当前位置:网站首页>Flow characteristics of kitchen knife, ant sword, ice scorpion and Godzilla
Flow characteristics of kitchen knife, ant sword, ice scorpion and Godzilla
2022-07-05 17:18:00 【qq_ fifty-one million five hundred and fifty thousand seven hun】
Ant sword :
ini_set
ini_set_time
ini_set_limit
@ini_set(“display_errors”,“0”)
Part of the code is transmitted in clear text , Better identification
kitchen knife :
The old version adopts plaintext transmission , It's very recognizable
The new version uses base64 encryption , The detection idea is to analyze traffic packets , Find a lot of base64 You need to pay attention to encrypting ciphertext
Ice scorpion :
Ice scorpion 1: Ice scorpion 1 There is a key negotiation process , This process is plaintext transmission , And there are two flows , Used to verify
Ice scorpion 2: Because there are many built-in UA head , So when one is the same IP Repeated requests , however UA You need to pay attention when your head is different
Ice scorpion 3: Because the negotiation process is omitted , So you can bypass a lot of traffic , But other features remain , such as ua head
Ice scorpion packets are always accompanied by a large number of content-type:application What, what , No matter what GET still POST, Requested http in ,content-type by application/octet-stream
And their accept Such lengths are always equal , Normally, according to the application scenario and different files , The length is different
Godzilla :
cookie There is a small mistake in this value , Is a normal request cookie There is no semicolon at the end , Subsequent authors may make adjustments
And response , Godzilla will respond three times , And I think there is another place to pay attention to webshell Connect , Therefore, a long-term connection is usually set , therefore connection It's going to be here keep-alive
边栏推荐
- 浏览器渲染原理以及重排与重绘
- American chips are no longer proud, and Chinese chips have successfully won the first place in emerging fields
- mysql如何使用JSON_EXTRACT()取json值
- Function sub file writing
- Judge whether a number is a prime number (prime number)
- 基于Redis实现延时队列的优化方案小结
- It is forbidden to copy content JS code on the website page
- Machine learning compilation lesson 2: tensor program abstraction
- Machine learning 01: Introduction
- 拷贝方式之DMA
猜你喜欢
MYSQL group by 有哪些注意事项
PHP talent recruitment system development source code recruitment website source code secondary development
深耕5G,芯讯通持续推动5G应用百花齐放
7. Scala class
Embedded -arm (bare board development) -2
Etcd build a highly available etcd cluster
33: Chapter 3: develop pass service: 16: use redis to cache user information; (to reduce the pressure on the database)
Machine learning compilation lesson 2: tensor program abstraction
Using C language to realize palindrome number
[first lecture on robot coordinate system]
随机推荐
Is it safe and reliable to open futures accounts on koufu.com? How to distinguish whether the platform is safe?
CMake教程Step1(基本起点)
easyNmon使用汇总
Use of ThinkPHP template
IDC报告:腾讯云数据库稳居关系型数据库市场TOP 2!
干货!半监督预训练对话模型 SPACE
Embedded -arm (bare board development) -2
Detailed explanation of printf() and scanf() functions of C language
張平安:加快雲上數字創新,共建產業智慧生態
Read the basic grammar of C language in one article
[7.7 live broadcast preview] the lecturer of "typical architecture of SaaS cloud native applications" teaches you to easily build cloud native SaaS applications. Once the problem is solved, Huawei's s
dried food! Semi supervised pre training dialogue model space
2022 年 Q2 加密市场投融资报告:GameFi 成为投资关键词
手机开证券账户安全吗?怎么买股票详细步骤
Judge whether a number is a prime number (prime number)
7. Scala class
什么是ROM
齐宣王典故
How can C TCP set heartbeat packets to be elegant?
thinkphp3.2.3