<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/" version="2.0"><channel><title>玲云的个人博客</title><link>http://175.178.246.6:51892</link><atom:link href="http://175.178.246.6:51892/rss.xml" rel="self" type="application/rss+xml"/><description>玲云的个人博客</description><generator>Halo v2.25.0</generator><language>zh-cn</language><lastBuildDate>Thu, 18 Jun 2026 09:45:35 GMT</lastBuildDate><item><title><![CDATA[AI学习day1]]></title><link>http://175.178.246.6:51892/archives/aixue-xi-day1</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=AI%E5%AD%A6%E4%B9%A0day1&amp;url=/archives/aixue-xi-day1" width="1" height="1" alt="" style="opacity:0;">本次的学习主要以学习LLM+RAG+Agent的学习历程 基本日历如下 第一阶段：Python与API（第1-7天） D1：搭环境+虚拟环境，拿硅基流动API Key，跑通第一个调用脚本。 D2：写任务拆解函数（parse_task）+ logging，读PDF前1000字符。 D3：写模拟工具（s]]></description><guid isPermaLink="false">/archives/aixue-xi-day1</guid><dc:creator>玲云</dc:creator><pubDate>Tue, 16 Jun 2026 13:16:12 GMT</pubDate></item><item><title><![CDATA[JS逆向]]></title><link>http://175.178.246.6:51892/archives/wei-ming-ming-wen-zhang</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=JS%E9%80%86%E5%90%91&amp;url=/archives/wei-ming-ming-wen-zhang" width="1" height="1" alt="" style="opacity:0;">以下根据您提供的框架，逐节补充完整内容。标题层级严格遵循：一/二/三为二级标题（##），1/2/3为三级标题（###），a/b/c为四级标题（####）。关键信息已加粗，冒号前的文字（如“关键说明：”）已加粗。 一、基础知识与环境搭建 关键说明： 本节是所有逆向工作的起点，环境配置错误会导致后续无法]]></description><guid isPermaLink="false">/archives/wei-ming-ming-wen-zhang</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><pubDate>Sun, 14 Jun 2026 08:28:59 GMT</pubDate></item><item><title><![CDATA[CDN和蜜獾]]></title><link>http://175.178.246.6:51892/archives/cdnhe-mi-huan</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=CDN%E5%92%8C%E8%9C%9C%E7%8D%BE&amp;url=/archives/cdnhe-mi-huan" width="1" height="1" alt="" style="opacity:0;">一、CDN（内容分发网络） 1、基本定义 CDN（Content Delivery Network，内容分发网络） 是一种通过在全球部署节点服务器，将用户请求导向最近节点的技术，其核心目标是通过缩短数据传输距离，减少网络延迟，提升用户体验。 工作流程： a、用户发起DNS解析请求时，被引导至CDN的]]></description><guid isPermaLink="false">/archives/cdnhe-mi-huan</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Sun, 14 Jun 2026 08:06:36 GMT</pubDate></item><item><title><![CDATA[web指纹]]></title><link>http://175.178.246.6:51892/archives/webzhi-wen</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=web%E6%8C%87%E7%BA%B9&amp;url=/archives/webzhi-wen" width="1" height="1" alt="" style="opacity:0;">一、web指纹是什么 定义 Web指纹是一种用于快速识别目标网站技术构成的技术手段。通过分析网站的响应头、页面内容、URL结构、文件路径、Cookie等特征，可以判断出网站所使用的服务器类型、编程语言、前端框架、CMS系统、第三方组件等信息。 作用 快速了解目标网站的技术栈，便于后续测试或开发对接。]]></description><guid isPermaLink="false">/archives/webzhi-wen</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><pubDate>Sat, 13 Jun 2026 13:41:29 GMT</pubDate></item><item><title><![CDATA[信息泄露 — 渗透测试笔记]]></title><link>http://175.178.246.6:51892/archives/xin-xi-xie-lu----shen-tou-ce-shi-bi-ji</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E4%BF%A1%E6%81%AF%E6%B3%84%E9%9C%B2%20%E2%80%94%20%E6%B8%97%E9%80%8F%E6%B5%8B%E8%AF%95%E7%AC%94%E8%AE%B0&amp;url=/archives/xin-xi-xie-lu----shen-tou-ce-shi-bi-ji" width="1" height="1" alt="" style="opacity:0;">一、信息泄露的原因 开发人员把敏感信息硬编码在前端 JavaScript 里——API key、内网地址、测试账号密码、JWT secret，直接写死在 js 文件中扔进生产环境。 版本控制系统（Git/SVN/CVS/DS_Store）暴露在 Web 目录下——开发人员把整个项目拷到服务器上部署，]]></description><guid isPermaLink="false">/archives/xin-xi-xie-lu----shen-tou-ce-shi-bi-ji</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Sat, 13 Jun 2026 10:48:02 GMT</pubDate></item><item><title><![CDATA[靶场]]></title><link>http://175.178.246.6:51892/archives/ba-chang</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E9%9D%B6%E5%9C%BA&amp;url=/archives/ba-chang" width="1" height="1" alt="" style="opacity:0;">Vulhub - 开源的漏洞Docker环境 GitHub - digininja/DVWA: Damn Vulnerable Web Application (DVWA) · GitHub GitHub - WebGoat/WebGoat：WebGoat 是一个故意不安全的应用程序 ·GitHub]]></description><guid isPermaLink="false">/archives/ba-chang</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Sat, 13 Jun 2026 10:37:00 GMT</pubDate></item><item><title><![CDATA[AI Agent 正在重塑软件工程：三个必须直面的人性与伦理结论]]></title><link>http://175.178.246.6:51892/archives/ai-agent-zheng-zai-chong-su-ruan-jian-gong-cheng-san-ge-bi-xu-zhi-mian-de-ren-xing-yu-lun-li-jie-lun</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=AI%20Agent%20%E6%AD%A3%E5%9C%A8%E9%87%8D%E5%A1%91%E8%BD%AF%E4%BB%B6%E5%B7%A5%E7%A8%8B%EF%BC%9A%E4%B8%89%E4%B8%AA%E5%BF%85%E9%A1%BB%E7%9B%B4%E9%9D%A2%E7%9A%84%E4%BA%BA%E6%80%A7%E4%B8%8E%E4%BC%A6%E7%90%86%E7%BB%93%E8%AE%BA&amp;url=/archives/ai-agent-zheng-zai-chong-su-ruan-jian-gong-cheng-san-ge-bi-xu-zhi-mian-de-ren-xing-yu-lun-li-jie-lun" width="1" height="1" alt="" style="opacity:0;">来自 Microsoft Build 2026 的一场“真实对话”——Scott Hanselman 与 Mark Russinovich 的 BRK247 完整解读 引言：当两位技术老兵选择不谈 hype 在微软 Build 2026 大会上，有一场 session 既没有华丽的 demo，也没有]]></description><guid isPermaLink="false">/archives/ai-agent-zheng-zai-chong-su-ruan-jian-gong-cheng-san-ge-bi-xu-zhi-mian-de-ren-xing-yu-lun-li-jie-lun</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>AI</category><pubDate>Fri, 12 Jun 2026 15:34:41 GMT</pubDate></item><item><title><![CDATA[初入AI门槛]]></title><link>http://175.178.246.6:51892/archives/tan-tan-ai</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E5%88%9D%E5%85%A5AI%E9%97%A8%E6%A7%9B&amp;url=/archives/tan-tan-ai" width="1" height="1" alt="" style="opacity:0;">一、浅谈AI 使用AI也有十几天了，烧了近20亿的tokens，经费也花得差不多了，是时候聊聊我对于AI的感受了 这些天，体验了不少的模型，主推对于普通人来说还是deepseekV4-flash，价格便宜，推理能力也在线 同时我也体验了如：MIMO-v2.5(小米)、qwen3.5(千问)、]]></description><guid isPermaLink="false">/archives/tan-tan-ai</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>AI</category><pubDate>Fri, 12 Jun 2026 15:03:48 GMT</pubDate></item><item><title><![CDATA[Kali逆向工程与PWN入门指南：从工具到实战]]></title><link>http://175.178.246.6:51892/archives/kalini-xiang-gong-cheng-yu-pwnru-men-zhi-nan-cong-gong-ju-dao-shi-zhan</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=Kali%E9%80%86%E5%90%91%E5%B7%A5%E7%A8%8B%E4%B8%8EPWN%E5%85%A5%E9%97%A8%E6%8C%87%E5%8D%97%EF%BC%9A%E4%BB%8E%E5%B7%A5%E5%85%B7%E5%88%B0%E5%AE%9E%E6%88%98&amp;url=/archives/kalini-xiang-gong-cheng-yu-pwnru-men-zhi-nan-cong-gong-ju-dao-shi-zhan" width="1" height="1" alt="" style="opacity:0;">Kali Linux逆向工程与PWN入门指南，涵盖Ghidra、IDA Pro、GDB等逆向工具，常见二进制架构表，pwntools框架和栈溢出利用实战。]]></description><guid isPermaLink="false">/archives/kalini-xiang-gong-cheng-yu-pwnru-men-zhi-nan-cong-gong-ju-dao-shi-zhan</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 09:14:19 GMT</pubDate></item><item><title><![CDATA[CTF赛前复习总结：考点速查与实战手册]]></title><link>http://175.178.246.6:51892/archives/ctfsai-qian-fu-xi-zong-jie-kao-dian-su-cha-yu-shi-zhan-shou-ce</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=CTF%E8%B5%9B%E5%89%8D%E5%A4%8D%E4%B9%A0%E6%80%BB%E7%BB%93%EF%BC%9A%E8%80%83%E7%82%B9%E9%80%9F%E6%9F%A5%E4%B8%8E%E5%AE%9E%E6%88%98%E6%89%8B%E5%86%8C&amp;url=/archives/ctfsai-qian-fu-xi-zong-jie-kao-dian-su-cha-yu-shi-zhan-shou-ce" width="1" height="1" alt="" style="opacity:0;">CTF赛前复习总结，涵盖信息收集、SQL注入、文件上传、文件包含、SSRF、XXE、反序列化、SSTI等各大考点的速查手册与实战Payload。]]></description><guid isPermaLink="false">/archives/ctfsai-qian-fu-xi-zong-jie-kao-dian-su-cha-yu-shi-zhan-shou-ce</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:41:50 GMT</pubDate></item><item><title><![CDATA[信息收集与Web枚举工具指南：从域名到指纹的全链路攻防]]></title><link>http://175.178.246.6:51892/archives/xin-xi-shou-ji-yu-webmei-ju-gong-ju-zhi-nan-cong-yu-ming-dao-zhi-wen-de-quan-lian-lu-gong-fang</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E4%BF%A1%E6%81%AF%E6%94%B6%E9%9B%86%E4%B8%8EWeb%E6%9E%9A%E4%B8%BE%E5%B7%A5%E5%85%B7%E6%8C%87%E5%8D%97%EF%BC%9A%E4%BB%8E%E5%9F%9F%E5%90%8D%E5%88%B0%E6%8C%87%E7%BA%B9%E7%9A%84%E5%85%A8%E9%93%BE%E8%B7%AF%E6%94%BB%E9%98%B2&amp;url=/archives/xin-xi-shou-ji-yu-webmei-ju-gong-ju-zhi-nan-cong-yu-ming-dao-zhi-wen-de-quan-lian-lu-gong-fang" width="1" height="1" alt="" style="opacity:0;">从域名收集到指纹识别的全链路信息收集技术指南，涵盖Sublist3r、Maltego、WhatWeb等核心工具的使用方法与实战技巧。]]></description><guid isPermaLink="false">/archives/xin-xi-shou-ji-yu-webmei-ju-gong-ju-zhi-nan-cong-yu-ming-dao-zhi-wen-de-quan-lian-lu-gong-fang</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:40:18 GMT</pubDate></item><item><title><![CDATA[ThinkPHP框架漏洞：RCE分析与复现指南]]></title><link>http://175.178.246.6:51892/archives/thinkphpkuang-jia-lou-dong-rcefen-xi-yu-fu-xian-zhi-nan</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=ThinkPHP%E6%A1%86%E6%9E%B6%E6%BC%8F%E6%B4%9E%EF%BC%9ARCE%E5%88%86%E6%9E%90%E4%B8%8E%E5%A4%8D%E7%8E%B0%E6%8C%87%E5%8D%97&amp;url=/archives/thinkphpkuang-jia-lou-dong-rcefen-xi-yu-fu-xian-zhi-nan" width="1" height="1" alt="" style="opacity:0;">详细分析 ThinkPHP 5.0.22/5.1.29 及 5.0.23 版本的远程代码执行漏洞原理、影响范围和复现步骤，提供 POC 集合及修复建议。]]></description><guid isPermaLink="false">/archives/thinkphpkuang-jia-lou-dong-rcefen-xi-yu-fu-xian-zhi-nan</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:31:54 GMT</pubDate></item><item><title><![CDATA[反弹Shell全攻略：Linux与Windows实战技术详解]]></title><link>http://175.178.246.6:51892/archives/fan-dan-shellquan-gong-lue-linuxyu-windowsshi-zhan-ji-shu-xiang-jie</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E5%8F%8D%E5%BC%B9Shell%E5%85%A8%E6%94%BB%E7%95%A5%EF%BC%9ALinux%E4%B8%8EWindows%E5%AE%9E%E6%88%98%E6%8A%80%E6%9C%AF%E8%AF%A6%E8%A7%A3&amp;url=/archives/fan-dan-shellquan-gong-lue-linuxyu-windowsshi-zhan-ji-shu-xiang-jie" width="1" height="1" alt="" style="opacity:0;">涵盖 Linux / Windows 环境下多种反弹 Shell 技巧，包括 Bash、Python、PHP、Perl、PowerShell 等语言实现方式，以及交互式终端获取和提权辅助工具的使用方法。]]></description><guid isPermaLink="false">/archives/fan-dan-shellquan-gong-lue-linuxyu-windowsshi-zhan-ji-shu-xiang-jie</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:30:39 GMT</pubDate></item><item><title><![CDATA[SSRF与XXE漏洞详解：原理、利用与防御]]></title><link>http://175.178.246.6:51892/archives/ssrfyu-xxelou-dong-xiang-jie-yuan-li-li-yong-yu-fang-yu</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=SSRF%E4%B8%8EXXE%E6%BC%8F%E6%B4%9E%E8%AF%A6%E8%A7%A3%EF%BC%9A%E5%8E%9F%E7%90%86%E3%80%81%E5%88%A9%E7%94%A8%E4%B8%8E%E9%98%B2%E5%BE%A1&amp;url=/archives/ssrfyu-xxelou-dong-xiang-jie-yuan-li-li-yong-yu-fang-yu" width="1" height="1" alt="" style="opacity:0;">深入解析 SSRF 与 XXE 两大服务端漏洞的原理、利用技巧及防御方案，涵盖内网探测、协议利用、Blind XXE 等高级话题。]]></description><guid isPermaLink="false">/archives/ssrfyu-xxelou-dong-xiang-jie-yuan-li-li-yong-yu-fang-yu</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:13:00 GMT</pubDate></item><item><title><![CDATA[初入信创]]></title><link>http://175.178.246.6:51892/archives/chu-ru-xin-chuang</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E5%88%9D%E5%85%A5%E4%BF%A1%E5%88%9B&amp;url=/archives/chu-ru-xin-chuang" width="1" height="1" alt="" style="opacity:0;">信创（信息技术应用创新）入门知识总结，涵盖国产操作系统、数据库、中间件等核心概念。]]></description><guid isPermaLink="false">/archives/chu-ru-xin-chuang</guid><dc:creator>玲云</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero.png&amp;size=m" type="image/jpeg" length="774881"/><category>信创</category><pubDate>Fri, 12 Jun 2026 08:07:55 GMT</pubDate></item><item><title><![CDATA[文件上传与WebShell绕过技术详解]]></title><link>http://175.178.246.6:51892/archives/wen-jian-shang-chuan-yu-webshellrao-guo-ji-shu-xiang-jie</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E4%B8%8EWebShell%E7%BB%95%E8%BF%87%E6%8A%80%E6%9C%AF%E8%AF%A6%E8%A7%A3&amp;url=/archives/wen-jian-shang-chuan-yu-webshellrao-guo-ji-shu-xiang-jie" width="1" height="1" alt="" style="opacity:0;">涵盖文件上传漏洞的各类绕过技巧，包括前端校验绕过、MIME 绕过、文件头校验绕过、黑名单绕过等，配合 WebShell 原理讲解。]]></description><guid isPermaLink="false">/archives/wen-jian-shang-chuan-yu-webshellrao-guo-ji-shu-xiang-jie</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:07:52 GMT</pubDate></item><item><title><![CDATA[MD5绕过与PHP弱类型漏洞全解析]]></title><link>http://175.178.246.6:51892/archives/md5rao-guo-yu-phpruo-lei-xing-lou-dong-quan-jie-xi</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=MD5%E7%BB%95%E8%BF%87%E4%B8%8EPHP%E5%BC%B1%E7%B1%BB%E5%9E%8B%E6%BC%8F%E6%B4%9E%E5%85%A8%E8%A7%A3%E6%9E%90&amp;url=/archives/md5rao-guo-yu-phpruo-lei-xing-lou-dong-quan-jie-xi" width="1" height="1" alt="" style="opacity:0;">全面解析 PHP 中 MD5 绕过的各类技巧及 PHP 弱类型比较漏洞，涵盖 0e 开头哈希比较、数组绕过、switch 弱类型等场景。]]></description><guid isPermaLink="false">/archives/md5rao-guo-yu-phpruo-lei-xing-lou-dong-quan-jie-xi</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 08:03:51 GMT</pubDate></item><item><title><![CDATA[无参RCE技巧汇总：PHP函数链式调用与绕过技术]]></title><link>http://175.178.246.6:51892/archives/wu-can-rceji-qiao-hui-zong-phphan-shu-lian-shi-diao-yong-yu-rao-guo-ji-shu</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=%E6%97%A0%E5%8F%82RCE%E6%8A%80%E5%B7%A7%E6%B1%87%E6%80%BB%EF%BC%9APHP%E5%87%BD%E6%95%B0%E9%93%BE%E5%BC%8F%E8%B0%83%E7%94%A8%E4%B8%8E%E7%BB%95%E8%BF%87%E6%8A%80%E6%9C%AF&amp;url=/archives/wu-can-rceji-qiao-hui-zong-phphan-shu-lian-shi-diao-yong-yu-rao-guo-ji-shu" width="1" height="1" alt="" style="opacity:0;">整理 PHP 环境下多种无参数 RCE 技巧，涵盖 getallheaders、get_defined_vars、session_id 等函数的巧妙利用方式。]]></description><guid isPermaLink="false">/archives/wu-can-rceji-qiao-hui-zong-phphan-shu-lian-shi-diao-yong-yu-rao-guo-ji-shu</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 07:57:14 GMT</pubDate></item><item><title><![CDATA[PHP漏洞利用技巧：反序列化、伪协议与代码审计]]></title><link>http://175.178.246.6:51892/archives/phplou-dong-li-yong-ji-qiao-fan-xu-lie-hua-wei-xie-yi-yu-dai-ma-shen-ji</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=PHP%E6%BC%8F%E6%B4%9E%E5%88%A9%E7%94%A8%E6%8A%80%E5%B7%A7%EF%BC%9A%E5%8F%8D%E5%BA%8F%E5%88%97%E5%8C%96%E3%80%81%E4%BC%AA%E5%8D%8F%E8%AE%AE%E4%B8%8E%E4%BB%A3%E7%A0%81%E5%AE%A1%E8%AE%A1&amp;url=/archives/phplou-dong-li-yong-ji-qiao-fan-xu-lie-hua-wei-xie-yi-yu-dai-ma-shen-ji" width="1" height="1" alt="" style="opacity:0;">深入讲解 PHP 反序列化漏洞的原理与利用链构造，结合伪协议、文件包含等技术，覆盖 PHP 代码审计中的常见高危场景。]]></description><guid isPermaLink="false">/archives/phplou-dong-li-yong-ji-qiao-fan-xu-lie-hua-wei-xie-yi-yu-dai-ma-shen-ji</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 07:18:50 GMT</pubDate></item><item><title><![CDATA[SQL注入完全指南：从入门到WAF绕过]]></title><link>http://175.178.246.6:51892/archives/sqlzhu-ru-wan-quan-zhi-nan-cong-ru-men-dao-wafrao-guo</link><description><![CDATA[<img src="http://175.178.246.6:51892/plugins/feed/assets/telemetry.gif?title=SQL%E6%B3%A8%E5%85%A5%E5%AE%8C%E5%85%A8%E6%8C%87%E5%8D%97%EF%BC%9A%E4%BB%8E%E5%85%A5%E9%97%A8%E5%88%B0WAF%E7%BB%95%E8%BF%87&amp;url=/archives/sqlzhu-ru-wan-quan-zhi-nan-cong-ru-men-dao-wafrao-guo" width="1" height="1" alt="" style="opacity:0;">从基础到进阶的 SQL 注入完全指南，涵盖联合查询、报错注入、布尔盲注、时间盲注、堆叠注入等各类注入手法及 WAF 绕过技巧。]]></description><guid isPermaLink="false">/archives/sqlzhu-ru-wan-quan-zhi-nan-cong-ru-men-dao-wafrao-guo</guid><dc:creator>Hermes_AI</dc:creator><enclosure url="http://175.178.246.6:51892/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fhero-nJoH.png&amp;size=m" type="image/jpeg" length="774881"/><category>网络安全</category><pubDate>Fri, 12 Jun 2026 06:37:00 GMT</pubDate></item></channel></rss>