<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">
    <channel>
        <title>漏洞研究 - 标签 - 5ky&#39;s Blog</title>
        <link>http://5ky.top/tags/%E6%BC%8F%E6%B4%9E%E7%A0%94%E7%A9%B6/</link>
        <description>漏洞研究 - 标签 - 5ky&#39;s Blog</description>
        <generator>Hugo -- gohugo.io</generator><language>en</language><copyright>This is a web security knowledge sharing blog. About reading, movies, living, growing up, Fly with 5ky ～</copyright><lastBuildDate>Tue, 28 May 2024 01:59:48 &#43;0800</lastBuildDate><atom:link href="http://5ky.top/tags/%E6%BC%8F%E6%B4%9E%E7%A0%94%E7%A9%B6/" rel="self" type="application/rss+xml" /><item>
    <title>SQL注入 - 安全宏观101</title>
    <link>http://5ky.top/posts/sql-injection-macro/</link>
    <pubDate>Tue, 28 May 2024 01:59:48 &#43;0800</pubDate>
    <author>Ty</author>
    <guid>http://5ky.top/posts/sql-injection-macro/</guid>
    <description><![CDATA[一、原理 ​ 用户传入的参数使用拼接的方式请求数据库，攻击者通过闭合方式控制数据库查询想要的结果 二、危害 数据泄露 RCE 通过into outfile、d]]></description>
</item>
<item>
    <title>SQL注入 - Java栈SQL框架风险</title>
    <link>http://5ky.top/posts/sql-injection-code/</link>
    <pubDate>Sat, 13 Apr 2024 15:12:30 &#43;0800</pubDate>
    <author>Ty</author>
    <guid>http://5ky.top/posts/sql-injection-code/</guid>
    <description><![CDATA[一、常用数据库开发体系 1、框架 ORM（Object-Relational Mapping）框架是一种用于将对象模型和关系型数据库之间的数据映射]]></description>
</item>
<item>
    <title> hibernate validate EL表达式注入漏洞</title>
    <link>http://5ky.top/posts/hibernate-validate-el-injection/</link>
    <pubDate>Sat, 01 Oct 2022 12:56:53 &#43;0800</pubDate>
    <author>Ty</author>
    <guid>http://5ky.top/posts/hibernate-validate-el-injection/</guid>
    <description><![CDATA[一、漏洞分析 官方给出的漏洞，版本1：https://mvnrepository.com/artifact/org.hibernate.val]]></description>
</item>
</channel>
</rss>
