Skip to content

Commit 2900d02

Browse files
committed
Update Readme.md
1 parent 5b6d045 commit 2900d02

File tree

1 file changed

+8
-0
lines changed

1 file changed

+8
-0
lines changed

Readme.md

+8
Original file line numberDiff line numberDiff line change
@@ -139,6 +139,8 @@
139139

140140
https://www.pytosquatting.org/
141141

142+
[PyPI 官方仓库遭遇request恶意包投毒](https://mp.weixin.qq.com/s/dkPdXfGfSK097GI6Ln92lA)
143+
142144

143145

144146
### LDAP注入
@@ -167,6 +169,8 @@ https://www.pytosquatting.org/
167169

168170
[讨论PythonWeb开发中可能会遇到的安全问题之SQL注入](http://blog.neargle.com/2016/07/22/pythonweb-framework-dev-vulnerable/)
169171

172+
[Django JSONField SQL注入漏洞(CVE-2019-14234)分析与影响](https://www.leavesongs.com/PENETRATION/django-jsonfield-cve-2019-14234.html)
173+
170174

171175

172176
### SSTI模版注入
@@ -185,10 +189,14 @@ https://github.com/evilcos/python-webshell
185189

186190
https://github.com/ahhh/Reverse_DNS_Shell
187191

192+
193+
188194
### paper
189195

190196
Python_Hack_知道创宇_北北(孙博).pdf
191197

198+
199+
192200
### 其他
193201

194202
[如何判断目标站点是否为Django开发](https://www.leavesongs.com/PENETRATION/detect-django.html)

0 commit comments

Comments
 (0)