需要的信息Facebook的连接IP地址和端口号由此可以知道TCP连接的序列号利用序列号伪装成Facebook给手机发消息。<br>使用netstat命令获取<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/4-netstat%E8%8E%B7%E5%8F%96%E4%BF%A1%E6%81%AF.jpg?raw=true" alt></p>
</li>
<li><p>任务由于TCP的序列号通常连续所以要精确猜到它的下一个序列号。</p>
</li>
@ -568,18 +568,18 @@
</blockquote>
<p><strong>侧信道:</strong> 所有的侧信道本质上就是攻击者和受害者之间共享着某些资源如之前的全局TCP计数器。这里使用的侧信道是 <strong><em>服务器上</em></strong> 的共享资源,<strong><em>限速器</em></strong>RFC 5961限制某一种包的发送速率默认100p/s</p>
<p><strong>如何利用共享限速器:</strong><br>先判断是否建立了连接。然后伪造TCP包需要猜测源端口如果猜测正确服务器会返回一个challenge攻击者不断触发一共可以收到99个还有一个发给了客户端如果猜测错误则一共可以收到100个challenge。</p>
<p><img src="./6-GRL-R.png" alt></p>
<p><img src="./7-GRL-L.png" alt></p>
<p><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/6-GRL-R.PNG?raw=true" alt></p>
<p><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/7-GRL-L.PNG?raw=true" alt></p>
<p><strong>评估:</strong> 是否建立了连接:&lt;10s ; Seq30s ACK:&lt;10s</p>
<p><strong>解决方案:</strong> 1. 加噪音100变成150、2002. 限速器做成局部的</p>
<hr>
<h3 id="Unfixable-WiFi-timing"><a href="#Unfixable-WiFi-timing" class="headerlink" title="Unfixable WiFi timing"></a>Unfixable WiFi timing</h3><blockquote>
<p>USENIX 2018 : Off-Path TCP Exploit: How Wireless Routers<br>Can Jeopardize Your Secrets<br>之前的漏洞无论是计数器还是限速器都属于软件,很好更正,但这篇文章的漏洞利用无法修复。</p>
</blockquote>
<p><strong>TCP收包的原理</strong> 通常TCP收包要看这个包是否匹配了当前的某一个连接。如果连接匹配上了就会去看这个包的序列号如果序列号不对会触发一个回复说明这个序列号存在问题如果序列号正确但反向序列号不对也会丢包。当连接匹配、序列号和反向序列号正确时就会返回一个数据包。<br><img src="./8-收包原理.jpg" alt></p>
<p><strong>TCP收包的原理</strong> 通常TCP收包要看这个包是否匹配了当前的某一个连接。如果连接匹配上了就会去看这个包的序列号如果序列号不对会触发一个回复说明这个序列号存在问题如果序列号正确但反向序列号不对也会丢包。当连接匹配、序列号和反向序列号正确时就会返回一个数据包。<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-%E6%94%B6%E5%8C%85%E5%8E%9F%E7%90%86.jpg?raw=true" alt></p>
<p><strong>侧信道:</strong> 攻击者伪装成服务器给客户端发包,正确的序列号会有<strong><em>回复</em></strong>,错误则没有。但回复时发送给服务器的,有没有回复攻击者并不知道。那么如何去判断有没有回复,利用无线网络的 <strong><em>半双工</em></strong> 传输。<br>让有回包和没有回包的时间差异放大。</p>
<p><strong>判断流程:</strong> 客户端和路由器之间wifi通信。攻击者依次发送三个数据包第一个包用来测试正常的RTT。第2个包是伪装成服务器发送的如果第2个包猜对了客户端会向服务器返回数据包这会导致占用更长时间的wifi信道从而会使第3个包的RTT更长。<br><img src="./8-noTrigger.PNG" alt></p>
<p><img src="./8-trigger.PNG" alt></p>
<p><strong>判断流程:</strong> 客户端和路由器之间wifi通信。攻击者依次发送三个数据包第一个包用来测试正常的RTT。第2个包是伪装成服务器发送的如果第2个包猜对了客户端会向服务器返回数据包这会导致占用更长时间的wifi信道从而会使第3个包的RTT更长。<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-Trigger.PNG?raw=true" alt></p>
<p><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/8-noTrigger.PNG?raw=true" alt></p>
<p><strong>评估:</strong> 在本地环境下如果发送40个包就有20ms的RTT差别。</p>
<p><strong>攻击应用:</strong><br><strong>1. 攻击模型:</strong> 受害者访问了我们的钓鱼网站这时javascript傀儡会在后台执行主动建立到攻击者的连接规避NAT或防火墙造成的不可抵达问题这时攻击者就可以从外网测试RTT。</p>
<blockquote>
@ -593,10 +593,10 @@ Server -------wire----------|
<p><strong>4. 细节:</strong></p>
<ul>
<li><strong>连接(四元组)推断:</strong> 每一轮使用30个重复包测试一个端口如果端口号正确就会发现RTT大幅增加。如果还要完成 <strong><em>web缓存投毒</em></strong> ,还需要傀儡初始化连接来协助,根据系统不同,有不同的端口选择算法可以优化:<strong><em>windows&amp;macOS</em></strong> 使用全局和顺序端口分配策略为其TCP连接选择短暂的端口号这意味着攻击者可以在观察到与恶意Web服务器的初始连接后推断出要使用的下一个端口号这完全消除了对端口号推断的需要。<strong><em>NAT</em></strong> 端口保留,不需要关心外部端口被转换成不可预知的内部端口。<strong><em>来自同一域名的多个IP地址</em></strong>,这意味着攻击者需要付出更大的代价来推断端口号。</li>
<li><strong>序列号推断:</strong> 通过利用时序侧信道来判断是否存在相应的响应,从而将窗口序列号与窗外序列号区分开来。一旦我们得到一个 <strong><em>窗口内序列号</em></strong>,通过进行二分搜索进一步将序列号空间缩小到单个值 <strong><em>RCV.NXT</em></strong>。如果还要使用傀儡建立的连接发起web缓存投毒可以进一步优化<strong><em>增大接收窗口的大小</em></strong>可以减少猜测的迭代次数通常可以放大到500000(之前是65535)而且根据RFC793,窗口放大之后就永远不会缩小。<br><img src="./9-序列号推断.PNG" alt></li>
<li><strong>序列号推断:</strong> 通过利用时序侧信道来判断是否存在相应的响应,从而将窗口序列号与窗外序列号区分开来。一旦我们得到一个 <strong><em>窗口内序列号</em></strong>,通过进行二分搜索进一步将序列号空间缩小到单个值 <strong><em>RCV.NXT</em></strong>。如果还要使用傀儡建立的连接发起web缓存投毒可以进一步优化<strong><em>增大接收窗口的大小</em></strong>可以减少猜测的迭代次数通常可以放大到500000(之前是65535)而且根据RFC793,窗口放大之后就永远不会缩小。<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/9-%E5%BA%8F%E5%88%97%E5%8F%B7%E6%8E%A8%E6%96%AD.PNG?raw=true" alt></li>
<li><p><strong>TCP劫持</strong> 通过劫持傀儡初始化的连接可以简化web缓存投毒的过程。三个os在ACK验证上都不符合规范所以各自处理情况也不同——<strong><em>windows</em></strong>客户端必须持续发送请求以防止ACK接收窗口仅为一个字节这要求攻击者必须能准确预期下一个序列号并解决大量流量带来的噪声。<br>因此作者设计了一种新策略该策略利用处理重叠数据的TCP行为和处理损坏的HTTP响应的浏览器行为——在Windows主机上缓冲的攻击者注入数据可能会破坏来自服务器的真实HTTP响应。 <strong><em>1注入</em></strong>傀儡不断从服务器上请求脚本而攻击者发送2^23/|wnd|个欺骗性数据包这些包的窗口序列号与RCV.NXT加上偏移量相匹配其中|wnd|为ack接收窗口大小第i个数据包的ACK号为i*|wnd|payload为</p>
<figure class="highlight plain"><table><tr><td class="gutter"><pre><span class="line">1</span><br></pre></td><td class="code"><pre><span class="line">websocket.send(|wnd|*i)</span><br></pre></td></tr></table></figure>
<p> 因此这些数据包中包含有效ACK号的一个包将被缓冲并破坏真实的HTTP响应头。浏览器执行注入的脚本时它将通过websocket发送猜测的ACK号提供有效的窗口内ACK号。<br><img src="./9-http注入.PNG" alt><br><strong><em>2利用</em></strong>由于客户端已经接受了额外的欺骗payload推进了其预期的序列号因此客户端和服务器实际上已经被去同步。攻击者现在可以简单地发送欺骗性响应知道预期的序列号和有效的ACK号。如果我们只想执行一次性注入只需用恶意脚本替换第一步中的payload就足够了。<br>此外针对Windows的注入步骤存在更加通用的替代策略不依赖于浏览器行为。 具体来说由于HTTP响应的前几个字节是可预先确定的即HTTP不破坏真实的响应而是覆盖标题和正文以形成合法但恶意的响应。 在这种情况下,浏览器将完全忘记注入的存在。 这表明一旦序列号泄露就存在各种方法来有效地将数据注入浏览器而不用进行基于时间信道的慢得多的ACK号推断。</p>
<p> 因此这些数据包中包含有效ACK号的一个包将被缓冲并破坏真实的HTTP响应头。浏览器执行注入的脚本时它将通过websocket发送猜测的ACK号提供有效的窗口内ACK号。<br><img src="https://github.com/Cool-Y/tcp_exploit/blob/master/pic/9-http%E6%B3%A8%E5%85%A5.PNG?raw=true" alt><br><strong><em>2利用</em></strong>由于客户端已经接受了额外的欺骗payload推进了其预期的序列号因此客户端和服务器实际上已经被去同步。攻击者现在可以简单地发送欺骗性响应知道预期的序列号和有效的ACK号。如果我们只想执行一次性注入只需用恶意脚本替换第一步中的payload就足够了。<br>此外针对Windows的注入步骤存在更加通用的替代策略不依赖于浏览器行为。 具体来说由于HTTP响应的前几个字节是可预先确定的即HTTP不破坏真实的响应而是覆盖标题和正文以形成合法但恶意的响应。 在这种情况下,浏览器将完全忘记注入的存在。 这表明一旦序列号泄露就存在各种方法来有效地将数据注入浏览器而不用进行基于时间信道的慢得多的ACK号推断。</p>
</li>
</ul>
<hr>
@ -760,7 +760,7 @@ Server -------wire----------|
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -782,7 +782,7 @@ Server -------wire----------|
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -862,7 +862,7 @@ Server -------wire----------|
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -874,7 +874,7 @@ Server -------wire----------|
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -609,7 +609,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -631,7 +631,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -711,7 +711,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -723,7 +723,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -618,7 +618,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -640,7 +640,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -720,7 +720,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -732,7 +732,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -626,7 +626,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -648,7 +648,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -728,7 +728,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -740,7 +740,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -87,24 +87,24 @@
<meta property="og:site_name" content="混元霹雳手">
<meta property="og:description" content="漏洞描述Samba服务器软件存在远程执行代码漏洞。攻击者可以利用客户端将指定库文件上传到具有可写权限的共享目录会导致服务器加载并执行指定的库文件。具体执行条件如下 服务器打开了文件/打印机共享端口445让其能够在公网上访问 共享文件拥有写入权限 恶意攻击者需猜解Samba服务端共享目录的物理路径 Samba介绍Samba是在Linux和Unix系统上实现SMB协议的一个免费软件由">
<meta property="og:locale" content="zh-Hans">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-59-58.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-01-19.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-09-40.png">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/23-15-57.png">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-38-48.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-14-43.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-48-27.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-18-44.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-26-47.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-38-28.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-43-02.jpg">
<meta property="og:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-45-01.png">
<meta property="og:updated_time" content="2019-07-27T06:39:41.484Z">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-59-58.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-01-19.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-09-40.png">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/23-15-57.png">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-38-48.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-14-43.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-48-27.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-18-44.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-26-47.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-38-28.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-43-02.jpg">
<meta property="og:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-45-01.png">
<meta property="og:updated_time" content="2020-10-19T04:26:54.240Z">
<meta name="twitter:card" content="summary">
<meta name="twitter:title" content="某厂商路由器与Samba漏洞CVE-2017-7494">
<meta name="twitter:description" content="漏洞描述Samba服务器软件存在远程执行代码漏洞。攻击者可以利用客户端将指定库文件上传到具有可写权限的共享目录会导致服务器加载并执行指定的库文件。具体执行条件如下 服务器打开了文件/打印机共享端口445让其能够在公网上访问 共享文件拥有写入权限 恶意攻击者需猜解Samba服务端共享目录的物理路径 Samba介绍Samba是在Linux和Unix系统上实现SMB协议的一个免费软件由">
<meta name="twitter:image" content="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png">
<meta name="twitter:image" content="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png">
@ -468,9 +468,9 @@
<h1 id="Samba介绍"><a href="#Samba介绍" class="headerlink" title="Samba介绍"></a>Samba介绍</h1><p>Samba是在Linux和Unix系统上实现SMB协议的一个免费软件由服务器及客户端程序构成。SMBServer Messages Block信息服务块是一种在局域网上共享文件和打印机的一种通信协议它为局域网内的不同计算机之间提供文件及打印机等资源的共享服务。</p>
<p>SMB协议是客户机/服务器型协议客户机通过该协议可以访问服务器上的共享文件系统、打印机及其他资源。通过设置“NetBIOS over TCP/IP”使得Samba不但能与局域网络主机分享资源还能与全世界的电脑分享资源。</p>
<p>某厂商路由器的smbd版本为4.0.21该漏洞影响Samba 3.5.0到4.6.4/4.5.10/4.4.14的中间版本。</p>
<h1 id="漏洞成因"><a href="#漏洞成因" class="headerlink" title="漏洞成因"></a>漏洞成因</h1><p>处于<code>\source3\rpc_server\src_pipe.c的is_known_pipename()</code>函数未对传进来的管道名<code>pipename</code>的路径分隔符<code>/</code>进行识别过滤导致可以用绝对路径调用恶意的so文件从而远程任意代码执行。<br>首先看到<code>is_known_pipename()`</code>函数<br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png" alt></p>
<p>跟进到<code>smb_probe_module()</code><br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-59-58.jpg" alt></p>
<p>再跟进到<code>do_smb_load_module()</code>,发现调用的过程就在其中,调用了传进来的moudule_name对应的init_samba_module函数<br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-01-19.jpg" alt></p>
<h1 id="漏洞成因"><a href="#漏洞成因" class="headerlink" title="漏洞成因"></a>漏洞成因</h1><p>处于<code>\source3\rpc_server\src_pipe.c的is_known_pipename()</code>函数未对传进来的管道名<code>pipename</code>的路径分隔符<code>/</code>进行识别过滤导致可以用绝对路径调用恶意的so文件从而远程任意代码执行。<br>首先看到<code>is_known_pipename()`</code>函数<br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-00-46.png" alt></p>
<p>跟进到<code>smb_probe_module()</code><br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-59-58.jpg" alt></p>
<p>再跟进到<code>do_smb_load_module()</code>,发现调用的过程就在其中,调用了传进来的moudule_name对应的init_samba_module函数<br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/02-01-19.jpg" alt></p>
<p>我们可以通过smb服务上传一个恶意的so文件随后通过上述过程进行调用执行任意代码。</p>
<h1 id="漏洞复现"><a href="#漏洞复现" class="headerlink" title="漏洞复现"></a>漏洞复现</h1><h2 id="某路由器满足条件"><a href="#某路由器满足条件" class="headerlink" title="某路由器满足条件"></a>某路由器满足条件</h2><figure class="highlight plain"><table><tr><td class="gutter"><pre><span class="line">1</span><br><span class="line">2</span><br><span class="line">3</span><br><span class="line">4</span><br><span class="line">5</span><br><span class="line">6</span><br></pre></td><td class="code"><pre><span class="line">netstat -apnt</span><br><span class="line">tcp 0 0 192.168.31.1:445 0.0.0.0:* LISTEN 0 572 1917/smbd</span><br><span class="line"></span><br><span class="line">nmap 192.168.31.1</span><br><span class="line">139/tcp open netbios-ssn</span><br><span class="line">445/tcp open microsoft-ds</span><br></pre></td></tr></table></figure>
<p><strong><em>端口已开启</em></strong><br><figure class="highlight plain"><table><tr><td class="gutter"><pre><span class="line">1</span><br><span class="line">2</span><br><span class="line">3</span><br><span class="line">4</span><br><span class="line">5</span><br><span class="line">6</span><br><span class="line">7</span><br><span class="line">8</span><br><span class="line">9</span><br><span class="line">10</span><br><span class="line">11</span><br><span class="line">12</span><br><span class="line">13</span><br><span class="line">14</span><br><span class="line">15</span><br><span class="line">16</span><br><span class="line">17</span><br><span class="line">18</span><br><span class="line">19</span><br><span class="line">20</span><br><span class="line">21</span><br><span class="line">22</span><br><span class="line">23</span><br><span class="line">24</span><br><span class="line">25</span><br><span class="line">26</span><br><span class="line">27</span><br><span class="line">28</span><br><span class="line">29</span><br><span class="line">30</span><br><span class="line">31</span><br><span class="line">32</span><br><span class="line">33</span><br><span class="line">34</span><br><span class="line">35</span><br><span class="line">36</span><br><span class="line">37</span><br><span class="line">38</span><br><span class="line">39</span><br><span class="line">40</span><br><span class="line">41</span><br><span class="line">42</span><br><span class="line">43</span><br><span class="line">44</span><br><span class="line">45</span><br><span class="line">46</span><br></pre></td><td class="code"><pre><span class="line">vim /etc/samba/smb.conf</span><br><span class="line"> deadtime = 30</span><br><span class="line"> domain master = yes</span><br><span class="line"> encrypt passwords = true</span><br><span class="line"> enable core files = no</span><br><span class="line"> guest account = nobody</span><br><span class="line"> guest ok = yes</span><br><span class="line"> invalid users =</span><br><span class="line"> local master = yes</span><br><span class="line"> load printers = no</span><br><span class="line"> map to guest = Bad User</span><br><span class="line"> min receivefile size = 16384</span><br><span class="line"> null passwords = yes</span><br><span class="line"> obey pam restrictions = yes</span><br><span class="line"> passdb backend = smbpasswd</span><br><span class="line"> preferred master = yes</span><br><span class="line"> printable = no</span><br><span class="line"> smb encrypt = disabled</span><br><span class="line"> smb passwd file = /etc/samba/smbpasswd</span><br><span class="line"> socket options = SO_SNDBUFFORCE=1048576 SO_RCVBUFFORCE=1048576</span><br><span class="line"> smb2 max trans = 1048576</span><br><span class="line"> smb2 max write = 1048576</span><br><span class="line"> smb2 max read = 1048576</span><br><span class="line"> write cache size = 262144</span><br><span class="line"> syslog = 2</span><br><span class="line"> syslog only = yes</span><br><span class="line"> use sendfile = yes</span><br><span class="line"> writeable = yes</span><br><span class="line"> log level = 1</span><br><span class="line"> unicode = True</span><br><span class="line"> max log size = 500</span><br><span class="line"> log file = /tmp/log/samba.log</span><br><span class="line"> server role = STANDALONE</span><br><span class="line"></span><br><span class="line">[homes]</span><br><span class="line"> comment = Home Directories</span><br><span class="line"> browsable = no</span><br><span class="line"> read only = no</span><br><span class="line"> create mode = 0750</span><br><span class="line"></span><br><span class="line">[data] ***SMB_SHARE_NAME***</span><br><span class="line"> path = /tmp ***SMB_FOLDER***</span><br><span class="line"> read only = no ***具备可写权限***</span><br><span class="line"> guest ok = yes ***允许匿名***</span><br><span class="line"> create mask = 0777</span><br><span class="line"> directory mask = 0777</span><br></pre></td></tr></table></figure></p>
@ -480,18 +480,18 @@
<p>虽然报错,但是查看共享文件夹/tmp却发现了生成了.so文件<br>知乎这篇<a href="https://zhuanlan.zhihu.com/p/27129229" target="_blank" rel="noopener">专栏</a>也有相同问题</p>
<h1 id="修补方案"><a href="#修补方案" class="headerlink" title="修补方案"></a>修补方案</h1><p>最安全的方法还是打补丁或者升级到Samba 4.6.4/4.5.10/4.4.14任意版本,可以参考 <a href="https://www.samba.org/samba/history/security.html" target="_blank" rel="noopener">https://www.samba.org/samba/history/security.html</a></p>
<p>如果暂时不能升级版本或安装补丁,可以使用临时解决方案:<br>在smb.conf的[global]板块中添加参数nt pipe support = no<br>然后重启smbd服务。</p>
<h1 id="分析POC查找原因"><a href="#分析POC查找原因" class="headerlink" title="分析POC查找原因"></a>分析POC查找原因</h1><p>(来自<a href="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/" target="_blank" rel="noopener">Wzblog</a>)</p>
<h2 id="建立SMB连接。若需要账号密码登录则必须登录后才能继续"><a href="#建立SMB连接。若需要账号密码登录则必须登录后才能继续" class="headerlink" title="建立SMB连接。若需要账号密码登录则必须登录后才能继续"></a>建立SMB连接。若需要账号密码登录则必须登录后才能继续</h2><p>从微软上扒的SMB协议建立时序图<br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-09-40.png" alt></p>
<h1 id="分析POC查找原因"><a href="#分析POC查找原因" class="headerlink" title="分析POC查找原因"></a>分析POC查找原因</h1><p>(来自<a href="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/" target="_blank" rel="noopener">Wzblog</a>)</p>
<h2 id="建立SMB连接。若需要账号密码登录则必须登录后才能继续"><a href="#建立SMB连接。若需要账号密码登录则必须登录后才能继续" class="headerlink" title="建立SMB连接。若需要账号密码登录则必须登录后才能继续"></a>建立SMB连接。若需要账号密码登录则必须登录后才能继续</h2><p>从微软上扒的SMB协议建立时序图<br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-09-40.png" alt></p>
<p>对应POC:</p>
<p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/23-15-57.png" alt></p>
<h2 id="利用NetShareEnumAll遍历目标服务器的共享名-ShareName-以及获取对应的共享文件夹下的可写路径-Path"><a href="#利用NetShareEnumAll遍历目标服务器的共享名-ShareName-以及获取对应的共享文件夹下的可写路径-Path" class="headerlink" title="利用NetShareEnumAll遍历目标服务器的共享名(ShareName)以及获取对应的共享文件夹下的可写路径(Path)"></a>利用NetShareEnumAll遍历目标服务器的共享名(ShareName)以及获取对应的共享文件夹下的可写路径(Path)</h2><p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-38-48.jpg" alt></p>
<p>其中find_writeable_path()函数需要跟进看一下:<br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-14-43.jpg" alt></p>
<p>再跟进看enumerate_directories()以及verify_writeable_directory函数<br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-48-27.jpg" alt><br><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-18-44.jpg" alt></p>
<p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/23-15-57.png" alt></p>
<h2 id="利用NetShareEnumAll遍历目标服务器的共享名-ShareName-以及获取对应的共享文件夹下的可写路径-Path"><a href="#利用NetShareEnumAll遍历目标服务器的共享名-ShareName-以及获取对应的共享文件夹下的可写路径-Path" class="headerlink" title="利用NetShareEnumAll遍历目标服务器的共享名(ShareName)以及获取对应的共享文件夹下的可写路径(Path)"></a>利用NetShareEnumAll遍历目标服务器的共享名(ShareName)以及获取对应的共享文件夹下的可写路径(Path)</h2><p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-38-48.jpg" alt></p>
<p>其中find_writeable_path()函数需要跟进看一下:<br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-14-43.jpg" alt></p>
<p>再跟进看enumerate_directories()以及verify_writeable_directory函数<br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/00-48-27.jpg" alt><br><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-18-44.jpg" alt></p>
<p>可以看到代码逻辑很清楚首先遍历出当前路径所有的文件夹然后尝试往里面写一个随机的txt文件用作可写测试随后删除掉txt文件记录下可写的文件路径。<br>至此,我们得到了一个共享名(即本例中的data)以及其当前路径下的可写目录(/tmp)</p>
<h2 id="利用NetShareGetInfo获取共享文件夹的绝对路径-SharePath"><a href="#利用NetShareGetInfo获取共享文件夹的绝对路径-SharePath" class="headerlink" title="利用NetShareGetInfo获取共享文件夹的绝对路径(SharePath)"></a>利用NetShareGetInfo获取共享文件夹的绝对路径(SharePath)</h2><p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-26-47.jpg" alt><br>至此获取到了共享名data的绝对路径。<br>值得注意的是这里跟早期的Payload不一样早期的payload是靠暴力猜解目录所以跟一些分析文章有些出入。现在的Payload是根据NetShareGetInfo直接获取到准确的路径极大地提高了攻击的成功率。</p>
<h2 id="上传恶意so文件"><a href="#上传恶意so文件" class="headerlink" title="上传恶意so文件"></a>上传恶意so文件</h2><p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-38-28.jpg" alt><br>其中写入的so文件是Metasploit生成的反弹shell很简单的执行一句命令。有一点需要注意的是里面的函数名必须是samba_init_module并且是一个导出函数这个原因上述的漏洞分析也有提及。</p>
<h2 id="调用恶意文件并执行echo命令打印随机字符串检验是否调用成功"><a href="#调用恶意文件并执行echo命令打印随机字符串检验是否调用成功" class="headerlink" title="调用恶意文件并执行echo命令打印随机字符串检验是否调用成功"></a>调用恶意文件并执行echo命令打印随机字符串检验是否调用成功</h2><p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-43-02.jpg" alt><br>利用从第2步获取到的可写文件目录(Path)以及从第3步得到的共享文件绝对路径(SharePath)构造恶意管道名\PIPE\/SharePath/Path/Evil.so然后通过SMB_COM_NT_CREATE_ANDX进行调用。<br>在复现时调用恶意so文件总会失败产生Error Code为STATUS_OBJECT_NAME_NOT_FOUND的错误。尚未能明白为什么会出现这种首次失败的情况也许要详细看看smb协议才能知道了。<br>POC代码将STATUS_OBJECT_PATH_INVALID作为我们payload被加载的标志随后就是用NBSS协议进行了一次远程代码执行的测试执行代码为echo随机字符串。</p>
<h2 id="删除恶意so文件断开smb连接"><a href="#删除恶意so文件断开smb连接" class="headerlink" title="删除恶意so文件断开smb连接"></a>删除恶意so文件断开smb连接</h2><p><img src="https://www.wzsite.cn/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-45-01.png" alt></p>
<h2 id="利用NetShareGetInfo获取共享文件夹的绝对路径-SharePath"><a href="#利用NetShareGetInfo获取共享文件夹的绝对路径-SharePath" class="headerlink" title="利用NetShareGetInfo获取共享文件夹的绝对路径(SharePath)"></a>利用NetShareGetInfo获取共享文件夹的绝对路径(SharePath)</h2><p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-26-47.jpg" alt><br>至此获取到了共享名data的绝对路径。<br>值得注意的是这里跟早期的Payload不一样早期的payload是靠暴力猜解目录所以跟一些分析文章有些出入。现在的Payload是根据NetShareGetInfo直接获取到准确的路径极大地提高了攻击的成功率。</p>
<h2 id="上传恶意so文件"><a href="#上传恶意so文件" class="headerlink" title="上传恶意so文件"></a>上传恶意so文件</h2><p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-38-28.jpg" alt><br>其中写入的so文件是Metasploit生成的反弹shell很简单的执行一句命令。有一点需要注意的是里面的函数名必须是samba_init_module并且是一个导出函数这个原因上述的漏洞分析也有提及。</p>
<h2 id="调用恶意文件并执行echo命令打印随机字符串检验是否调用成功"><a href="#调用恶意文件并执行echo命令打印随机字符串检验是否调用成功" class="headerlink" title="调用恶意文件并执行echo命令打印随机字符串检验是否调用成功"></a>调用恶意文件并执行echo命令打印随机字符串检验是否调用成功</h2><p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-43-02.jpg" alt><br>利用从第2步获取到的可写文件目录(Path)以及从第3步得到的共享文件绝对路径(SharePath)构造恶意管道名\PIPE\/SharePath/Path/Evil.so然后通过SMB_COM_NT_CREATE_ANDX进行调用。<br>在复现时调用恶意so文件总会失败产生Error Code为STATUS_OBJECT_NAME_NOT_FOUND的错误。尚未能明白为什么会出现这种首次失败的情况也许要详细看看smb协议才能知道了。<br>POC代码将STATUS_OBJECT_PATH_INVALID作为我们payload被加载的标志随后就是用NBSS协议进行了一次远程代码执行的测试执行代码为echo随机字符串。</p>
<h2 id="删除恶意so文件断开smb连接"><a href="#删除恶意so文件断开smb连接" class="headerlink" title="删除恶意so文件断开smb连接"></a>删除恶意so文件断开smb连接</h2><p><img src="https://www.testzero-wz.com/2018/07/20/Samba%E8%BF%9C%E7%A8%8B%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E5%88%86%E6%9E%90%20CVE-2017-7494/01-45-01.png" alt></p>
<p>由msf给出的poc过程可见对路由器的攻击在第五步出现问题因此出现Failed to load STATUS_OBJECT_NAME_NOT_FOUND</p>
@ -654,7 +654,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -676,7 +676,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -756,7 +756,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -768,7 +768,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -754,7 +754,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -776,7 +776,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -856,7 +856,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -868,7 +868,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -675,7 +675,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -697,7 +697,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -777,7 +777,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -789,7 +789,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -799,7 +799,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -821,7 +821,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -901,7 +901,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -913,7 +913,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -87,12 +87,12 @@
<meta property="og:site_name" content="混元霹雳手">
<meta property="og:description" content="PE文件格式PE(Portable Executable)是Win32平台下可执行文件遵守的数据格式。常见的可执行文件如exe和dll都是典型的PE文件。PE文件格式其实是一种数据结构包含Windows操作系统加载管理可执行代码时所必要的信息如二进制机器代码、字符串、菜单、图标、位图、字体等。PE文件格式规定了所有这些信息在可执行文件中如何组织。在程序被执行时操作系统会按照PE文件格式的">
<meta property="og:locale" content="zh-Hans">
<meta property="og:image" content="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/1506049226526485.jpg">
<meta property="og:updated_time" content="2019-05-13T12:43:24.447Z">
<meta property="og:image" content="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/pwn/1506049226526485.jpg">
<meta property="og:updated_time" content="2020-10-19T04:14:48.537Z">
<meta name="twitter:card" content="summary">
<meta name="twitter:title" content="PE文件格式学习">
<meta name="twitter:description" content="PE文件格式PE(Portable Executable)是Win32平台下可执行文件遵守的数据格式。常见的可执行文件如exe和dll都是典型的PE文件。PE文件格式其实是一种数据结构包含Windows操作系统加载管理可执行代码时所必要的信息如二进制机器代码、字符串、菜单、图标、位图、字体等。PE文件格式规定了所有这些信息在可执行文件中如何组织。在程序被执行时操作系统会按照PE文件格式的">
<meta name="twitter:image" content="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/1506049226526485.jpg">
<meta name="twitter:image" content="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/pwn/1506049226526485.jpg">
@ -556,7 +556,7 @@
<li><p>引入函数节(.rdata/.idata)</p>
<figure class="highlight plain"><table><tr><td class="gutter"><pre><span class="line">1</span><br><span class="line">2</span><br><span class="line">3</span><br><span class="line">4</span><br><span class="line">5</span><br><span class="line">6</span><br><span class="line">7</span><br><span class="line">8</span><br><span class="line">9</span><br><span class="line">10</span><br><span class="line">11</span><br><span class="line">12</span><br><span class="line">13</span><br><span class="line">14</span><br></pre></td><td class="code"><pre><span class="line">typedef struct _IMAGE_IMPORT_DESCRIPTOR &#123;</span><br><span class="line"> union &#123;</span><br><span class="line"> DWORD Characteristics; // 0 for terminating null import descriptor</span><br><span class="line"> DWORD OriginalFirstThunk; // RVA to original unbound IAT (PIMAGE_THUNK_DATA)</span><br><span class="line"> &#125;;</span><br><span class="line"> DWORD TimeDateStamp; // 0 if not bound,</span><br><span class="line"> // -1 if bound, and real datetime stamp</span><br><span class="line"> // in IMAGE_DIRECTORY_ENTRY_BOUND_IMPORT (new BIND)</span><br><span class="line"> // O.W. date/time stamp of DLL bound to (Old BIND)</span><br><span class="line"></span><br><span class="line"> DWORD ForwarderChain; // -1 if no forwarders</span><br><span class="line"> DWORD Name;</span><br><span class="line"> DWORD FirstThunk; // RVA to IAT (if bound this IAT has actual addresses)</span><br><span class="line">&#125; IMAGE_IMPORT_DESCRIPTOR;</span><br></pre></td></tr></table></figure>
</li>
<li><p>一个exe程序加载dll的IMAGE_IMPORT_DESCRIPTOR<br><img src="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/1506049226526485.jpg" alt></p>
<li><p>一个exe程序加载dll的IMAGE_IMPORT_DESCRIPTOR<br><img src="https://res.cloudinary.com/dozyfkbg3/image/upload/v1556519313/pwn/1506049226526485.jpg" alt></p>
</li>
</ul>
@ -718,7 +718,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -740,7 +740,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -820,7 +820,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -832,7 +832,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -640,7 +640,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -662,7 +662,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -742,7 +742,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -754,7 +754,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -479,7 +479,7 @@
<hr>
<h1 id="0x02-AFL快速入门"><a href="#0x02-AFL快速入门" class="headerlink" title="0x02 AFL快速入门"></a>0x02 <a href="http://lcamtuf.coredump.cx/afl/QuickStartGuide.txt" target="_blank" rel="noopener">AFL快速入门</a></h1><p>1<code>make</code>编译AFL。如果构建失败请参阅docs / INSTALL以获取提示。<br>2查找或编写一个相当快速和简单的程序该程序从<strong><em>文件或标准输入</em></strong>中获取数据以一种有价值的方式处理它然后干净地退出。如果测试网络服务请将其修改为在前台运行并从stdin读取。在对使用校验和的格式进行模糊测试时也要注释掉校验和验证码。<br>遇到故障时程序必须正常崩溃。注意自定义SIGSEGV或SIGABRT处理程序和后台进程。有关检测非崩溃缺陷的提示请参阅<code>docs/README</code>中的第11节。<br>3使用afl-gcc编译要模糊的程序/库。一种常见的方法是:<br><figure class="highlight plain"><table><tr><td class="gutter"><pre><span class="line">1</span><br><span class="line">2</span><br></pre></td><td class="code"><pre><span class="line">$ CC = /path/to/afl-gcc CXX =/path/to/afl-g++ ./configure --disable-shared</span><br><span class="line">$ make clean all</span><br></pre></td></tr></table></figure></p>
<p>如果程序构建失败,请联系 <a href="mailto:&#x61;&#102;&#x6c;&#45;&#117;&#115;&#101;&#x72;&#115;&#64;&#x67;&#111;&#x6f;&#103;&#x6c;&#x65;&#103;&#x72;&#x6f;&#x75;&#x70;&#115;&#x2e;&#99;&#x6f;&#x6d;" target="_blank" rel="noopener">&#x61;&#102;&#x6c;&#45;&#117;&#115;&#101;&#x72;&#115;&#64;&#x67;&#111;&#x6f;&#103;&#x6c;&#x65;&#103;&#x72;&#x6f;&#x75;&#x70;&#115;&#x2e;&#99;&#x6f;&#x6d;</a><br>4获取一个对程序有意义的小而有效的输入文件。在模糊详细语法SQLHTTP等也要创建字典<code>dictionaries/README.dictionaries</code>中所述。<br>5如果程序从stdin读取则运行<code>afl-fuzz</code>,如下所示:<br><code>./afl-fuzz -i testcase_dir -o findings_dir -- /path/to/tested/program [... program&#39;s cmdline ...]</code><br> 如果程序从文件中获取输入,则可以在程序的命令行中输入@@; AFL会为您放置一个自动生成的文件名。</p>
<p>如果程序构建失败,请联系 <a href="mailto:&#97;&#x66;&#x6c;&#45;&#x75;&#x73;&#x65;&#114;&#x73;&#64;&#103;&#x6f;&#x6f;&#103;&#108;&#x65;&#103;&#x72;&#111;&#x75;&#112;&#115;&#x2e;&#99;&#111;&#109;" target="_blank" rel="noopener">&#97;&#x66;&#x6c;&#45;&#x75;&#x73;&#x65;&#114;&#x73;&#64;&#103;&#x6f;&#x6f;&#103;&#108;&#x65;&#103;&#x72;&#111;&#x75;&#112;&#115;&#x2e;&#99;&#111;&#109;</a><br>4获取一个对程序有意义的小而有效的输入文件。在模糊详细语法SQLHTTP等也要创建字典<code>dictionaries/README.dictionaries</code>中所述。<br>5如果程序从stdin读取则运行<code>afl-fuzz</code>,如下所示:<br><code>./afl-fuzz -i testcase_dir -o findings_dir -- /path/to/tested/program [... program&#39;s cmdline ...]</code><br> 如果程序从文件中获取输入,则可以在程序的命令行中输入@@; AFL会为您放置一个自动生成的文件名。</p>
<p><strong>一些参考文档</strong></p>
<blockquote>
<p><a href="http://lcamtuf.coredump.cx/afl/README.txt" target="_blank" rel="noopener">docs/README</a> - AFL的一般介绍<br><a href="https://github.com/mirrorer/afl/blob/master/docs/perf_tips.txt" target="_blank" rel="noopener">docs/perf_tips.txt</a> - 关于如何快速模糊的简单提示,<br><a href="http://lcamtuf.coredump.cx/afl/status_screen.txt" target="_blank" rel="noopener">docs/status_screen.txt</a> - UI中显示的花絮的解释<br><a href="https://github.com/mirrorer/afl/blob/master/docs/parallel_fuzzing.txt" target="_blank" rel="noopener">docs/parallel_fuzzing.txt</a> - 关于在多个核上运行AFL的建议<br><a href="http://lcamtuf.coredump.cx/afl/demo/" target="_blank" rel="noopener">Generated test cases for common image formats</a> - 生成图像文件测试用例的demo<br><a href="http://lcamtuf.coredump.cx/afl/technical_details.txt" target="_blank" rel="noopener">Technical “whitepaper” for afl-fuzz</a> - 技术白皮书</p>
@ -496,10 +496,10 @@
</ol>
<hr>
<h1 id="0x04-AFL-README"><a href="#0x04-AFL-README" class="headerlink" title="0x04 AFL README"></a>0x04 <a href="http://lcamtuf.coredump.cx/afl/README.txt" target="_blank" rel="noopener">AFL README</a></h1><blockquote>
<p>Written and maintained by Michal Zalewski <a href="mailto:&#108;&#x63;&#x61;&#x6d;&#116;&#117;&#x66;&#x40;&#x67;&#111;&#111;&#x67;&#x6c;&#x65;&#46;&#x63;&#x6f;&#x6d;" target="_blank" rel="noopener">&#108;&#x63;&#x61;&#x6d;&#116;&#117;&#x66;&#x40;&#x67;&#111;&#111;&#x67;&#x6c;&#x65;&#46;&#x63;&#x6f;&#x6d;</a></p>
<p>Written and maintained by Michal Zalewski <a href="mailto:&#108;&#99;&#x61;&#109;&#116;&#117;&#x66;&#x40;&#103;&#x6f;&#x6f;&#x67;&#x6c;&#101;&#46;&#x63;&#111;&#x6d;" target="_blank" rel="noopener">&#108;&#99;&#x61;&#109;&#116;&#117;&#x66;&#x40;&#103;&#x6f;&#x6f;&#x67;&#x6c;&#101;&#46;&#x63;&#111;&#x6d;</a></p>
<p> Copyright 2013, 2014, 2015, 2016 Google Inc. All rights reserved.<br> Released under terms and conditions of Apache License, Version 2.0.</p>
<p> For new versions and additional information, check out:<br> <a href="http://lcamtuf.coredump.cx/afl/" target="_blank" rel="noopener">http://lcamtuf.coredump.cx/afl/</a></p>
<p> To compare notes with other users or get notified about major new features,<br> send a mail to <a href="mailto:&#x61;&#102;&#x6c;&#45;&#x75;&#115;&#x65;&#114;&#115;&#43;&#x73;&#117;&#98;&#x73;&#99;&#x72;&#105;&#98;&#x65;&#64;&#x67;&#x6f;&#x6f;&#103;&#108;&#101;&#x67;&#x72;&#x6f;&#x75;&#x70;&#x73;&#46;&#x63;&#111;&#109;" target="_blank" rel="noopener">&#x61;&#102;&#x6c;&#45;&#x75;&#115;&#x65;&#114;&#115;&#43;&#x73;&#117;&#98;&#x73;&#99;&#x72;&#105;&#98;&#x65;&#64;&#x67;&#x6f;&#x6f;&#103;&#108;&#101;&#x67;&#x72;&#x6f;&#x75;&#x70;&#x73;&#46;&#x63;&#111;&#109;</a>.</p>
<p> To compare notes with other users or get notified about major new features,<br> send a mail to <a href="mailto:&#x61;&#x66;&#x6c;&#45;&#x75;&#x73;&#101;&#114;&#x73;&#x2b;&#x73;&#117;&#98;&#x73;&#99;&#114;&#105;&#98;&#101;&#x40;&#x67;&#111;&#x6f;&#103;&#108;&#x65;&#x67;&#x72;&#111;&#117;&#112;&#115;&#x2e;&#99;&#111;&#109;" target="_blank" rel="noopener">&#x61;&#x66;&#x6c;&#45;&#x75;&#x73;&#101;&#114;&#x73;&#x2b;&#x73;&#117;&#98;&#x73;&#99;&#114;&#105;&#98;&#101;&#x40;&#x67;&#111;&#x6f;&#103;&#108;&#x65;&#x67;&#x72;&#111;&#117;&#112;&#115;&#x2e;&#99;&#111;&#109;</a>.</p>
<p> <strong>See QuickStartGuide.txt if you dont have time to read this file.</strong></p>
</blockquote>
<h2 id="1具有导向性的模糊测试的挑战"><a href="#1具有导向性的模糊测试的挑战" class="headerlink" title="1具有导向性的模糊测试的挑战"></a>1具有导向性的模糊测试的挑战</h2><p>Fuzzing是用于识别真实软件中的安全问题的最强大且经过验证的策略之一;它负责安全关键软件中迄今为止发现的绝大多数远程代码执行和权限提升漏洞。<br>不幸的是,模糊测试也不够有力。盲目的、随机的变异使得它不太可能在测试代码中达到某些代码路径,从而使一些漏洞超出了这种技术的范围。<br>已经有许多尝试来解决这个问题。早期方法之一 - 由Tavis Ormandy开创 - 是一种 <strong>语义库蒸馏corpus distillation</strong> 。网上找到的一些大型语料库中往往包含大量的文件,这时就需要对其精简,该方法依赖于覆盖信号从大量高质量的候选文件语料库中选择有趣种子的子集,然后通过传统方式对其进行模糊处理。该方法非常有效,但需要这样的语料库随时可用。正因为如此,<strong>代码覆盖率</strong> 也只是衡量程序执行状态的一个简单化的度量这种方式并不适合后续引导fuzzing测试的。<br>其他更复杂的研究集中在诸如 <strong>程序流分析“concoic execution”符号执行或静态分析</strong> 等技术上。所有这些方法在实验环境中都非常有前景,但在实际应用中往往会遇到可靠性和性能问题 - 部分高价值的程序都有非常复杂的内部状态和执行路径在这一方面符号执行和concolic技术往往会显得不够健壮如路径爆炸问题所以仍然稍逊于传统的fuzzing技术。</p>
@ -913,7 +913,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -935,7 +935,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -1015,7 +1015,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -1027,7 +1027,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -703,7 +703,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -725,7 +725,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -805,7 +805,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -817,7 +817,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -735,7 +735,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -757,7 +757,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -837,7 +837,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -849,7 +849,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -718,7 +718,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -740,7 +740,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -820,7 +820,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -832,7 +832,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -731,7 +731,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -753,7 +753,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -833,7 +833,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -845,7 +845,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -614,7 +614,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -636,7 +636,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -716,7 +716,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -728,7 +728,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -662,7 +662,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -684,7 +684,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -764,7 +764,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -776,7 +776,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -739,7 +739,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -761,7 +761,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -841,7 +841,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -853,7 +853,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -912,6 +912,10 @@
<div class="post-nav-prev post-nav-item">
<a href="/2020/10/16/coremail/" rel="prev" title="DataCon Coremail邮件安全第三题 Writeup">
DataCon Coremail邮件安全第三题 Writeup <i class="fa fa-chevron-right"></i>
</a>
</div>
</div>
@ -996,7 +1000,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -1018,7 +1022,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -1098,7 +1102,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -1110,7 +1114,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

File diff suppressed because it is too large Load Diff

File diff suppressed because it is too large Load Diff

View File

@ -377,7 +377,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -399,7 +399,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -463,7 +463,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -475,7 +475,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -480,7 +480,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -502,7 +502,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -566,7 +566,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -578,7 +578,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -480,7 +480,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -502,7 +502,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -566,7 +566,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -578,7 +578,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -515,7 +515,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -537,7 +537,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -601,7 +601,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -613,7 +613,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -445,7 +445,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -467,7 +467,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -531,7 +531,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -543,7 +543,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -445,7 +445,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -467,7 +467,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -531,7 +531,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -543,7 +543,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -620,7 +620,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -642,7 +642,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -706,7 +706,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -718,7 +718,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -410,7 +410,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -432,7 +432,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -496,7 +496,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -508,7 +508,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -729,7 +729,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -751,7 +751,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -815,7 +815,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -827,7 +827,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -694,7 +694,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -716,7 +716,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -780,7 +780,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -792,7 +792,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

1163
archives/2020/10/index.html Normal file

File diff suppressed because it is too large Load Diff

1163
archives/2020/index.html Normal file

File diff suppressed because it is too large Load Diff

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -323,6 +323,46 @@
<div class="collection-title">
<h1 class="archive-year" id="archive-year-2020">2020</h1>
</div>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2020/10/16/coremail/" itemprop="url">
<span itemprop="name">DataCon Coremail邮件安全第三题 Writeup</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2020-10-16T11:07:33+08:00" content="2020-10-16">
10-16
</time>
</div>
</header>
</article>
<div class="collection-title">
<h1 class="archive-year" id="archive-year-2019">2019</h1>
</div>
@ -637,41 +677,6 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2019/05/14/pack-and-unpack/" itemprop="url">
<span itemprop="name">加壳与脱壳</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2019-05-14T11:20:59+08:00" content="2019-05-14">
05-14
</time>
</div>
</header>
</article>
</div>
</div>
@ -729,7 +734,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -751,7 +756,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -815,7 +820,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -827,7 +832,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -331,6 +331,41 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2019/05/14/pack-and-unpack/" itemprop="url">
<span itemprop="name">加壳与脱壳</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2019-05-14T11:20:59+08:00" content="2019-05-14">
05-14
</time>
</div>
</header>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
@ -637,46 +672,6 @@
<div class="collection-title">
<h1 class="archive-year" id="archive-year-2018">2018</h1>
</div>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" itemprop="url">
<span itemprop="name">TCPDUMP拒绝服务攻击漏洞</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2018-12-25T12:26:05+08:00" content="2018-12-25">
12-25
</time>
</div>
</header>
</article>
</div>
</div>
@ -734,7 +729,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -756,7 +751,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -820,7 +815,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -832,7 +827,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -312,7 +312,7 @@
嗯..! 目前共计 23 篇日志。 继续努力。
嗯..! 目前共计 24 篇日志。 继续努力。
</span>
@ -331,6 +331,41 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" itemprop="url">
<span itemprop="name">TCPDUMP拒绝服务攻击漏洞</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2018-12-25T12:26:05+08:00" content="2018-12-25">
12-25
</time>
</div>
</header>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
@ -489,7 +524,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -511,7 +546,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -575,7 +610,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -587,7 +622,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -1,5 +1,5 @@
https://cool-y.github.io/2020/10/16/coremail/
https://cool-y.github.io/2019/11/12/web-information-collect/
https://cool-y.github.io/2019/10/25/PWNtw-start/
https://cool-y.github.io/2019/07/25/Debug-a-router-firmware/
https://cool-y.github.io/2019/07/24/获取固件/
https://cool-y.github.io/2019/07/24/web-dvwa/

View File

@ -1,6 +1,18 @@
<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://cool-y.github.io/2020/10/16/coremail/</loc>
<lastmod>2020-10-20</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/01/16/wifi%E5%8D%8A%E5%8F%8C%E5%B7%A5%E4%BE%A7%E4%BF%A1%E9%81%93%E6%94%BB%E5%87%BB%E5%AD%A6%E4%B9%A0%E7%AC%94%E8%AE%B0/</loc>
<lastmod>2020-10-19</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/03/25/Samba-CVE/</loc>
<lastmod>2020-10-19</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/05/13/PE-file/</loc>
<lastmod>2020-10-19</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/11/12/web-information-collect/</loc>
<lastmod>2019-11-12</lastmod>
</url> <url>
@ -12,9 +24,6 @@
</url> <url>
<loc>https://cool-y.github.io/2019/07/16/linux-pwn-32/</loc>
<lastmod>2019-10-25</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/03/25/Samba-CVE/</loc>
<lastmod>2019-07-27</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/07/25/Debug-a-router-firmware/</loc>
<lastmod>2019-07-25</lastmod>
@ -42,9 +51,6 @@
</url> <url>
<loc>https://cool-y.github.io/2018/12/25/TCPDUMP%E6%8B%92%E7%BB%9D%E6%9C%8D%E5%8A%A1%E6%94%BB%E5%87%BB%E6%BC%8F%E6%B4%9E/</loc>
<lastmod>2019-07-01</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/05/13/PE-file/</loc>
<lastmod>2019-05-13</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/03/28/%E9%80%86%E5%90%91%E5%B7%A5%E7%A8%8B%E5%AE%9E%E9%AA%8C/</loc>
<lastmod>2019-05-07</lastmod>
@ -54,9 +60,6 @@
</url> <url>
<loc>https://cool-y.github.io/2018/12/23/%E5%9F%BA%E4%BA%8E%E8%A7%84%E5%88%99%E5%BC%95%E6%93%8E%E5%8F%91%E7%8E%B0IOT%E8%AE%BE%E5%A4%87/</loc>
<lastmod>2019-04-15</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/01/16/wifi%E5%8D%8A%E5%8F%8C%E5%B7%A5%E4%BE%A7%E4%BF%A1%E9%81%93%E6%94%BB%E5%87%BB%E5%AD%A6%E4%B9%A0%E7%AC%94%E8%AE%B0/</loc>
<lastmod>2019-04-15</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2018/12/15/miio-control/</loc>
<lastmod>2019-04-15</lastmod>
@ -64,10 +67,10 @@
<loc>https://cool-y.github.io/2019/02/22/qq%E6%95%B0%E6%8D%AE%E5%BA%93%E7%9A%84%E5%8A%A0%E5%AF%86%E8%A7%A3%E5%AF%86/</loc>
<lastmod>2019-04-15</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2019/03/23/auto-send-WX/</loc>
<loc>https://cool-y.github.io/2000/01/01/hello-world/</loc>
<lastmod>2019-04-15</lastmod>
</url> <url>
<loc>https://cool-y.github.io/2000/01/01/hello-world/</loc>
<loc>https://cool-y.github.io/2019/03/23/auto-send-WX/</loc>
<lastmod>2019-04-15</lastmod>
</url>
</urlset>

View File

@ -413,7 +413,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -435,7 +435,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -515,7 +515,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -527,7 +527,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -521,7 +521,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -543,7 +543,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -607,7 +607,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -619,7 +619,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -443,7 +443,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -465,7 +465,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -529,7 +529,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -541,7 +541,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -324,7 +324,7 @@
目前共计 7 个分类
</div>
<div class="category-all">
<ul class="category-list"><li class="category-list-item"><a class="category-list-link" href="/categories/IOT/">IOT</a><span class="category-list-count">6</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/Pwn/">Pwn</a><span class="category-list-count">3</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/web/">web</a><span class="category-list-count">2</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/二进制/">二进制</a><span class="category-list-count">5</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/加密解密/">加密解密</a><span class="category-list-count">1</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/杂七杂八/">杂七杂八</a><span class="category-list-count">1</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/顶会论文/">顶会论文</a><span class="category-list-count">3</span></li></ul>
<ul class="category-list"><li class="category-list-item"><a class="category-list-link" href="/categories/IOT/">IOT</a><span class="category-list-count">6</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/Pwn/">Pwn</a><span class="category-list-count">3</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/web/">web</a><span class="category-list-count">2</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/二进制/">二进制</a><span class="category-list-count">5</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/加密解密/">加密解密</a><span class="category-list-count">1</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/杂七杂八/">杂七杂八</a><span class="category-list-count">2</span></li><li class="category-list-item"><a class="category-list-link" href="/categories/顶会论文/">顶会论文</a><span class="category-list-count">3</span></li></ul>
</div>
</div>
@ -382,7 +382,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -404,7 +404,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -468,7 +468,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -480,7 +480,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -417,7 +417,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -439,7 +439,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -503,7 +503,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -515,7 +515,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -495,7 +495,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -517,7 +517,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -581,7 +581,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -593,7 +593,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -391,7 +391,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -413,7 +413,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -477,7 +477,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -489,7 +489,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -313,6 +313,32 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2020/10/16/coremail/" itemprop="url">
<span itemprop="name">DataCon Coremail邮件安全第三题 Writeup</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2020-10-16T11:07:33+08:00" content="2020-10-16">
10-16
</time>
</div>
</header>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
@ -391,7 +417,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -413,7 +439,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -477,7 +503,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -489,7 +515,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -443,7 +443,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -465,7 +465,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -529,7 +529,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -541,7 +541,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -1943,7 +1943,7 @@ pre .javascript .function {
width: 4px;
height: 4px;
border-radius: 50%;
background: #9d17fa;
background: #ffff46;
}
.links-of-blogroll {
font-size: 13px;

View File

@ -375,7 +375,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -397,7 +397,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -461,7 +461,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -473,7 +473,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -309,6 +309,192 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<div class="post-block">
<link itemprop="mainEntityOfPage" href="https://cool-y.github.io/2020/10/16/coremail/">
<span hidden itemprop="author" itemscope itemtype="http://schema.org/Person">
<meta itemprop="name" content="Cool-Y">
<meta itemprop="description" content>
<meta itemprop="image" content="/images/avatar.png">
</span>
<span hidden itemprop="publisher" itemscope itemtype="http://schema.org/Organization">
<meta itemprop="name" content="混元霹雳手">
</span>
<header class="post-header">
<h1 class="post-title" itemprop="name headline">
<a class="post-title-link" href="/2020/10/16/coremail/" itemprop="url">DataCon Coremail邮件安全第三题 Writeup</a></h1>
<div class="post-meta">
<span class="post-time">
<span class="post-meta-item-icon">
<i class="fa fa-calendar-o"></i>
</span>
<span class="post-meta-item-text">发表于</span>
<time title="创建于" itemprop="dateCreated datePublished" datetime="2020-10-16T11:07:33+08:00">
2020-10-16
</time>
</span>
<span class="post-category">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-folder-o"></i>
</span>
<span class="post-meta-item-text">分类于</span>
<span itemprop="about" itemscope itemtype="http://schema.org/Thing">
<a href="/categories/杂七杂八/" itemprop="url" rel="index">
<span itemprop="name">杂七杂八</span>
</a>
</span>
</span>
<span id="/2020/10/16/coremail/" class="leancloud_visitors" data-flag-title="DataCon Coremail邮件安全第三题 Writeup">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-eye"></i>
</span>
<span class="post-meta-item-text">阅读次数&#58;</span>
<span class="leancloud-visitors-count"></span>
</span>
<div class="post-wordcount">
<span class="post-meta-item-icon">
<i class="fa fa-file-word-o"></i>
</span>
<span title="字数统计">
2.4k 字
</span>
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-clock-o"></i>
</span>
<span title="阅读时长">
8 分钟
</span>
</div>
</div>
</header>
<div class="post-body" itemprop="articleBody">
研一的时候参加了第一届datacon可惜因为课程任务太重了最后连答案都没提交。今年和研一两位师弟师妹组队参加本以为又要躺过去了最后被两位的热情感染完成了比赛还取得不错的成绩也算是完成了研究生阶段的一个小遗憾。我之前没做过数据分析也没接触过邮件安全借这次赛题好好的补了一课第一题是识别发
...
<!--noindex-->
<div class="post-button text-center">
<a class="btn" href="/2020/10/16/coremail/#more" rel="contents">
阅读全文 &raquo;
</a>
</div>
<!--/noindex-->
</div>
<footer class="post-footer">
<div class="post-eof"></div>
</footer>
</div>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
@ -1977,170 +2163,6 @@ Metas
<footer class="post-footer">
<div class="post-eof"></div>
</footer>
</div>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<div class="post-block">
<link itemprop="mainEntityOfPage" href="https://cool-y.github.io/2019/05/14/pack-and-unpack/">
<span hidden itemprop="author" itemscope itemtype="http://schema.org/Person">
<meta itemprop="name" content="Cool-Y">
<meta itemprop="description" content>
<meta itemprop="image" content="/images/avatar.png">
</span>
<span hidden itemprop="publisher" itemscope itemtype="http://schema.org/Organization">
<meta itemprop="name" content="混元霹雳手">
</span>
<header class="post-header">
<h1 class="post-title" itemprop="name headline">
<a class="post-title-link" href="/2019/05/14/pack-and-unpack/" itemprop="url">加壳与脱壳</a></h1>
<div class="post-meta">
<span class="post-time">
<span class="post-meta-item-icon">
<i class="fa fa-calendar-o"></i>
</span>
<span class="post-meta-item-text">发表于</span>
<time title="创建于" itemprop="dateCreated datePublished" datetime="2019-05-14T11:20:59+08:00">
2019-05-14
</time>
</span>
<span id="/2019/05/14/pack-and-unpack/" class="leancloud_visitors" data-flag-title="加壳与脱壳">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-eye"></i>
</span>
<span class="post-meta-item-text">阅读次数&#58;</span>
<span class="leancloud-visitors-count"></span>
</span>
<div class="post-wordcount">
<span class="post-meta-item-icon">
<i class="fa fa-file-word-o"></i>
</span>
<span title="字数统计">
4.3k 字
</span>
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-clock-o"></i>
</span>
<span title="阅读时长">
15 分钟
</span>
</div>
</div>
</header>
<div class="post-body" itemprop="articleBody">
壳是最早出现的一种专用加密软件技术。一些软件会采取加壳保护的方式。壳附加在原始程序上通过Windows加载器载入内存后先于原始程序执行以得到控制权在执行的过程中对原始程序进行解密还原然后把控制权还给原始程序执行原来的代码。加上外壳后原始程序在磁盘文件中一般是以加密后的形式存在的只在执
...
<!--noindex-->
<div class="post-button text-center">
<a class="btn" href="/2019/05/14/pack-and-unpack/#more" rel="contents">
阅读全文 &raquo;
</a>
</div>
<!--/noindex-->
</div>
<footer class="post-footer">
@ -2213,7 +2235,7 @@ Metas
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -2235,7 +2257,7 @@ Metas
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -2299,7 +2321,7 @@ Metas
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -2311,7 +2333,7 @@ Metas
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -309,6 +309,170 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<div class="post-block">
<link itemprop="mainEntityOfPage" href="https://cool-y.github.io/2019/05/14/pack-and-unpack/">
<span hidden itemprop="author" itemscope itemtype="http://schema.org/Person">
<meta itemprop="name" content="Cool-Y">
<meta itemprop="description" content>
<meta itemprop="image" content="/images/avatar.png">
</span>
<span hidden itemprop="publisher" itemscope itemtype="http://schema.org/Organization">
<meta itemprop="name" content="混元霹雳手">
</span>
<header class="post-header">
<h1 class="post-title" itemprop="name headline">
<a class="post-title-link" href="/2019/05/14/pack-and-unpack/" itemprop="url">加壳与脱壳</a></h1>
<div class="post-meta">
<span class="post-time">
<span class="post-meta-item-icon">
<i class="fa fa-calendar-o"></i>
</span>
<span class="post-meta-item-text">发表于</span>
<time title="创建于" itemprop="dateCreated datePublished" datetime="2019-05-14T11:20:59+08:00">
2019-05-14
</time>
</span>
<span id="/2019/05/14/pack-and-unpack/" class="leancloud_visitors" data-flag-title="加壳与脱壳">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-eye"></i>
</span>
<span class="post-meta-item-text">阅读次数&#58;</span>
<span class="leancloud-visitors-count"></span>
</span>
<div class="post-wordcount">
<span class="post-meta-item-icon">
<i class="fa fa-file-word-o"></i>
</span>
<span title="字数统计">
4.3k 字
</span>
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-clock-o"></i>
</span>
<span title="阅读时长">
15 分钟
</span>
</div>
</div>
</header>
<div class="post-body" itemprop="articleBody">
壳是最早出现的一种专用加密软件技术。一些软件会采取加壳保护的方式。壳附加在原始程序上通过Windows加载器载入内存后先于原始程序执行以得到控制权在执行的过程中对原始程序进行解密还原然后把控制权还给原始程序执行原来的代码。加上外壳后原始程序在磁盘文件中一般是以加密后的形式存在的只在执
...
<!--noindex-->
<div class="post-button text-center">
<a class="btn" href="/2019/05/14/pack-and-unpack/#more" rel="contents">
阅读全文 &raquo;
</a>
</div>
<!--/noindex-->
</div>
<footer class="post-footer">
<div class="post-eof"></div>
</footer>
</div>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
@ -2006,193 +2170,6 @@ WinDbg
<footer class="post-footer">
<div class="post-eof"></div>
</footer>
</div>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<div class="post-block">
<link itemprop="mainEntityOfPage" href="https://cool-y.github.io/2018/12/25/TCPDUMP拒绝服务攻击漏洞/">
<span hidden itemprop="author" itemscope itemtype="http://schema.org/Person">
<meta itemprop="name" content="Cool-Y">
<meta itemprop="description" content>
<meta itemprop="image" content="/images/avatar.png">
</span>
<span hidden itemprop="publisher" itemscope itemtype="http://schema.org/Organization">
<meta itemprop="name" content="混元霹雳手">
</span>
<header class="post-header">
<h1 class="post-title" itemprop="name headline">
<a class="post-title-link" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" itemprop="url">TCPDUMP拒绝服务攻击漏洞</a></h1>
<div class="post-meta">
<span class="post-time">
<span class="post-meta-item-icon">
<i class="fa fa-calendar-o"></i>
</span>
<span class="post-meta-item-text">发表于</span>
<time title="创建于" itemprop="dateCreated datePublished" datetime="2018-12-25T12:26:05+08:00">
2018-12-25
</time>
</span>
<span class="post-category">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-folder-o"></i>
</span>
<span class="post-meta-item-text">分类于</span>
<span itemprop="about" itemscope itemtype="http://schema.org/Thing">
<a href="/categories/二进制/" itemprop="url" rel="index">
<span itemprop="name">二进制</span>
</a>
</span>
</span>
<span id="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" class="leancloud_visitors" data-flag-title="TCPDUMP拒绝服务攻击漏洞">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-eye"></i>
</span>
<span class="post-meta-item-text">阅读次数&#58;</span>
<span class="leancloud-visitors-count"></span>
</span>
<div class="post-wordcount">
<span class="post-meta-item-icon">
<i class="fa fa-file-word-o"></i>
</span>
<span title="字数统计">
3.4k 字
</span>
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-clock-o"></i>
</span>
<span title="阅读时长">
16 分钟
</span>
</div>
</div>
</header>
<div class="post-body" itemprop="articleBody">
TCPDUMP 4.5.1 拒绝服务攻击漏洞分析Tcpdump介绍
tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和显示发送或收到过网络连接到该计算机的TCP/IP和其他数据包。tcpdump 适用于大多数的类Unix系统 操作系统包括Linux、Solaris、BSD、Mac O
...
<!--noindex-->
<div class="post-button text-center">
<a class="btn" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/#more" rel="contents">
阅读全文 &raquo;
</a>
</div>
<!--/noindex-->
</div>
<footer class="post-footer">
@ -2265,7 +2242,7 @@ tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -2287,7 +2264,7 @@ tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -2351,7 +2328,7 @@ tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -2363,7 +2340,7 @@ tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -309,6 +309,193 @@
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<div class="post-block">
<link itemprop="mainEntityOfPage" href="https://cool-y.github.io/2018/12/25/TCPDUMP拒绝服务攻击漏洞/">
<span hidden itemprop="author" itemscope itemtype="http://schema.org/Person">
<meta itemprop="name" content="Cool-Y">
<meta itemprop="description" content>
<meta itemprop="image" content="/images/avatar.png">
</span>
<span hidden itemprop="publisher" itemscope itemtype="http://schema.org/Organization">
<meta itemprop="name" content="混元霹雳手">
</span>
<header class="post-header">
<h1 class="post-title" itemprop="name headline">
<a class="post-title-link" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" itemprop="url">TCPDUMP拒绝服务攻击漏洞</a></h1>
<div class="post-meta">
<span class="post-time">
<span class="post-meta-item-icon">
<i class="fa fa-calendar-o"></i>
</span>
<span class="post-meta-item-text">发表于</span>
<time title="创建于" itemprop="dateCreated datePublished" datetime="2018-12-25T12:26:05+08:00">
2018-12-25
</time>
</span>
<span class="post-category">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-folder-o"></i>
</span>
<span class="post-meta-item-text">分类于</span>
<span itemprop="about" itemscope itemtype="http://schema.org/Thing">
<a href="/categories/二进制/" itemprop="url" rel="index">
<span itemprop="name">二进制</span>
</a>
</span>
</span>
<span id="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/" class="leancloud_visitors" data-flag-title="TCPDUMP拒绝服务攻击漏洞">
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-eye"></i>
</span>
<span class="post-meta-item-text">阅读次数&#58;</span>
<span class="leancloud-visitors-count"></span>
</span>
<div class="post-wordcount">
<span class="post-meta-item-icon">
<i class="fa fa-file-word-o"></i>
</span>
<span title="字数统计">
3.4k 字
</span>
<span class="post-meta-divider">|</span>
<span class="post-meta-item-icon">
<i class="fa fa-clock-o"></i>
</span>
<span title="阅读时长">
16 分钟
</span>
</div>
</div>
</header>
<div class="post-body" itemprop="articleBody">
TCPDUMP 4.5.1 拒绝服务攻击漏洞分析Tcpdump介绍
tcpdump 是一个运行在命令行下的嗅探工具。它允许用户拦截和显示发送或收到过网络连接到该计算机的TCP/IP和其他数据包。tcpdump 适用于大多数的类Unix系统 操作系统包括Linux、Solaris、BSD、Mac O
...
<!--noindex-->
<div class="post-button text-center">
<a class="btn" href="/2018/12/25/TCPDUMP拒绝服务攻击漏洞/#more" rel="contents">
阅读全文 &raquo;
</a>
</div>
<!--/noindex-->
</div>
<footer class="post-footer">
<div class="post-eof"></div>
</footer>
</div>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
@ -893,7 +1080,7 @@ ettercap嗅探智能设备和网关之间的流量sudo ettercap -i ens33 -T -q
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -915,7 +1102,7 @@ ettercap嗅探智能设备和网关之间的流量sudo ettercap -i ens33 -T -q
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -979,7 +1166,7 @@ ettercap嗅探智能设备和网关之间的流量sudo ettercap -i ens33 -T -q
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -991,7 +1178,7 @@ ettercap嗅探智能设备和网关之间的流量sudo ettercap -i ens33 -T -q
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

File diff suppressed because one or more lines are too long

View File

@ -1,6 +1,34 @@
<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">
<url>
<loc>https://cool-y.github.io/2020/10/16/coremail/</loc>
<lastmod>2020-10-20T13:59:55.666Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/01/16/wifi%E5%8D%8A%E5%8F%8C%E5%B7%A5%E4%BE%A7%E4%BF%A1%E9%81%93%E6%94%BB%E5%87%BB%E5%AD%A6%E4%B9%A0%E7%AC%94%E8%AE%B0/</loc>
<lastmod>2020-10-19T04:44:41.846Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/03/25/Samba-CVE/</loc>
<lastmod>2020-10-19T04:26:54.240Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/05/13/PE-file/</loc>
<lastmod>2020-10-19T04:14:48.537Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/11/12/web-information-collect/</loc>
@ -36,13 +64,6 @@
</url>
<url>
<loc>https://cool-y.github.io/2019/03/25/Samba-CVE/</loc>
<lastmod>2019-07-27T06:39:41.484Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/07/25/Debug-a-router-firmware/</loc>
@ -113,13 +134,6 @@
</url>
<url>
<loc>https://cool-y.github.io/2019/05/13/PE-file/</loc>
<lastmod>2019-05-13T12:43:24.447Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2019/03/28/%E9%80%86%E5%90%91%E5%B7%A5%E7%A8%8B%E5%AE%9E%E9%AA%8C/</loc>
@ -162,13 +176,6 @@
</url>
<url>
<loc>https://cool-y.github.io/2018/12/23/%E5%9F%BA%E4%BA%8E%E8%A7%84%E5%88%99%E5%BC%95%E6%93%8E%E5%8F%91%E7%8E%B0IOT%E8%AE%BE%E5%A4%87/</loc>
<lastmod>2019-04-15T07:35:38.083Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/about/index.html</loc>
@ -177,9 +184,9 @@
</url>
<url>
<loc>https://cool-y.github.io/2019/01/16/wifi%E5%8D%8A%E5%8F%8C%E5%B7%A5%E4%BE%A7%E4%BF%A1%E9%81%93%E6%94%BB%E5%87%BB%E5%AD%A6%E4%B9%A0%E7%AC%94%E8%AE%B0/</loc>
<loc>https://cool-y.github.io/2018/12/23/%E5%9F%BA%E4%BA%8E%E8%A7%84%E5%88%99%E5%BC%95%E6%93%8E%E5%8F%91%E7%8E%B0IOT%E8%AE%BE%E5%A4%87/</loc>
<lastmod>2019-04-15T07:35:38.082Z</lastmod>
<lastmod>2019-04-15T07:35:38.083Z</lastmod>
</url>
@ -197,13 +204,6 @@
</url>
<url>
<loc>https://cool-y.github.io/2019/03/23/auto-send-WX/</loc>
<lastmod>2019-04-15T07:35:38.081Z</lastmod>
</url>
<url>
<loc>https://cool-y.github.io/2000/01/01/hello-world/</loc>
@ -211,4 +211,11 @@
</url>
<url>
<loc>https://cool-y.github.io/2019/03/23/auto-send-WX/</loc>
<lastmod>2019-04-15T07:35:38.081Z</lastmod>
</url>
</urlset>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -321,10 +321,10 @@
<div class="tag-cloud">
<div class="tag-cloud-title">
目前共计 43 个标签
目前共计 45 个标签
</div>
<div class="tag-cloud-tags">
<a href="/tags/AFL/" style="font-size: 21px; color: #6f6f6f">AFL</a> <a href="/tags/CTF/" style="font-size: 12px; color: #ccc">CTF</a> <a href="/tags/CVE/" style="font-size: 12px; color: #ccc">CVE</a> <a href="/tags/IoT/" style="font-size: 12px; color: #ccc">IoT</a> <a href="/tags/Linux/" style="font-size: 12px; color: #ccc">Linux</a> <a href="/tags/MiniUPnP/" style="font-size: 12px; color: #ccc">MiniUPnP</a> <a href="/tags/PE/" style="font-size: 12px; color: #ccc">PE</a> <a href="/tags/QQ/" style="font-size: 12px; color: #ccc">QQ</a> <a href="/tags/SSH/" style="font-size: 12px; color: #ccc">SSH</a> <a href="/tags/Samba/" style="font-size: 12px; color: #ccc">Samba</a> <a href="/tags/TCPDUMP/" style="font-size: 12px; color: #ccc">TCPDUMP</a> <a href="/tags/USENIX/" style="font-size: 12px; color: #ccc">USENIX</a> <a href="/tags/Windows/" style="font-size: 12px; color: #ccc">Windows</a> <a href="/tags/ctf/" style="font-size: 21px; color: #6f6f6f">ctf</a> <a href="/tags/itchat/" style="font-size: 12px; color: #ccc">itchat</a> <a href="/tags/linux/" style="font-size: 12px; color: #ccc">linux</a> <a href="/tags/miio/" style="font-size: 12px; color: #ccc">miio</a> <a href="/tags/pwn/" style="font-size: 12px; color: #ccc">pwn</a> <a href="/tags/web/" style="font-size: 21px; color: #6f6f6f">web</a> <a href="/tags/wifi/" style="font-size: 12px; color: #ccc">wifi</a> <a href="/tags/中间人/" style="font-size: 12px; color: #ccc">中间人</a> <a href="/tags/二进制/" style="font-size: 21px; color: #6f6f6f">二进制</a> <a href="/tags/侧信道攻击/" style="font-size: 12px; color: #ccc">侧信道攻击</a> <a href="/tags/取证/" style="font-size: 12px; color: #ccc">取证</a> <a href="/tags/复原文件/" style="font-size: 12px; color: #ccc">复原文件</a> <a href="/tags/密码/" style="font-size: 12px; color: #ccc">密码</a> <a href="/tags/小米/" style="font-size: 30px; color: #111">小米</a> <a href="/tags/微信/" style="font-size: 12px; color: #ccc">微信</a> <a href="/tags/拒绝服务攻击/" style="font-size: 12px; color: #ccc">拒绝服务攻击</a> <a href="/tags/数据库/" style="font-size: 21px; color: #6f6f6f">数据库</a> <a href="/tags/数据挖掘/" style="font-size: 12px; color: #ccc">数据挖掘</a> <a href="/tags/文件格式/" style="font-size: 21px; color: #6f6f6f">文件格式</a> <a href="/tags/栈溢出/" style="font-size: 12px; color: #ccc">栈溢出</a> <a href="/tags/模糊测试/" style="font-size: 21px; color: #6f6f6f">模糊测试</a> <a href="/tags/漏洞/" style="font-size: 12px; color: #ccc">漏洞</a> <a href="/tags/破解/" style="font-size: 12px; color: #ccc">破解</a> <a href="/tags/硬件层/" style="font-size: 12px; color: #ccc">硬件层</a> <a href="/tags/自然语言处理/" style="font-size: 12px; color: #ccc">自然语言处理</a> <a href="/tags/调试/" style="font-size: 12px; color: #ccc">调试</a> <a href="/tags/路由器/" style="font-size: 21px; color: #6f6f6f">路由器</a> <a href="/tags/远程执行/" style="font-size: 12px; color: #ccc">远程执行</a> <a href="/tags/逆向/" style="font-size: 12px; color: #ccc">逆向</a> <a href="/tags/重放攻击/" style="font-size: 12px; color: #ccc">重放攻击</a>
<a href="/tags/AFL/" style="font-size: 21px; color: #6f6f6f">AFL</a> <a href="/tags/CTF/" style="font-size: 12px; color: #ccc">CTF</a> <a href="/tags/CVE/" style="font-size: 12px; color: #ccc">CVE</a> <a href="/tags/IoT/" style="font-size: 12px; color: #ccc">IoT</a> <a href="/tags/Linux/" style="font-size: 12px; color: #ccc">Linux</a> <a href="/tags/MiniUPnP/" style="font-size: 12px; color: #ccc">MiniUPnP</a> <a href="/tags/PE/" style="font-size: 12px; color: #ccc">PE</a> <a href="/tags/QQ/" style="font-size: 12px; color: #ccc">QQ</a> <a href="/tags/SSH/" style="font-size: 12px; color: #ccc">SSH</a> <a href="/tags/Samba/" style="font-size: 12px; color: #ccc">Samba</a> <a href="/tags/TCPDUMP/" style="font-size: 12px; color: #ccc">TCPDUMP</a> <a href="/tags/USENIX/" style="font-size: 12px; color: #ccc">USENIX</a> <a href="/tags/Windows/" style="font-size: 12px; color: #ccc">Windows</a> <a href="/tags/ctf/" style="font-size: 21px; color: #6f6f6f">ctf</a> <a href="/tags/itchat/" style="font-size: 12px; color: #ccc">itchat</a> <a href="/tags/linux/" style="font-size: 12px; color: #ccc">linux</a> <a href="/tags/miio/" style="font-size: 12px; color: #ccc">miio</a> <a href="/tags/phishing-email/" style="font-size: 12px; color: #ccc">phishing email</a> <a href="/tags/pwn/" style="font-size: 12px; color: #ccc">pwn</a> <a href="/tags/web/" style="font-size: 21px; color: #6f6f6f">web</a> <a href="/tags/wifi/" style="font-size: 12px; color: #ccc">wifi</a> <a href="/tags/中间人/" style="font-size: 12px; color: #ccc">中间人</a> <a href="/tags/二进制/" style="font-size: 21px; color: #6f6f6f">二进制</a> <a href="/tags/侧信道攻击/" style="font-size: 12px; color: #ccc">侧信道攻击</a> <a href="/tags/取证/" style="font-size: 12px; color: #ccc">取证</a> <a href="/tags/复原文件/" style="font-size: 12px; color: #ccc">复原文件</a> <a href="/tags/密码/" style="font-size: 12px; color: #ccc">密码</a> <a href="/tags/小米/" style="font-size: 30px; color: #111">小米</a> <a href="/tags/微信/" style="font-size: 12px; color: #ccc">微信</a> <a href="/tags/拒绝服务攻击/" style="font-size: 12px; color: #ccc">拒绝服务攻击</a> <a href="/tags/数据库/" style="font-size: 21px; color: #6f6f6f">数据库</a> <a href="/tags/数据挖掘/" style="font-size: 12px; color: #ccc">数据挖掘</a> <a href="/tags/文件格式/" style="font-size: 21px; color: #6f6f6f">文件格式</a> <a href="/tags/栈溢出/" style="font-size: 12px; color: #ccc">栈溢出</a> <a href="/tags/模糊测试/" style="font-size: 21px; color: #6f6f6f">模糊测试</a> <a href="/tags/漏洞/" style="font-size: 12px; color: #ccc">漏洞</a> <a href="/tags/破解/" style="font-size: 12px; color: #ccc">破解</a> <a href="/tags/硬件层/" style="font-size: 12px; color: #ccc">硬件层</a> <a href="/tags/自然语言处理/" style="font-size: 12px; color: #ccc">自然语言处理</a> <a href="/tags/调试/" style="font-size: 12px; color: #ccc">调试</a> <a href="/tags/路由器/" style="font-size: 21px; color: #6f6f6f">路由器</a> <a href="/tags/远程执行/" style="font-size: 12px; color: #ccc">远程执行</a> <a href="/tags/逆向/" style="font-size: 12px; color: #ccc">逆向</a> <a href="/tags/重放攻击/" style="font-size: 12px; color: #ccc">重放攻击</a> <a href="/tags/钓鱼邮件/" style="font-size: 12px; color: #ccc">钓鱼邮件</a>
</div>
</div>
@ -382,7 +382,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -404,7 +404,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -468,7 +468,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -480,7 +480,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -82,7 +82,7 @@
<meta name="description" content="没人比我更懂中医#MAGA">
<meta property="og:type" content="website">
<meta property="og:title" content="混元霹雳手">
<meta property="og:url" content="https://cool-y.github.io/categories/Pwn二进制漏洞/index.html">
<meta property="og:url" content="https://cool-y.github.io/tags/phishing-email/index.html">
<meta property="og:site_name" content="混元霹雳手">
<meta property="og:description" content="没人比我更懂中医#MAGA">
<meta property="og:locale" content="zh-Hans">
@ -118,13 +118,13 @@
<link rel="canonical" href="https://cool-y.github.io/categories/Pwn二进制漏洞/">
<link rel="canonical" href="https://cool-y.github.io/tags/phishing-email/">
<title>分类: Pwn二进制漏洞 | 混元霹雳手</title>
<title>标签: phishing email | 混元霹雳手</title>
@ -302,11 +302,11 @@
<div class="post-block category">
<div class="post-block tag">
<div id="posts" class="posts-collapse">
<div class="collection-title">
<h1>Pwn二进制漏洞<small>分类</small>
<h1>phishing email<small>标签</small>
</h1>
</div>
@ -318,43 +318,17 @@
<h2 class="post-title">
<a class="post-title-link" href="/2019/07/16/linux-pwn-32/" itemprop="url">
<a class="post-title-link" href="/2020/10/16/coremail/" itemprop="url">
<span itemprop="name">Linux Pwn-缓冲区溢出利用</span>
<span itemprop="name">DataCon Coremail邮件安全第三题 Writeup</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2019-07-16T17:11:42+08:00" content="2019-07-16">
07-16
</time>
</div>
</header>
</article>
<article class="post post-type-normal" itemscope itemtype="http://schema.org/Article">
<header class="post-header">
<h2 class="post-title">
<a class="post-title-link" href="/2019/07/10/x86basic/" itemprop="url">
<span itemprop="name">x86-basic 漏洞利用</span>
</a>
</h2>
<div class="post-meta">
<time class="post-time" itemprop="dateCreated" datetime="2019-07-10T17:00:36+08:00" content="2019-07-10">
07-10
<time class="post-time" itemprop="dateCreated" datetime="2020-10-16T11:07:33+08:00" content="2020-10-16">
10-16
</time>
</div>
@ -373,7 +347,6 @@
</div>
@ -417,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">21</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -439,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">41</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -503,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -515,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">65.9k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -468,7 +468,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -490,7 +490,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -554,7 +554,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -566,7 +566,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -416,7 +416,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -438,7 +438,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -502,7 +502,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -514,7 +514,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

View File

@ -390,7 +390,7 @@
<a href="/archives/">
<span class="site-state-item-count">23</span>
<span class="site-state-item-count">24</span>
<span class="site-state-item-name">日志</span>
</a>
</div>
@ -412,7 +412,7 @@
<div class="site-state-item site-state-tags">
<a href="/tags/index.html">
<span class="site-state-item-count">43</span>
<span class="site-state-item-count">45</span>
<span class="site-state-item-name">标签</span>
</a>
</div>
@ -476,7 +476,7 @@
<footer id="footer" class="footer">
<div class="footer-inner">
<div class="copyright">&copy; <span itemprop="copyrightYear">2019</span>
<div class="copyright">&copy; 2019 &mdash; <span itemprop="copyrightYear">2020</span>
<span class="with-love">
<i class="fa fa-user"></i>
</span>
@ -488,7 +488,7 @@
<i class="fa fa-area-chart"></i>
</span>
<span title="Site words total count">72k</span>
<span title="Site words total count">74.5k</span>
</div>

Some files were not shown because too many files have changed in this diff Show More