We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 25f46d2 commit 832e1fcCopy full SHA for 832e1fc
Readme.md
@@ -88,6 +88,10 @@ https://xianzhi.aliyun.com/forum/read/274.html
88
89
[从Pwnhub诞生聊Django安全编码](https://www.leavesongs.com/PYTHON/django-coding-experience-from-pwnhub.html)
90
91
+[python和django的目录遍历漏洞(任意文件读取)](http://www.lijiejie.com/python-django-directory-traversal/)
92
+
93
+[新型任意文件读取漏洞的研究](https://www.leavesongs.com/PENETRATION/arbitrary-files-read-via-static-requests.html)
94
95
96
97
### package钓鱼
@@ -112,6 +116,8 @@ https://www.pytosquatting.org/
112
116
113
117
[Python安全 - 从SSRF到命令执行惨案](https://www.leavesongs.com/PENETRATION/getshell-via-ssrf-and-redis.html)
114
118
119
+[Splash SSRF 到获取内网服务器 ROOT 权限](https://xianzhi.aliyun.com/forum/read/1872.html)
120
115
121
122
123
### 其他
0 commit comments