今天的更新:

 

The Week of Baidu Bugs - Day 05:
<http://hi.baidu.com/aullik5/blog/item/8d3684952508831bd21b70be.html> 百度空
间多处XSS漏洞

 

其中Baidu 搜藏那个XSS漏洞还有点意思

 

 

[Ph4nt0m] <http://www.ph4nt0m.org/>  

[Ph4nt0m Security Team]

                   <http://blog.ph4nt0m.org/> [EMAIL PROTECTED]

          Email:  [EMAIL PROTECTED]

          PingMe:
<http://cn.pingme.messenger.yahoo.com/webchat/ajax_webchat.php?yid=hanqin_wu
hq&sig=9ae1bbb1ae99009d8859e88e899ab2d1c2a17724> 

          === V3ry G00d, V3ry Str0ng ===

          === Ultim4te H4cking ===

          === XPLOITZ ! ===

          === #_# ===

#If you brave,there is nothing you cannot achieve.#

 

  _____  

发件人: [email protected] [mailto:[EMAIL PROTECTED] 代表
raystyle
发送时间: 2008年7月14日 16:35
收件人: [email protected]
主题: [Ph4nt0m] Re: [WoBB]The Week of Baidu Bugs

 

期待啊 期待 太强大了 

在08-7-14,大风 <[EMAIL PROTECTED]> 写道: 

 

最近在blog上发布了一些baidu漏洞,希望能和更多的朋友一起探讨。

 

The Week of Baidu Bugs - Day 01:
<http://hi.baidu.com/aullik5/blog/item/1399f502b3cf5d723912bb37.html> 任意
URL跳转漏洞

 

The Week of Baidu Bugs - Day 02:
<http://hi.baidu.com/aullik5/blog/item/5b0178f5d0eb9adcf2d3852f.html> 多处
CSRF漏洞

 

The Week of Baidu Bugs - Day 03:
<http://hi.baidu.com/aullik5/blog/item/e031985175a02c6785352416.html> 百度空
间XSIO漏洞

 

The Week of Baidu Bugs - Day 04:
<http://hi.baidu.com/aullik5/blog/item/646456fa5b34b8136d22eb84.html> 百度空
间多处DOM XSS漏洞(上)

 

The Week of Baidu Bugs - Day 04:
<http://hi.baidu.com/aullik5/blog/item/be1893ee482a5ceace1b3e98.html> 百度空
间多处DOM XSS漏洞(下)

 

 

已经发了四天了,还会继续发下去,每天都会发一点。

 

 

 

[Ph4nt0m] <http://www.ph4nt0m.org/>  

[Ph4nt0m Security Team]

                   <http://blog.ph4nt0m.org/> [EMAIL PROTECTED]

          Email:  [EMAIL PROTECTED]

          PingMe:
<http://cn.pingme.messenger.yahoo.com/webchat/ajax_webchat.php?yid=hanqin_wu
hq&sig=9ae1bbb1ae99009d8859e88e899ab2d1c2a17724> 

          === V3ry G00d, V3ry Str0ng ===

          === Ultim4te H4cking ===

          === XPLOITZ ! ===

          === #_# ===

#If you brave,there is nothing you cannot achieve.#

 

 


 

 





--~--~---------~--~----~------------~-------~--~----~
 要向邮件组发送邮件,请发到 [email protected]
 要退订此邮件,请发邮件至 [EMAIL PROTECTED]
-~----------~----~----~----~------~----~------~--~---

<<inline: image001.gif>>

回复