<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Doonsec's feed</title><link>http://wechat.doonsec.com/MzkzNTUwNTg2Ng.xml</link><description>The latest security articles about WeChat official account</description><language>zh-CN</language><lastBuildDate>Tue, 08 Jul 2025 17:03:11 GMT</lastBuildDate><generator>PyRSS2Gen-1.1.0</generator><docs>http://blogs.law.harvard.edu/tech/rss</docs><image><url>http://wechat.doonsec.com/</url><title>Doonsec</title><link>http://wechat.doonsec.com/static/front/img/doonsec_bak3.png</link></image><item><title>供应链攻击某src某游戏控制台</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485570&amp;idx=1&amp;sn=2664f1ddd617def13780979a5a30fdf3</link><description>久违的实战文章</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-07-08T15:04:33</pubDate></item><item><title>Windows命令执行场景下落地文件的常见方法</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485534&amp;idx=1&amp;sn=965510532c48f2610001136d57f67e79</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-07-02T15:11:49</pubDate></item><item><title>平台激励计划</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485481&amp;idx=1&amp;sn=43bb93610883999ca91d390287b65df2</link><description>你是否曾遇到这样的苦恼？平时HVV期间，为了攻防演练等仅使用过一两次的 0day 漏洞，如今却在提交给某些</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-04-16T22:14:11</pubDate></item><item><title>点击劫持与双击劫持</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485479&amp;idx=1&amp;sn=6086c9a3c256df6bb971fc5a86f652e4</link><description>双击劫持，你水洞的好帮手（</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-02-18T17:10:27</pubDate></item><item><title>Tips | 提取java应用内存从而直接获取明文密码和配置信息的方法</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485459&amp;idx=1&amp;sn=4a26fdf1aa1fa2a78e5f831f9e744ac6</link><description>吊打密文</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-02-15T22:45:10</pubDate></item><item><title>27.悬于开发者和安全研究人员头顶的剑 | 一类漏洞让Visual Studio项目变得不再可信</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485449&amp;idx=1&amp;sn=0cfe6e2a85924d8a102415d7347cc805</link><description>喜欢搞.NET安全研究的小朋友们你们好呀，我是Visual Studio 1Click反序列化漏洞</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2025-01-17T14:06:43</pubDate></item><item><title>25.net安全学习特别篇之给ysoserial.net贡献plugins</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485409&amp;idx=1&amp;sn=0a0d1997919d50f182ed959f002b1226</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-12-07T19:30:12</pubDate></item><item><title>24.学习ysoserial.net的plugins第三弹</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485368&amp;idx=1&amp;sn=202562c801678511127cdd30c038de29</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-12-06T21:31:01</pubDate></item><item><title>23.学习ysoserial.net的plugins第二弹（Resx以及实战应用）</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485343&amp;idx=1&amp;sn=e01654462b6a5b5f3e76939a3921a7fb</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-28T20:37:38</pubDate></item><item><title>22.学习ysoserial.net的plugins第一弹</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485285&amp;idx=1&amp;sn=a25c6f8124beb15ef267a9b80c15fdd5</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-27T18:02:56</pubDate></item><item><title>21.从Altserialization到SessionState反序列化再到SQL Server数据库隔山打牛</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485236&amp;idx=1&amp;sn=65010bc45f6ba79efff81182d6e59441</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-26T13:23:34</pubDate></item><item><title>5.ASP.NET HttpModule型内存马</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485174&amp;idx=1&amp;sn=2ec8f13e30fe4f0a388c1c96524bd3e7</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-24T20:15:54</pubDate></item><item><title>4.ASP.NET VirtualPath型内存马</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485145&amp;idx=1&amp;sn=95a28d024e2f193b2400fe2db4dd3dab</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-22T19:16:20</pubDate></item><item><title>3.ASP.NET HttpListener型内存马</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485121&amp;idx=1&amp;sn=b48987c93023e727c19519cea89055cc</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-19T15:14:27</pubDate></item><item><title>2.ASP.NET Route型内存马</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485100&amp;idx=1&amp;sn=9ae88340de14c8e139af1d3ab48ff111</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-17T14:03:12</pubDate></item><item><title>1.ASP.NET MVC Filter型内存马</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485067&amp;idx=1&amp;sn=6cee624c06e5defa05e4a749e0ce3d31</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-15T14:48:11</pubDate></item><item><title>18.补充以前没学到的链子以及BinaryFormatter序列化数据特征</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485043&amp;idx=1&amp;sn=dfd968914df9df8ecea6272988b7bd30</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-04T23:43:54</pubDate></item><item><title>17.SerializationBinder安全问题与DataSetTypeSpoof链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247485018&amp;idx=1&amp;sn=094f2cccd855d3cdf694c3f262ee58f4</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-03T14:20:23</pubDate></item><item><title>16.whitepaper-net-deser补充学习（Json.Net后篇）</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484992&amp;idx=1&amp;sn=5d98c1ee9dac2b19a675e53888e28f5e</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-02T14:22:29</pubDate></item><item><title>15.Json.Net反序列化点（中篇）以及更多相关链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484970&amp;idx=1&amp;sn=7c53fb985b1eb1902e8f16744e28f086</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-11-01T11:46:39</pubDate></item><item><title>14.1.ObjRef链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484949&amp;idx=1&amp;sn=c9b5070ae4ad7095ff238dca93bd1143</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-31T16:59:09</pubDate></item><item><title>14.net remoting安全问题（未完结）</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484933&amp;idx=1&amp;sn=6489d6263afbf6a7abfc23d6d83f5d05</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-30T13:26:07</pubDate></item><item><title>13.Fastjson（.NET）反序列化点后篇</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484868&amp;idx=1&amp;sn=a4d5291fe796880bfc1edfc8afa770ed</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-29T19:47:21</pubDate></item><item><title>12.Fastjson（.NET）反序列化点前篇</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484826&amp;idx=1&amp;sn=5a66b82c3c646014d9170f20d3278a40</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-28T22:11:30</pubDate></item><item><title>11.Json.Net反序列化点（前篇）以及XamlImageInfo、GetterSecurityException相关链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484815&amp;idx=1&amp;sn=752bdb72b6d885894a9c9b5d15eda3a8</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-27T20:13:16</pubDate></item><item><title>双供应链拿一个目标</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484740&amp;idx=1&amp;sn=e1e79980f6cd3f38c96011d8da35dbe2</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-26T21:45:44</pubDate></item><item><title>10.JavaScriptSerializer反序列化点</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484712&amp;idx=1&amp;sn=bae92f37643eec004c1702036059e07c</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-25T13:22:42</pubDate></item><item><title>9.DataContractJsonSerializer反序列化点</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484684&amp;idx=1&amp;sn=953e12cfd96a205e0dcef2b47cd7e82d</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-24T18:53:49</pubDate></item><item><title>8.NetDataContractSerializer反序列化点以及PSObject链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484658&amp;idx=1&amp;sn=5fbefbd85085378c181642343b1a82d6</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-21T12:07:40</pubDate></item><item><title>7.DataContractSerializer反序列化点以及相关链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484634&amp;idx=1&amp;sn=827f9b0da490f99ee1b093d78db5f6e8</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-18T15:20:19</pubDate></item><item><title>公众号创建交流群啦！！！</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484613&amp;idx=1&amp;sn=9ccfb22d088e5ec5cf076046e292b457</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-15T18:06:49</pubDate></item><item><title>6.ViewState安全问题全解（万字长文）</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484605&amp;idx=1&amp;sn=e40ab30b6317c78b7889c13faf780151</link><description>万字解析src、代码审计、红队等不同场景下的ViewState安全问题</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-14T13:45:15</pubDate></item><item><title>5.ToolboxItemContainer、RolePrincipal、WindowsPrincipal链以及一些反序列化特性</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484475&amp;idx=1&amp;sn=fa7241fac9a4944355baccc8ee108257</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-13T12:18:46</pubDate></item><item><title>4.LosFormatter反序列化点+一些反序列化链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484455&amp;idx=1&amp;sn=1fc6cef052776d5c595544fca0547b86</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-12T11:05:42</pubDate></item><item><title>从druid一路杀到云控制台</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484387&amp;idx=1&amp;sn=ad32e81309c2f43b6dfcf39ce918efbf</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-11T10:59:56</pubDate></item><item><title>3.SoapFormatter反序列化点以及ActivitySurrogateSelector相关链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484365&amp;idx=1&amp;sn=c35c56e4fd57706ff7f8c1f52c9147c8</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-10T13:50:30</pubDate></item><item><title>1.XmlSerializer反序列化点以及ObjectDataProvider链</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484178&amp;idx=1&amp;sn=21fa3634af61a8f8a850a0c09a092745</link><description>.NET危险系列正式连载！！！</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-10-08T18:05:41</pubDate></item><item><title>一次简单的私活</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484128&amp;idx=1&amp;sn=d9f4f3d9ed807015932a1daf08c8e878</link><description>实战文章集合开始啦！！！</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-30T22:16:16</pubDate></item><item><title>一些提高密码喷洒与爆破出货率的小技巧</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484097&amp;idx=1&amp;sn=9c29031c2a2457930097ee0fc41faecf</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-23T14:45:16</pubDate></item><item><title>postMessage造成的各种安全问题</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484056&amp;idx=1&amp;sn=b7b02e2ec44911b4591dcfb6688dd77c</link><description>postMessage造成的各种安全问题</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-19T23:22:42</pubDate></item><item><title>实战中获取JS文件的各种场景</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484034&amp;idx=1&amp;sn=d3276c8342642cedc104deaeaebd4349</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-14T22:27:34</pubDate></item><item><title>ClickHouse数据库安全问题初探</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247484011&amp;idx=1&amp;sn=ce8f07f0e1421b1c1b626c3560161d06</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-12T22:20:24</pubDate></item><item><title>爆破及喷洒过程中与常见限制机制的对抗思路</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483954&amp;idx=1&amp;sn=87cf4b9408ea0b6e745080d450ede616</link><description>还在因为爆破时遇到的验证码而感到烦恼吗？快来学习击败它的武林秘籍</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-09T21:30:03</pubDate></item><item><title>应该如何寻找参数的蛛丝马迹？</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483882&amp;idx=1&amp;sn=7bec8923088f61f371bcd425f3067956</link><description></description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-07T22:35:34</pubDate></item><item><title>从一个奇葩的JWT解密问题到Github 10K star组件的设计缺陷！！！</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483829&amp;idx=1&amp;sn=98ba26bf06336e540eaeb3394e7fe789</link><description>为何你的JWT密钥总是爆不出来？原因终于找到了</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-03T15:29:26</pubDate></item><item><title>我们需要从JS文件里提取哪些信息？</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483787&amp;idx=1&amp;sn=446ff47f8d3d702ecacbaa84ad1d4236</link><description>学懂JS接口安全，一个系列就够啦！！！</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-09-01T20:52:06</pubDate></item><item><title>某金融src的一次较复杂攻击链进入后台</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483754&amp;idx=1&amp;sn=aadd74eccee53d08dded4e183f9b778a</link><description>JS接口安全之路合集开始啦！后续将分享在不同场景下，都有哪些方法、工具、思路去获取js文件，比如登录点场景、后台场景、SSO场景、Webpack场景、目录以及JS文件FUZZ场景、小程序解包场景等等，全程免费！！！欢迎各位师傅关注</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-08-29T17:29:49</pubDate></item><item><title>记某次护网中对HIS系统的审计</title><link>https://mp.weixin.qq.com/s?__biz=MzkzNTUwNTg2Ng==&amp;mid=2247483706&amp;idx=1&amp;sn=6418215da015f3c8fd4aa4848e89703f</link><description>如何优雅的拿下医疗单位靶标系统</description><author>HW专项行动小组</author><category>HW专项行动小组</category><pubDate>2024-08-26T22:55:18</pubDate></item></channel></rss>