[TOC]
博客
https://saucer-man.com/archives.html
https://www.hackliu.com/
一步一步学ROP之linux_x86篇
一步一步学ROP之linux_x64篇
一步一步学ROP之gadgets和2free篇
图书
Python编程
靶场
xctf - 攻防世界
https://adworld.xctf.org.cn/task
pwnable.kr
http://pwnable.kr/play.php
hack the box
https://www.hackthebox.eu/
https://github.com/vulhub/vulhub
https://portswigger.net/web-security
OWASP BWA(Broken Web Apps)
SQLi-CTF
DVWA
1.
1 | docker pull registry.cn-shanghai.aliyuncs.com/yhskc/dvwa |
nanhack
http://www.nanhack.com/
VulApps
https://github.com/Medicean/VulApps
bwapp
1 | docker pull registry.cn-shanghai.aliyuncs.com/yhskc/bwapp |
攻略
DVWA
dvwa之xss漏洞详解《11招玩转网络安全:用Python,更安全》- 第5章 防命令注入
xctf - 攻防世界
https://zhuanlan.zhihu.com/p/103973368pwnable.kr
pwnable.kr之input