HVV护网专题

流量分析技巧

下面的图就是态势感知收集的流量,检测出告警类型是sql注入。
image-20241130222913529
image-20241130223047713
image-20241130223141904
image-20241130223237154
image-20241130223432527
image-20241130223625643
image-20241130223723694
image-20241130223908470
image-20241130223922610
image-20241130224844253
image-20241130231125420
image-20241130231228431
image-20241130231402565
image-20241130231450122

护网常见打点方式

web安全基础

sql注入补充

image-20241201134014201

RCE漏洞补充

XSS漏洞补充

image-20241201163232634
image-20241201165635247
image-20241201165915945

CSRF漏洞补充

image-20241201174216118
image-20241201174420835
image-20241201174447899
image-20241201174524422
image-20241201174614350
image-20241201174800456
image-20241201175028895
image-20241201175124970
image-20241201175214870
image-20241201175331499
image-20241201175400649
image-20241201175523475
image-20241201175609445
image-20241201175731082

防御手段

文件上传漏洞补充

SSRF漏洞补充

XXE漏洞补充

image-20241201234920713
image-20241201234858035
image-20241201235337600
image-20241202004141427
image-20241202004408847

http状态码补充

image-20241202011234072

常用安全设备

image-20241202130804321

态势感知

image-20241202130833282
image-20241202130959642

image-20241202131156445

image-20241202131418888

蜜罐

image-20241202131643621
image-20241202131703281
image-20241202131904391
image-20241202131922152
image-20241202132029553
image-20241202132144094
image-20241202132250621
image-20241202132311009

威胁情报与沙箱

终端防护

image-20241202135428197

蓝队项目补充

蜜罐DecoyMini

image-20241202152033879
image-20241202152115606

Last updated