https://www.python.org/downloads/
https://training.ching367436.me/sqlite3-viewer/
https://training.ching367436.me/sql-injection-viewer/
https://github.com/swisskyrepo/PayloadsAllTheThings/blob/master/SQL Injection/SQLite Injection.md
() 裡面放 SELECT group_concat(tbl_name) FROM sqlite_master WHERE type='table' and tbl_name NOT like 'sqlite_%'
可以選出所有這個 database 裡面的 table_name
Result:
Result:
爆破腳本
去年社課:https://discord.com/channels/1003684703284498462/1003684704291143853/1082607913509584956
簡報連結:https://drive.google.com/file/d/1GKCqR78Hg27sgreviXyFGeeOmzFS6vpL/view?usp=share_link
https://training.ching367436.me/shell/shell.php
https://training.ching367436.me/shell/shell.php\
https://github.com/splitline/domain-obfuscator
http://www.unicode.org/reports/tr46/#Mapping
IDNA2003 requires a mapping phase, which maps ÖBB.at to öbb.at, for example. Mapping typically involves mapping uppercase characters to their lowercase pairs, but it also involves other types of mappings between equivalent characters, such as mapping halfwidth katakana characters to normal katakana characters in Japanese. The mapping phase in IDNA2003 was included to match the insensitivity of ASCII domain names. Users are accustomed to having both CNN.com and cnn.com work identically. They expect domain names with accents to have the same casing behavior, so that ÖBB.at is the same as öbb.at. There are variations similar to case differences in other scripts. The IDNA2003 mapping is based on data specified in the Unicode Standard, Version 3.2; this mapping was later formalized as the Unicode property [NFKC_Casefold].
Same-origin: Protocol, port, and host are the same.
https://webhook.site/
https://pipedream.net/
解:https://ching367436.github.io/ais3-pre-exam-2023-write-up/#E-portfolio-baby
https://csp-evaluator.withgoogle.com/
https://e-portfolio.ching367436.me:8443/avatars/ea6209bcae582fd7a60a77dc71d624e4.svg
解:https://ching367436.github.io/ais3-pre-exam-2023-write-up/#E-portfolio
https://xss-game.appspot.com
https://prompt.ml