<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Doonsec's feed</title><link>http://wechat.doonsec.com/MzkxNzQ5OTQ0Mw.xml</link><description>The latest security articles about WeChat official account</description><language>zh-CN</language><lastBuildDate>Wed, 21 Jan 2026 07:55:32 GMT</lastBuildDate><generator>PyRSS2Gen-1.1.0</generator><docs>http://blogs.law.harvard.edu/tech/rss</docs><image><url>http://wechat.doonsec.com/</url><title>Doonsec</title><link>http://wechat.doonsec.com/static/front/img/doonsec_bak3.png</link></image><item><title>那些大模型没有教会我的事</title><link>https://mp.weixin.qq.com/s/Ej0kbDENisRUFpKb9_2vew</link><description>又是一个多月没写公众号了，第一是因为太懒了，第二是因为最近太太太太忙了，有太多的东西需要做了。P.s 封面图是公众号AI生成的，一言难尽啊~</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2026-01-20T22:28:14</pubDate></item><item><title>react2shell 漏洞浅析</title><link>https://mp.weixin.qq.com/s/NvCyOZRufORoe2-hLMJe3w</link><description>近期爆出的react框架Pre-Auth RCE漏洞十分有趣，笔者仅以此文记录一下自己分析复现的相关过程。MG锐评，react写的真潦草！</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-12-17T20:24:46</pubDate></item><item><title>CVE-2025-8088武器化那些事</title><link>https://mp.weixin.qq.com/s/5aZsiHtpDiDzt8Ua8LWpoA</link><description>这篇不写React漏洞的分析，不写的原因很简单：平头哥说他学会了，他来写。 又可以从平头哥那偷学一点挖洞小技巧了！</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-12-13T17:14:07</pubDate></item><item><title>React漏洞有感</title><link>https://mp.weixin.qq.com/s/L15Dve6rjvCR3l2-7QMKOQ</link><description>这两天被各种React漏洞刷屏，那我们这一篇就来分析一下这个漏洞。Just Kidding！这一次不聊技术，聊点心里话。</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-12-05T19:54:24</pubDate></item><item><title>危险的压缩包系列第一篇---CVE-2025-8088</title><link>https://mp.weixin.qq.com/s/R0A9JNx-iT87JNOjUOgWIg</link><description>近期CVE-2025-8088及其背后的故事引起了笔者的较大兴趣，遂打算新开一个系列，品一品近年来和压缩包相关</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-08-20T01:08:18</pubDate></item><item><title>当我们在谈论大模型辅助CTF时，我们在谈论什么</title><link>https://mp.weixin.qq.com/s/NxpjD8NtE4aSgART76NO5w</link><description>Is CTF Dead？</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-08-19T22:07:03</pubDate></item><item><title>浅谈SharePoint漏洞之ToolShell完结篇</title><link>https://mp.weixin.qq.com/s/uuQ-pikqKC1Rmx30iFnatA</link><description>ToolShell完结篇之扩展gemini-cli初体验</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-08-04T21:59:55</pubDate></item><item><title>浅谈SharePoint漏洞之CVE-2025-53770分析失败篇</title><link>https://mp.weixin.qq.com/s/BSOInv-UrvhhFGWIEcf49A</link><description>失败的经验比成功的经验更重要！~~~</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-07-27T16:46:29</pubDate></item><item><title>浅谈SharePoint漏洞之CVE-2025-53771</title><link>https://mp.weixin.qq.com/s/EN5vKgmV6wuV_jEl6x15sg</link><description>又到了几个月一次的逼逼时刻，这次不聊大模型聊聊漏洞。</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-07-25T19:05:02</pubDate></item><item><title>当我们在谈论大模型辅助编程时，我们在谈论什么（二）之MCP</title><link>https://mp.weixin.qq.com/s/dYDP1-u5T4o8RXABkYln4w</link><description>最近逼逼的频率确实有点高，证明最近没有偷懒，有在认真的思考问题，每天梦里有也都是各种LLMs和Agents。</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-03-26T20:49:47</pubDate></item><item><title>Read More and Code More</title><link>https://mp.weixin.qq.com/s/dYC9rK6fkmCMBXpsL4w-YQ</link><description>又到了几周一度的逼逼时刻，还是那句话，且看且珍惜。但本文只是笔者一家之言，仅仅代表笔者，不代表任何组织观点，有不同看法或者发现错误的朋友欢迎留言交流。</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-03-24T22:52:57</pubDate></item><item><title>当我们在谈论大模型辅助漏洞挖掘时，我们在谈论什么</title><link>https://mp.weixin.qq.com/s/KI8AOq3r8_SREPUtNhxSvw</link><description></description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-03-04T22:54:19</pubDate></item><item><title>Exchange系列之二CVE-2021-26855填坑</title><link>https://mp.weixin.qq.com/s/9cRBphYXFmLSCMm98wstuQ</link><description>填坑之旅</description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-02-11T00:35:23</pubDate></item><item><title>Exchange系列之CVE-2021–26855</title><link>https://mp.weixin.qq.com/s/c1bnbBKi3f_cz9Ok0OOIbg</link><description></description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-01-27T12:16:59</pubDate></item><item><title>\"炸土豆\"系列第一篇</title><link>https://mp.weixin.qq.com/s/xc3EpbXfSOWhLll-SKiygw</link><description></description><author>不吃猹的瓜</author><category>不吃猹的瓜</category><pubDate>2025-01-21T00:48:05</pubDate></item></channel></rss>