Ò»¡¢Ô¤±¸ÖªÊ¶—³ÌÐòµÄÄÚ´æ·ÖÅä
Ò»¸öÓÉc/C++±àÒëµÄ³ÌÐòÕ¼ÓõÄÄÚ´æ·ÖΪÒÔϼ¸¸ö²¿·Ö
1¡¢Õ»Çø£¨stack£©— ÓɱàÒëÆ÷×Ô¶¯·ÖÅäÊÍ·Å £¬´æ·Åº¯ÊýµÄ²ÎÊýÖµ£¬¾Ö²¿±äÁ¿µÄÖµµÈ¡£Æä²Ù×÷·½Ê½ÀàËÆÓÚÊý¾Ý½á¹¹ÖеÄÕ»¡£
2¡¢¶ÑÇø£¨heap£© — Ò»°ãÓɳÌÐòÔ±·ÖÅäÊÍ·Å£¬ Èô³ÌÐòÔ±²»ÊÍ·Å£¬³ÌÐò½áÊøÊ±¿ÉÄÜÓÉOS»ØÊÕ ¡£×¢ÒâËüÓëÊý¾Ý½á¹¹ÖеĶÑÊÇÁ½»ØÊ£¬·ÖÅ䷽ʽµ¹ÊÇÀàËÆÓÚÁ´±í£¬ºÇºÇ¡£
3¡¢È«¾ÖÇø£¨¾²Ì¬Çø£©£¨static£©—£¬È«¾Ö±äÁ¿ºÍ¾²Ì¬±äÁ¿µÄ´æ´¢ÊÇ·ÅÔÚÒ»¿éµÄ£¬³õʼ»¯µÄÈ«¾Ö±äÁ¿ºÍ¾²Ì¬±äÁ¿ÔÚÒ»¿éÇøÓò£¬ δ³õʼ»¯µÄÈ«¾Ö±äÁ¿ºÍδ³õʼ»¯µÄ¾²Ì¬±äÁ¿ÔÚÏàÁÚµÄÁíÒ»¿éÇøÓò¡£ - ³ÌÐò½áÊøºóÓÐϵͳÊÍ·Å
4¡¢ÎÄ×Ö³£Á¿Çø —³£Á¿×Ö·û´®¾ÍÊÇ·ÅÔÚÕâÀïµÄ¡£ ³ÌÐò½áÊøºóÓÉϵͳÊÍ·Å
5¡¢³ÌÐò´úÂëÇø—´æ·Åº¯ÊýÌåµÄ¶þ½øÖÆ´úÂë¡£
¶þ¡¢Àý×Ó³ÌÐò
ÕâÊÇÒ»¸öǰ±²Ð´µÄ£¬·Ç³£Ïêϸ
view plaincopy to clipboardprint?
//main.cpp
int a = 0; //È«¾Ö³õʼ»¯Çø
char *p1; //È«¾Öδ³õʼ»¯Çø
main()
{
int b; //Õ ......
Ò»¡¢Ô¤±¸ÖªÊ¶—³ÌÐòµÄÄÚ´æ·ÖÅä
Ò»¸öÓÉc/C++±àÒëµÄ³ÌÐòÕ¼ÓõÄÄÚ´æ·ÖΪÒÔϼ¸¸ö²¿·Ö
1¡¢Õ»Çø£¨stack£©— ÓɱàÒëÆ÷×Ô¶¯·ÖÅäÊÍ·Å £¬´æ·Åº¯ÊýµÄ²ÎÊýÖµ£¬¾Ö²¿±äÁ¿µÄÖµµÈ¡£Æä²Ù×÷·½Ê½ÀàËÆÓÚÊý¾Ý½á¹¹ÖеÄÕ»¡£
2¡¢¶ÑÇø£¨heap£© — Ò»°ãÓɳÌÐòÔ±·ÖÅäÊÍ·Å£¬ Èô³ÌÐòÔ±²»ÊÍ·Å£¬³ÌÐò½áÊøÊ±¿ÉÄÜÓÉOS»ØÊÕ ¡£×¢ÒâËüÓëÊý¾Ý½á¹¹ÖеĶÑÊÇÁ½»ØÊ£¬·ÖÅ䷽ʽµ¹ÊÇÀàËÆÓÚÁ´±í£¬ºÇºÇ¡£
3¡¢È«¾ÖÇø£¨¾²Ì¬Çø£©£¨static£©—£¬È«¾Ö±äÁ¿ºÍ¾²Ì¬±äÁ¿µÄ´æ´¢ÊÇ·ÅÔÚÒ»¿éµÄ£¬³õʼ»¯µÄÈ«¾Ö±äÁ¿ºÍ¾²Ì¬±äÁ¿ÔÚÒ»¿éÇøÓò£¬ δ³õʼ»¯µÄÈ«¾Ö±äÁ¿ºÍδ³õʼ»¯µÄ¾²Ì¬±äÁ¿ÔÚÏàÁÚµÄÁíÒ»¿éÇøÓò¡£ - ³ÌÐò½áÊøºóÓÐϵͳÊÍ·Å
4¡¢ÎÄ×Ö³£Á¿Çø —³£Á¿×Ö·û´®¾ÍÊÇ·ÅÔÚÕâÀïµÄ¡£ ³ÌÐò½áÊøºóÓÉϵͳÊÍ·Å
5¡¢³ÌÐò´úÂëÇø—´æ·Åº¯ÊýÌåµÄ¶þ½øÖÆ´úÂë¡£
¶þ¡¢Àý×Ó³ÌÐò
ÕâÊÇÒ»¸öǰ±²Ð´µÄ£¬·Ç³£Ïêϸ
view plaincopy to clipboardprint?
//main.cpp
int a = 0; //È«¾Ö³õʼ»¯Çø
char *p1; //È«¾Öδ³õʼ»¯Çø
main()
{
int b; //Õ ......
Ç×ÃܽӴ¥C¿É±ä²ÎÊýº¯Êý
±¾ÎÄ´Ó³ÌÐòԱʵ¼ùµÄ½Ç¶ÈÀ´ÆÊÎöC¿É±ä²ÎÊýº¯ÊýÔÚIntel 32λCPUÉϵÄʵÏÖÓëÔÀí
×÷ÕߣºÁÖº£·ã
ÍøÖ·:http://blog.csdn.net/linyt/archive/2008/04/02/2243605.aspx
[*]»¶Ó×ªÔØ£¬µ«ÇëÍêÕû×ªÔØ²¢×¢Ã÷×÷ÕßÒÔ¼°µØÖ·£¬ÇëÎðÓÃÓÚÈκÎÉÌÒµÓÃ;¡£
¿É±ä²ÎÊýº¯ÊýµÄʵÏÖ
Èç¹û˵CÓïÑÔ¾ßÓкܶàµÍ¼¶ÓïÑÔµÄÌØÐÔ£¬ÄÇô¿É±ä²ÎÊýº¯Êý±ãÊÇÕâÐ©ÌØÐÔÖеÄÒ»¸ö¡£ÎÞÂÛÊÇCר¼Ò»¹ÊÇC³õѧÕߣ¬¶¼¶Ôprintf±ê×¼¿âº¯ÊýÏ൱Á˽⣬ÒòΪËüÊÇÎÒÃDz½ÈëCÓïÑԵĵÚÒ»¸öº¯Êý¡£Ê¹ÓÃprintfº¯Êýʱ£¬¾Í²»Öª²»¾õµØ½Ó´¥µ½CÓïÑԵĿɱä²ÎÊýº¯Êý»úÖÆ¡£
printfº¯ÊýµÄÔÐͶ¨ÒåÈçÏ£º
int printf(const char *format, ...);
Óë´ËÀàËÆ£¬CÓïÑԵĿɱä²ÎÊýº¯ÊýµÄ¶¨ÒåÈçÏ£º
type fun( type arg1, type arg2, ...);
ÆäÖÐtype±íʾÀàÐÍ,arg1, arg2±íʾ²ÎÊýÃû£¬¶ø×îÖØÒªµÄÊǿɱä²ÎÊýº¯ÊýµÄ²ÎÊýÁбíÖгöÏÖÁË“...”·ûºÅ¡£·ûºÅ“...”ÓÃÀ´±íʾ²ÎÊýµÄ¸öÊýÒÔ¼°ÏàÓ¦µÄÀàÐͶ¼ÊǿɱäµÄ£¬Ï൱ÓÚ¶à¸ö²ÎÊýµÄռλ·û£¬¿ÉΪ0¸ö£¬1¸ö»ò¶à¸ö²ÎÊý£¬²¢ÇÒÒªÇó“...”ǰÖÁÉÙÓÐÒ»¸ö²ÎÊý£¬²¢ÇÒËüµÄºóÃæ²»ÄÜÔÙ³öÏÖ²ÎÊý¡£ CÓïÑÔÌṩ¿É±ä²ÎÊýº¯Êý¿ÉÒÔ¸ù¾Ýʵ¼ÊµÄÐèÒªÀ´ÊµÏֲΠ......
ת×Ô: http://www.cnblogs.com/rentj1/archive/2009/02/23/1396187.html
1 н¨Àà¿âMyTestDLL
2 ÓÒ»÷ÏîÄ¿“MyTestDLL”-¡·ÊôÐÔ-¡·Éú³É-¡·¹´Ñ¡“ΪCOM»¥²Ù×÷×¢²á”
3 ´ò¿ª AssemblyInfo.cs Îļþ ÐÞ¸Ä [assembly: ComVisible(true)]
4 ´ò¿ªVisual Sutdio 2008 µÄÃüÁîÌáʾÐй¤¾ßÊäÈëguidgen.exe Ñ¡ÔñDEFINE_GUID µ¥»÷ "New GUID"
5´úÂë
1¡¢Ã¿¸öÀàÃû¶ÔÓ¦Ò»¸ö½Ó¿ÚÃû£¬½Ó¿ÚÃûÊÇÀàÃûǰ¼ÓÉÏÒ»¸ö´óдµÄI
2¡¢½Ó¿ÚÖÐÉùÃ÷µÄ·½·¨ÒªÊ¹ÓÃÊôÐÔ [DispId(n)]
3¡¢Àà±ØÐëÓÐÒ»¸öÎ޲ι¹Ô캯Êý
using System;
using System.Collections.Generic;
using System.Linq;
using System.Text;
using System.Runtime.InteropServices;
namespace MyTestDll
{
// ÕâÀïGuidΪµÚ4²½Éú³ÉµÄ¡£
[Guid("FFA4B191-FB5B-4dd5-B7B1-B2F32BF6F1FF")]
public interface IMyTestDll
{
......
ת×Ô: http://www.cnblogs.com/rentj1/archive/2009/02/23/1396187.html
1 н¨Àà¿âMyTestDLL
2 ÓÒ»÷ÏîÄ¿“MyTestDLL”-¡·ÊôÐÔ-¡·Éú³É-¡·¹´Ñ¡“ΪCOM»¥²Ù×÷×¢²á”
3 ´ò¿ª AssemblyInfo.cs Îļþ ÐÞ¸Ä [assembly: ComVisible(true)]
4 ´ò¿ªVisual Sutdio 2008 µÄÃüÁîÌáʾÐй¤¾ßÊäÈëguidgen.exe Ñ¡ÔñDEFINE_GUID µ¥»÷ "New GUID"
5´úÂë
1¡¢Ã¿¸öÀàÃû¶ÔÓ¦Ò»¸ö½Ó¿ÚÃû£¬½Ó¿ÚÃûÊÇÀàÃûǰ¼ÓÉÏÒ»¸ö´óдµÄI
2¡¢½Ó¿ÚÖÐÉùÃ÷µÄ·½·¨ÒªÊ¹ÓÃÊôÐÔ [DispId(n)]
3¡¢Àà±ØÐëÓÐÒ»¸öÎ޲ι¹Ô캯Êý
using System;
using System.Collections.Generic;
using System.Linq;
using System.Text;
using System.Runtime.InteropServices;
namespace MyTestDll
{
// ÕâÀïGuidΪµÚ4²½Éú³ÉµÄ¡£
[Guid("FFA4B191-FB5B-4dd5-B7B1-B2F32BF6F1FF")]
public interface IMyTestDll
{
......
»Ø³µµã»÷°´Å¥
Ö»ÐèÔÚ.aspxÒ³Ãæ´úÂëÖмÓÈëÒ»¶ÎJavaScript¼´¿É£º
<script type="text/javascript" language="javascript">
document.onkeydown = Check;
function Check(){
var gk=event.keyCode;
if(gk==13) {
document.all("btnLogin").focus();
return;
}
}
</script > ......
»Ø³µµã»÷°´Å¥
Ö»ÐèÔÚ.aspxÒ³Ãæ´úÂëÖмÓÈëÒ»¶ÎJavaScript¼´¿É£º
<script type="text/javascript" language="javascript">
document.onkeydown = Check;
function Check(){
var gk=event.keyCode;
if(gk==13) {
document.all("btnLogin").focus();
return;
}
}
</script > ......
Trustwave's SpiderLabs Security Advisory TWSL2010-001:
Multiplatform View State Tampering Vulnerabilities
Published: 2010-02-08 Version: 1.1
SpiderLabs has documented view state tampering
vulnerabilities in three products from separate vendors.
View states are used by some web application frameworks to
store the state of HTML GUI controls. View states are
typically stored in hidden client-side input fields,
although server-side storage is widely supported.
The affected vendors generally recommend that client-side
view states are cryptographically signed and/or encrypted,
but specific exploits have not been previously documented.
These vulnerabilities show that unsigned client-side view
states will ALWAYS result in a vulnerability in the affected
products.
Credit: David Byrne of Trustwave's SpiderLabs
===============================================
Vendor: Microsoft (http://www.microsoft.com)
Product: ASP.Net (http://www.asp.net)
Versions affected: .Net 3.5 is confirm ......
Ö¸ÁîÃû³Æ : chmod
ʹÓÃȨÏÞ : ËùÓÐʹÓÃÕß
ʹÓ÷½Ê½ : chmod [-cfvR] [--help] [--version] mode file...
˵Ã÷ : Linux/Unix µÄµµ°¸µ÷ÓÃȨÏÞ·ÖΪÈý¼¶ : µµ°¸ÓµÓÐÕß¡¢Èº×é¡¢ÆäËû¡£ÀûÓà chmod ¿ÉÒÔ½åÒÔ¿ØÖƵµ°¸ÈçºÎ±»ËûÈËËùµ÷Óá£
²ÎÊý :
mode : ȨÏÞÉ趨×Ö´®£¬¸ñʽÈçÏ : [ugoa...][[+-=][rwxX]...][,...]£¬ÆäÖÐ
u ±íʾ¸Ãµµ°¸µÄÓµÓÐÕߣ¬g ±íʾÓë¸Ãµµ°¸µÄÓµÓÐÕßÊôÓÚͬһ¸öȺÌå(group)Õߣ¬o ±íʾÆäËûÒÔÍâµÄÈË£¬a ±íʾÕâÈýÕß½ÔÊÇ¡£
+ ±íʾÔö¼ÓȨÏÞ¡¢- ±íʾȡÏûȨÏÞ¡¢= ±íʾΨһÉ趨ȨÏÞ¡£
r ±íʾ¿É¶ÁÈ¡£¬w ±íʾ¿ÉдÈ룬x ±íʾ¿ÉÖ´ÐУ¬X ±íʾֻÓе±¸Ãµµ°¸ÊǸö×ÓĿ¼»òÕ߸õµ°¸ÒѾ±»É趨¹ýΪ¿ÉÖ´ÐС£
-c : Èô¸Ãµµ°¸È¨ÏÞȷʵÒѾ¸ü¸Ä£¬²ÅÏÔʾÆä¸ü¸Ä¶¯×÷
-f : Èô¸Ãµµ°¸È¨ÏÞÎÞ·¨±»¸ü¸ÄÒ²²»ÒªÏÔʾ´íÎóѶϢ
-v : ÏÔʾȨÏÞ±ä¸üµÄÏêϸ×ÊÁÏ
-R : ¶ÔĿǰĿ¼ÏµÄËùÓеµ°¸Óë×ÓĿ¼½øÐÐÏàͬµÄȨÏÞ±ä¸ü(¼´ÒԵݻصķ½Ê½Öð¸ö±ä¸ü)
--help : ÏÔʾ¸¨Öú˵Ã÷
--version : ÏÔʾ°æ±¾
·¶Àý :½«µµ°¸ file1.txt ÉèΪËùÓÐÈ˽ԿɶÁÈ¡ :
chmod ugo+r file1.txt
½«µµ°¸ file1.txt ÉèΪËùÓÐÈ˽ԿɶÁÈ¡ :
chmod a+r file1.txt
½«µµ°¸ file1.txt Óë file2.txt É ......