<?xml version="1.0" encoding="utf-8"?>
<!-- generator="FeedCreator 1.7.2-ppt DokuWiki" -->
<?xml-stylesheet href="https://wiki.sars.tw/lib/exe/css.php?s=feed" type="text/css"?>
<rss version="2.0">
    <channel>
        <title>Sars' History security</title>
        <description></description>
        <link>https://wiki.sars.tw/</link>
        <lastBuildDate>Fri, 08 May 2026 06:29:24 +0800</lastBuildDate>
        <generator>FeedCreator 1.7.2-ppt DokuWiki</generator>
        <image>
            <url>https://wiki.sars.tw/lib/tpl/dokuwiki/images/favicon.ico</url>
            <title>Sars' History</title>
            <link>https://wiki.sars.tw/</link>
        </image>
        <item>
            <title>security:all</title>
            <link>https://wiki.sars.tw/doku.php?id=security:all&amp;rev=1449726996&amp;do=diff</link>
            <description>Windows

	*  Windows 軟體安全實務 - 緩衝區溢位攻擊

SQL

sqlmap

&lt;http://sqlmap.sourceforge.net/&gt;

sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of back-end database servers.

Top 100 Network Security Tools

&lt;http://sectools.org/index.html&gt;

Amazing XP Tools to Arm your PC from Hackers</description>
        <category>security</category>
            <pubDate>Thu, 10 Dec 2015 13:56:36 +0800</pubDate>
        </item>
        <item>
            <title>security:dos_ddos</title>
            <link>https://wiki.sars.tw/doku.php?id=security:dos_ddos&amp;rev=1220100682&amp;do=diff</link>
            <description>SYN Flood 攻擊的基本原理及防禦

&lt;http://www.study-area.org/tips/syn_flood.htm&gt;

作者﹕shotgun

DoS与DDos攻击工具基本技术及其发展

&lt;http://security.ccidnet.com/art/1099/20060316/481369_1.html&gt;

How to Prevent Denial of Service Attacks

&lt;http://learn-networking.com/network-security/how-to-prevent-denial-of-service-attacks&gt;</description>
        <category>security</category>
            <pubDate>Sat, 30 Aug 2008 20:51:22 +0800</pubDate>
        </item>
        <item>
            <title>security:ettercap</title>
            <link>https://wiki.sars.tw/doku.php?id=security:ettercap&amp;rev=1172583189&amp;do=diff</link>
            <description>Official

&lt;http://ettercap.sourceforge.net/&gt;

其他

&lt;http://cha.homeip.net/blog/archives/2006/05/_vs.html&gt;


Text Mode:

    sudo ettercap -i eth0 -T -M arp:remote /gw.ip.addr/ /target.ip.addr-range/

    按 q 結束程序即自動 stop mitm attack (target hosts 的 arp table 恢復正常)

GUI Mode:

    sudo ettercap -i eth0 -G -n 255.255.255.0

    Sniff → Unified sniffing (Shift + U)
    Hosts → Scan for hosts (Ctrl + S)
    Targets → Select TARGET(s) (Ctrl + T)
    Target 1: /gw.ip.addr/
    Target 2: /target.ip.addr…</description>
        <category>security</category>
            <pubDate>Tue, 27 Feb 2007 21:33:09 +0800</pubDate>
        </item>
        <item>
            <title>security:hacker</title>
            <link>https://wiki.sars.tw/doku.php?id=security:hacker&amp;rev=1279002194&amp;do=diff</link>
            <description>CEH駭客認證

&lt;http://www.eccouncil.org/certification/certified_ethical_hacker.aspx&gt;

考試內容


1: Ethic and Legal Issues 倫理與法律
2: Footprinting 足跡
3: Scanning 網路掃瞄技術
4: Enumeration 列舉
5: System Hacking 電腦系統入侵
6: Trojans and Backdoors 木馬程式與後門程式
7: Sniffers 封包監聽
8: Denial of Service 阻斷服務
9: Social Engineering 社交工程
10:Session Hijacking 連線劫持
11: Hacking Web Servers 網站入侵
12: Web Application Vulnerabilities網站應用程式的弱點
13: Web Based Password Cracking Techniques密碼破解技術
14: SQL Injection 資料隱碼的入侵模式
15: Hacking Wi…</description>
        <category>security</category>
            <pubDate>Tue, 13 Jul 2010 14:23:14 +0800</pubDate>
        </item>
        <item>
            <title>security:hips</title>
            <link>https://wiki.sars.tw/doku.php?id=security:hips&amp;rev=1188674662&amp;do=diff</link>
            <description>HIPS

&lt;http://gate.tycool.com:82/gate/big5/www.tycool.com/bbs/archive/index.php/t-163397.html&gt;

&lt;http://bbs.kafan.cn/forumdisplay.php?fid=39&gt;</description>
        <category>security</category>
            <pubDate>Sun, 02 Sep 2007 03:24:22 +0800</pubDate>
        </item>
        <item>
            <title>security:oauth</title>
            <link>https://wiki.sars.tw/doku.php?id=security:oauth&amp;rev=1337138067&amp;do=diff</link>
            <description>OAuth

OAuth 的各式參數說明

Framework

EasyOAuth

&lt;http://easyoauth.codeplex.com/&gt;

&lt;http://www.dotblogs.com.tw/regionbbs/archive/2011/09/29/easyoauth.framework.v2.0.announced.aspx&gt;

Supports 8 OAuth Providers:

	*  Linked In (OAuth 1.0)
		*  DropBox (OAuth 1.0)
		*  Windows Live (OAuth 2.0)
		*  Plurk (OAuth 1.0)
		*  Twitter (OAuth 1.0)
		*  Google (OAuth 1.0)
		*  Facebook (OAuth 2.0)
		*  Yahoo (OAuth 1.0)</description>
        <category>security</category>
            <pubDate>Wed, 16 May 2012 11:14:27 +0800</pubDate>
        </item>
        <item>
            <title>security:virtual_system</title>
            <link>https://wiki.sars.tw/doku.php?id=security:virtual_system&amp;rev=1191092264&amp;do=diff</link>
            <description>Returnil Virtual System

&lt;http://www.returnilvirtualsystem.com/index_files/rvspersonal.htm&gt;

教學：&lt;http://jackbin.blogspot.com/2007/09/returnil-virtual-system-personal.html&gt;</description>
        <category>security</category>
            <pubDate>Sun, 30 Sep 2007 02:57:44 +0800</pubDate>
        </item>
        <item>
            <title>security:website</title>
            <link>https://wiki.sars.tw/doku.php?id=security:website&amp;rev=1192462288&amp;do=diff</link>
            <description>Wargame sites

&lt;http://wargame.cna.ccu.edu.tw/&gt;

&lt;http://hackerslab.cna.ccu.edu.tw/&gt;

zone-h

列出遭入侵的網站

&lt;http://www.zone-h.org/component/option,com_attacks/Itemid,43/filter,1/filter_domain,.tw/filter_date_select,week&gt;

chroot

&lt;http://www.chroot.org&gt;

HackerWatch

&lt;http://www.hackerwatch.org/&gt;

論壇

&lt;http://www.avpclub.ddns.info/&gt;

Tools

&lt;http://www.xfocus.net/tools/17.html&gt;

MD5 Reverse

Hashreverse

&lt;http://www.hashreverse.com/&gt;

IP Address

&lt;http://www.ip-adress.com&gt;

透過 Google Map 列出 IP 所在位置…</description>
        <category>security</category>
            <pubDate>Mon, 15 Oct 2007 23:31:28 +0800</pubDate>
        </item>
        <item>
            <title>security:xss</title>
            <link>https://wiki.sars.tw/doku.php?id=security:xss&amp;rev=1287229999&amp;do=diff</link>
            <description>Cross Site Scripting

Microsoft Anti-Cross Site Scripting Library

&lt;http://blog.miniasp.com/post/2009/09/26/Recommand-Microsoft-Anti-XSS-Library-V31.aspx&gt;



XSS測試語法大全：&lt;http://anti-hacker.blogspot.com/2007/07/xss.html&gt;

Source：&lt;http://www.hackwolf.cn/article.asp?id=83&gt;


&gt;&lt;script&gt;alert(document.cookie)&lt;/script&gt;

='&gt;&lt;script&gt;alert(document.cookie)&lt;/script&gt;

&lt;script&gt;alert(document.cookie)&lt;/script&gt;

&lt;script&gt;alert(vulnerable)&lt;/script&gt;

%3Cscript%3Ealert('XSS')%3C/script%3E

&lt;script&gt;alert('XSS')&lt;/scri…</description>
        <category>security</category>
            <pubDate>Sat, 16 Oct 2010 19:53:19 +0800</pubDate>
        </item>
    </channel>
</rss>
