{"title":"\u84dd\u77e5","subtitle":"\u84dd\u77e5\u66f4\u9e1f \u662f\u79cd\u84dd\u80cc\u7ea2\u80f8\u7684\u7f8e\u4e3d\u5c0f\u9e1f\u3002","link":[{"@attributes":{"href":"\/atom.xml","rel":"self"}},{"@attributes":{"href":"https:\/\/magicbluech.github.io\/"}}],"updated":"2018-06-22T07:30:10.748Z","id":"https:\/\/magicbluech.github.io\/","author":{"name":"MagicBlue"},"generator":"Hexo","entry":[{"title":"SOME INTERESTING THINGS IN ELECTRON(Essays)","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2018\/06\/22\/SOME-INTERESTING-THINGS-IN-ELECTRON\/"}},"id":"https:\/\/magicbluech.github.io\/2018\/06\/22\/SOME-INTERESTING-THINGS-IN-ELECTRON\/","published":"2018-06-22T05:19:01.000Z","updated":"2018-06-22T07:30:10.748Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <p>[+] Author:MagicBlue<br>[+] Team: NeSE security team<br>[+] From: <a href=\"https:\/\/magicbluech.github.io\">https:\/\/magicbluech.github.io<\/\n      \n    \n    "},{"title":"Neglected Web Security thought","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2017\/12\/02\/Neglected-Web-Security-thought\/"}},"id":"https:\/\/magicbluech.github.io\/2017\/12\/02\/Neglected-Web-Security-thought\/","published":"2017-12-02T03:57:14.000Z","updated":"2017-12-02T03:58:00.333Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <ul>\n<li>take over your subdomain<ul>\n<li><a href=\"https:\/\/www.slideshare.net\/fransrosen\/dns-hijacking-using-cloud-providers-no-verification\n      \n    \n    "},{"title":"VelocityServlet  Expression-language  Injection","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2017\/11\/15\/VelocityServlet-Expression-language-Injection\/"}},"id":"https:\/\/magicbluech.github.io\/2017\/11\/15\/VelocityServlet-Expression-language-Injection\/","published":"2017-11-15T03:59:38.000Z","updated":"2018-06-22T05:26:14.261Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <p>[+] Author:MagicBlue<br>[+] Team: NeSE security team<br>[+] From: <a href=\"https:\/\/magicbluech.github.io\">https:\/\/magicbluech.github.io<\/\n      \n    \n    "},{"title":"\u4e00\u4e2axss\u7684\u5229\u7528(location.pathname situation)","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2017\/06\/24\/%E4%B8%80%E4%B8%AAxss%E7%9A%84%E5%88%A9%E7%94%A8-location-pathname-situation\/"}},"id":"https:\/\/magicbluech.github.io\/2017\/06\/24\/\u4e00\u4e2axss\u7684\u5229\u7528-location-pathname-situation\/","published":"2017-06-24T09:39:40.000Z","updated":"2018-06-22T05:25:38.420Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <p>[+] Author:MagicBlue<br>[+] Team: NeSE security team<br>[+] From: <a href=\"https:\/\/magicbluech.github.io\">https:\/\/magicbluech.github.io<\/\n      \n    \n    "},{"title":"\u767e\u5ea6v3\u767b\u9646\u7cfb\u7edf\u67b6\u6784\u95ee\u9898\u5bfc\u81f4\u70b9\u6211\u94fe\u63a5\u62ff\u5230\u4f60\u7684bduss(\u5de7\u7528referer)","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2017\/02\/13\/%E7%99%BE%E5%BA%A6v3%E7%99%BB%E9%99%86%E7%B3%BB%E7%BB%9F%E6%9E%B6%E6%9E%84%E9%97%AE%E9%A2%98%E5%AF%BC%E8%87%B4%E7%82%B9%E6%88%91%E9%93%BE%E6%8E%A5%E6%8B%BF%E5%88%B0%E4%BD%A0%E7%9A%84bduss-%E5%B7%A7%E7%94%A8referer\/"}},"id":"https:\/\/magicbluech.github.io\/2017\/02\/13\/\u767e\u5ea6v3\u767b\u9646\u7cfb\u7edf\u67b6\u6784\u95ee\u9898\u5bfc\u81f4\u70b9\u6211\u94fe\u63a5\u62ff\u5230\u4f60\u7684bduss-\u5de7\u7528referer\/","published":"2017-02-13T02:59:01.000Z","updated":"2018-06-22T05:25:48.539Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <p>[+] Author:MagicBlue<br>[+] Team: NeSE security team<br>[+] From: <a href=\"https:\/\/magicbluech.github.io\">https:\/\/magicbluech.github.io<\/\n      \n    \n    "},{"title":"SOME\u653b\u51fb\u53ef\u5bfc\u81f4\u70b9\u6211\u94fe\u63a5\u8815\u866b+\u5173\u6ce8","link":{"@attributes":{"href":"https:\/\/magicbluech.github.io\/2017\/02\/06\/SOME%E6%94%BB%E5%87%BB%E5%8F%AF%E5%AF%BC%E8%87%B4%E7%82%B9%E6%88%91%E9%93%BE%E6%8E%A5%E8%A0%95%E8%99%AB-%E5%85%B3%E6%B3%A8\/"}},"id":"https:\/\/magicbluech.github.io\/2017\/02\/06\/SOME\u653b\u51fb\u53ef\u5bfc\u81f4\u70b9\u6211\u94fe\u63a5\u8815\u866b-\u5173\u6ce8\/","published":"2017-02-06T03:24:03.000Z","updated":"2018-06-22T05:26:02.334Z","content":{"@attributes":{"type":"html"}},"summary":"\n    \n      \n      \n        <p>[+] Author:MagicBlue<br>[+] Team: NeSE security team<br>[+] From: <a href=\"https:\/\/magicbluech.github.io\">https:\/\/magicbluech.github.io<\/\n      \n    \n    "}]}