2023年春秋杯网络安全联赛春季赛 web php_again [PHP 8.2.2 OPcache Binary Webshell...
source link: https://fdlucifer.github.io/2023/07/01/2023-chunqiubei-spring-php-again/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
同样是在ichunqiu CTF大本营刷题的时候碰到一道高质量的web题,也比较有实战价值,比赛中算是web里耗时较长的的。网上已经有一些公开的writeup,但是为了加深理解记忆,故记录一篇blog。
其中包括一些网上没公开的一些CVE-2022-42919 LPE exp及PHP 8.2.2 OPcache Binary Webshell的利用细节。
PHP 8.2.2 OPcache Binary Webshell
CVE-2022-42919 LPE
Recommend
-
12
利用 PHP7 的 OPcache 执行 PHP 代码 Her0in
-
54
先看一下LNMP架构我们知道很多php项目都会用到上述架构,静态页面走nginx,动态请求传给后端php,php解析后传给客户端那php是如何解析代码的呢?下面是php的原理图当Nginx将CGI请求发送给这个socket(这个socket可以是文件也可以是ipsocket)的时候,通过FastCGI接...
-
54
A few weeks ago I wrote a short article which highlighted GUI solutions for monitoring and controlling PHP OPcache. We all know that enabling PHP OPcache
-
63
README.md Composer Preload Preload your sweet sweet code to opcache with a composer command, making your code run faster. Composer Preload is a...
-
34
-
37
昨天《如何衡量单机PHP支撑能力》提到了OPcache,今天在自己的ECS上做了些测试,结果令人激动。 什么是Opcache 即使不使用OPcache,PHP7的性能也是非常高的。PHP脚本每次运行的时候,都要动态解析PHP代码,然后再执行。
-
38
-
5
OPcache is a PHP extension that improves PHP performance by storing precompiled script bytecode in shared memory, thereby removing the need for PHP to load and parse scripts on each request. The extension is built-in for PHP 5.5+. If you are...
-
27
2022-04-07
-
12
2023年春秋杯网络安全联赛 春季赛Loading [MathJax]/jax/output/HTML-CSS/fonts/TeX/fontdata.js flag{}___Orz2023年春秋杯网络安...
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK