<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-6645314309396063482</id><updated>2011-10-31T23:08:27.678+08:00</updated><category term='文章封存'/><category term='資源分享'/><category term='資安文摘'/><category term='免責評論'/><category term='程式設計'/><category term='動漫文化'/><category term='生活扎記'/><category term='原創翻譯'/><title type='text'>家科的生活日誌</title><subtitle type='html'>本人對 Coding, Fuzzing, Reversing, Kernel 與 Protocol 一點也不在行。</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>18</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-5155818098438649802</id><published>2011-07-13T21:21:00.002+08:00</published><updated>2011-07-13T21:21:40.556+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='生活扎記'/><title type='text'>讓老師瘋掉的古詩答案</title><content type='html'>2.後宮佳麗三千人，__________同學答：鐵棒也會磨成針~~~~~~（正解為「三千寵愛在一身」）&lt;br /&gt;3.西塞山前白鷺飛，__________同學答：東村河邊爬烏龜（對的挺工整的）&lt;br /&gt;4.天生我才必有用，__________同學答：關鍵時刻顯神通又有同學答：老鼠兒子會打洞（整辦公室的語文老師集體毫無形象的狂笑）&lt;br /&gt;5.期末考試出對聯,上聯是英雄寶刀未老　　該初三同學對下聯為：老娘丰韻尤存6.床前明月光，__________同學答：李白睡的香&lt;br /&gt;7.管中窺豹，__________同學答：嚇我一跳（哈哈哈！正解為「可見一斑」)&lt;br /&gt;8.葡萄美酒夜光杯，__________同學答：金錢美人一大堆&lt;br /&gt;9.__________，飛入尋常百姓家同學答：康佳彩霸電視機&lt;br /&gt;10.__________，路上行人欲斷魂初一學生的傑作：半夜三更鬼敲門&lt;br /&gt;11.老吾老以及人之老，__________同學答：妻吾妻以及人之妻（老師後來評卷時說那個同學特別具有奉獻精神，哈哈）&lt;br /&gt;12.想當年，金戈鐵馬，__________同學答：看今朝，死纏爛打（正解為「氣吞萬里如虎」）13.書到用時方恨少，__________同學答：錢到月底不夠花&lt;br /&gt;14.千山萬水總是情，___________同學答：多給一分行不行（批卷老師對了一句：情是情，分是分，多給一分都不行）&lt;br /&gt;15.五年級的一次考試就考到了「三個臭皮匠，__________」同學答：臭味都一樣（把監考和外面的校長笑翻了）&lt;br /&gt;16..高一的時候，一次月考，上句「仰天大笑出門去，（正解）我輩豈是蓬蒿人」。班上有人寫：一不小心扭到腰。笑了的話就贊一下&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-5155818098438649802?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/5155818098438649802/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=5155818098438649802' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/5155818098438649802'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/5155818098438649802'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2011/07/blog-post.html' title='讓老師瘋掉的古詩答案'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-2039455359946162738</id><published>2010-11-09T21:38:00.001+08:00</published><updated>2010-11-09T21:45:39.521+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='程式設計'/><title type='text'>幽默的代碼註解</title><content type='html'>&lt;b&gt;程序源代碼中的註釋經常是一個臥虎藏龍的地方，來看看這一輯國外某公司產品中的註釋。注意：看的時候嚴禁喝水或進食。&lt;/b&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="203" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/02.jpg" width="676" /&gt;&lt;br /&gt;親愛的代碼維護人員：&lt;br /&gt;當您嘗試優化這段代碼但發現這是一個極端錯誤的決定的時候，請修改下面的計時器，以便警示後人。&lt;br /&gt;總計浪費在這段代碼的時間 = 16小時&lt;span style="color: red;"&gt;（喂～後面那個傻逼！）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/03.jpg" /&gt;&lt;br /&gt;真的很有問題&lt;span style="color: red;"&gt;（掛了再砍掉重練）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/04.jpg" /&gt;&lt;br /&gt;謹以此代碼獻給我的妻子達琳，感謝她一直支持我，還有我三個孩子和一隻狗。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/05.jpg" /&gt;&lt;br /&gt;神奇代碼，請勿改動&lt;span style="color: red;"&gt;（誰吃飽太閒去改常數？）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/06.jpg" /&gt;&lt;br /&gt;喝醉啦，遲些再弄&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="139" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/07.jpg" width="470" /&gt;&lt;br /&gt;你可能會認為你讀得懂以下的代碼。但是你不會懂的，相信我吧。&lt;br /&gt;要是你嘗試玩弄這段代碼的話，你將會在無盡的通宵中不斷地咒罵自己為什麼會認為自己聰明到可以優化這段代碼。&lt;br /&gt;好了，現在請關閉這個文件去玩點別的吧。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/08.jpg" /&gt;&lt;br /&gt;程序員1（於2002年6月7日）：在登陸界面臨時加入一些調試代碼&lt;br /&gt;程序員2（於2007年5月22日）：臨你個屁啊&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="27" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/09.jpg" width="461" /&gt;&lt;br /&gt;反正這個辦法就修復了問題，我也不知道為什麼會這樣&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="91" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/10.jpg" width="447" /&gt;&lt;br /&gt;要理解什麼是遞歸的話，請參考本文件的底部&lt;br /&gt;（在文件的底部）&lt;br /&gt;要理解什麼是遞歸的話，請參考本文件的頂部&lt;br /&gt;&lt;span style="color: red;"&gt;（參考什麼阿？又不是 GNU is not Unix！）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/11.jpg" /&gt;&lt;br /&gt;雙龍入洞; //啊～～好痛&lt;span style="color: red;"&gt;（第一次被 2P？）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/12.jpg" /&gt;&lt;br /&gt;親愛的未來的我自己，請原諒我。&lt;br /&gt;我有著難以表達的歉意。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/13.jpg" /&gt;&lt;br /&gt;我不對以下代碼負責。&lt;br /&gt;是他們逼我寫的，是違背我意願的。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/14.jpg" /&gt;&lt;br /&gt;瘋了嗎？歡迎來到斯巴達。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="24" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/15.jpg" width="558" /&gt;&lt;br /&gt;要是你能修正這個問題的話，我會送給你兩個七十二歲的處女&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/16.jpg" /&gt;&lt;br /&gt;沒有註釋留給你，難寫的代碼必定難讀&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/17.jpg" /&gt;&lt;br /&gt;IE 瀏覽器的 Hack （在這裡先假設IE是瀏覽器）&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/18.jpg" /&gt;&lt;br /&gt;有待修正。&amp;nbsp;&amp;nbsp; 修正什麼啊？&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="23" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/19.jpg" width="570" /&gt;&lt;br /&gt;要是再讓我看到這種代碼，我會帶著槍來上班的&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/20.jpg" /&gt;&lt;br /&gt;有只龍在這裡……&lt;span style="color: red;"&gt;（內有雷區請慎入）&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/21.jpg" /&gt;&lt;br /&gt;在你閱讀以下代碼時，你要先搞懂為什麼我在這樣做。&lt;br /&gt;我想讀取一個根節點下面所有的子節點，以便控制根節點不會顯示在選擇框上。但那個傻逼的DBA找了一些某些傻逼的藉口不讓我用索引去讀取這些數據，而要求我用他們傻逼的迭代器。所以有了以下代碼。&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;img alt="" height="45" src="http://d23qmvywd7esv6.cloudfront.net/funnycomments/22.jpg" width="524" /&gt;&lt;br /&gt;當我寫這段代碼的時候，只有老天和我自己知道我在做什麼。&lt;br /&gt;現在，只剩老天知道了。&lt;br /&gt;&lt;div_prefs id="div_prefs"&gt;&lt;/div_prefs&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-2039455359946162738?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/2039455359946162738/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=2039455359946162738' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2039455359946162738'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2039455359946162738'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/11/blog-post.html' title='幽默的代碼註解'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-2668942641761882862</id><published>2010-07-29T23:14:00.001+08:00</published><updated>2010-07-29T23:21:12.185+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='程式設計'/><title type='text'>程序人生演講內容摘要 ---侯捷</title><content type='html'>&lt;p&gt;如果你不曾聽過侯捷的名字，不曾知道侯捷做的事情，你不可能有興趣走入會場。因此，各位遠道而來，我竊以為，無非想看看侯捷本人，聽聽他說話。如果你期盼在這種場合聽到某某技術的剖析，某某趨勢的發展，肯定你會失望。我不是趨勢專家，對此也毫無興趣。台上說話和台下聊天不同，我不能也不敢講我沒有心得沒有研究的話題。「程序人生」這個話題旨在讓大家對一個你感興趣的人（侯捷我）的學習歷程有些瞭解，或許從中給你一些靈感或激勵。&lt;/p&gt; &lt;p&gt;我在一個被暱稱為「少林寺」的地方，磨練三年。後半期因為發現了自己濃烈的興趣與不錯的天賦，決定轉向技術寫作與教育這條路。30歲之後的我，行事常思「貢獻度」，我知道自己在技術寫作與教育這條路上能夠走得比程式開發更好，所以決定把自己擺在最適當的位置。一口食物，放在嘴裡是佳餚，吐出來就成了穢物。天生我材必有用，每個人都應該仔細思考，自己真正的興趣和才能在哪裡。很多人都問，30歲之後做不動程序員了怎麼辦。30年正是英年，體力和智力和成熟度都正達到巔峰，怎麼會做不動程序？想往管理階層走當然很好，那就努力充實自己，並且捫心自問，你做管理快樂嗎？要知道，人事絕對比機器讓你更焦頭爛額。如果你決定爭取一個粥少僧多的職位，就不要再問「怎麼辦」。還能怎麼辦呢？就努力以赴呀！比賽還沒開始就問「輸了怎麼辦」，這不像話，你注定要輸。&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;[1] &lt;a href="http://kb.cnblogs.com/page/42112/"&gt;程序人生演講內容摘要 ---侯捷&lt;/a&gt; &lt;br&gt;[2] &lt;a href="http://kb.cnblogs.com/page/42112/2/"&gt;程序人生演講內容摘要 ---侯捷&lt;/a&gt; &lt;br&gt;[3] &lt;a href="http://kb.cnblogs.com/page/42112/3/"&gt;程序人生演講內容摘要 ---侯捷&lt;/a&gt; &lt;br&gt;[4] &lt;a href="http://kb.cnblogs.com/page/42112/4/"&gt;程序人生演講內容摘要 ---侯捷&lt;/a&gt; &lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;原址：&lt;a class="blue" href="http://kb.cnblogs.com/page/42112/"&gt;http://kb.cnblogs.com/page/42112/&lt;/a&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-2668942641761882862?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/2668942641761882862/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=2668942641761882862' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2668942641761882862'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2668942641761882862'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/07/blog-post_29.html' title='程序人生演講內容摘要 ---侯捷'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-1681512436851621038</id><published>2010-07-29T16:07:00.001+08:00</published><updated>2010-07-29T16:08:42.708+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='生活扎記'/><title type='text'>笑死人的布林代數插畫</title><content type='html'>&lt;p&gt;&lt;a href="http://lh5.ggpht.com/_lCR3unrmnM0/TFE2tnNVH0I/AAAAAAAAAJI/71H0b9FO_XY/s1600-h/image%5B9%5D.png"&gt;&lt;img style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px" title="image" border="0" alt="image" src="http://lh6.ggpht.com/_lCR3unrmnM0/TFE2uYyb42I/AAAAAAAAAJQ/KpeHtUI_3t8/image_thumb%5B7%5D.png?imgmax=800" width="500" height="413"&gt;&lt;/a&gt;&lt;/p&gt; &lt;p&gt;對學過電路基礎的人來說，以開關（Switch）來表示布林代數（Boolean Algebra ）運算非常直觀。&lt;/p&gt; &lt;p&gt;不過那些連沒有學過電路的人要怎麼讓他們了解運算方式？&lt;/p&gt; &lt;p&gt;顯然地，這則插畫不但傳神地表達出含意且相當具有幽默感！&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-1681512436851621038?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/1681512436851621038/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=1681512436851621038' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1681512436851621038'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1681512436851621038'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/07/blog-post.html' title='笑死人的布林代數插畫'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh6.ggpht.com/_lCR3unrmnM0/TFE2uYyb42I/AAAAAAAAAJQ/KpeHtUI_3t8/s72-c/image_thumb%5B7%5D.png?imgmax=800' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-1745823480514878912</id><published>2010-07-09T23:20:00.002+08:00</published><updated>2010-07-15T09:50:30.442+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='動漫文化'/><title type='text'>我的東方 Bad Apple!! 試做連發</title><content type='html'>&lt;div class="wlWriterEditableSmartContent" id="scid:5737277B-5D6D-4f48-ABFC-DD9C333F4C5D:8ab43241-2ada-4f69-b21a-a4eddc93ea5c" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;div id="b35e8efd-683f-4b66-b66f-f432b64487ea" style="display: inline; margin: 0px; padding: 0px;"&gt;&lt;div&gt;&lt;a href="http://www.youtube.com/watch?v=4CxSLY3T36s&amp;amp;feature=youtube_gdata" target="_new"&gt;&lt;img alt="" galleryimg="no" onload="var downlevelDiv = document.getElementById('b35e8efd-683f-4b66-b66f-f432b64487ea'); downlevelDiv.innerHTML = &amp;quot;&amp;lt;div&amp;gt;&amp;lt;object width=\&amp;quot;425\&amp;quot; height=\&amp;quot;355\&amp;quot;&amp;gt;&amp;lt;param name=\&amp;quot;movie\&amp;quot; value=\&amp;quot;http://www.youtube.com/v/4CxSLY3T36s&amp;amp;hl=en\&amp;quot;&amp;gt;&amp;lt;\/param&amp;gt;&amp;lt;embed src=\&amp;quot;http://www.youtube.com/v/4CxSLY3T36s&amp;amp;hl=en\&amp;quot; type=\&amp;quot;application/x-shockwave-flash\&amp;quot; width=\&amp;quot;425\&amp;quot; height=\&amp;quot;355\&amp;quot;&amp;gt;&amp;lt;\/embed&amp;gt;&amp;lt;\/object&amp;gt;&amp;lt;\/div&amp;gt;&amp;quot;;" src="http://lh5.ggpht.com/_lCR3unrmnM0/TDc-NKO5O_I/AAAAAAAAAIs/ADGDeMFEeUI/video93b1d0a0bf63%5B5%5D.jpg?imgmax=800" style="border-style: none;" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;/div&gt;&lt;br /&gt;&lt;span style="color: red;"&gt;Console 的字體解析度好小，影片太近看會很奇怪...&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;片源採用大家都耳熟能詳的影繪。&lt;br /&gt;程式採用 C# .NET + OpenCV 撰寫。&lt;/blockquote&gt;&lt;div_prefs id="div_prefs"&gt;&lt;/div_prefs&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-1745823480514878912?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/1745823480514878912/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=1745823480514878912' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1745823480514878912'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1745823480514878912'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/07/touhoubad-apple-via-c-net-opencvsharp.html' title='我的東方 Bad Apple!! 試做連發'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh5.ggpht.com/_lCR3unrmnM0/TDc-NKO5O_I/AAAAAAAAAIs/ADGDeMFEeUI/s72-c/video93b1d0a0bf63%5B5%5D.jpg?imgmax=800' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-6874201026707694336</id><published>2010-02-16T20:06:00.001+08:00</published><updated>2010-07-15T09:52:23.995+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='資安文摘'/><title type='text'>信息安全走向漫談</title><content type='html'>&lt;p&gt;&lt;font face="SimSun"&gt;來源：&lt;a href="http://hi.baidu.com/tombkeeper%20" target="_blank"&gt;&lt;font color="#0066cc" face="SimSun"&gt;http://hi.baidu.com/tombkeeper&lt;/font&gt;&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font face="SimSun"&gt;以下是2006年8月19日在B105技術沙龍演講的講稿。        &lt;br /&gt;        &lt;br /&gt;&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;信息安全走向漫談      &lt;br /&gt;      &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; 村長&amp;lt;airsupply#0x557.org&amp;gt;邀我來B105沙龍和大家閒扯。而我近來的工作是拉磨居多，接客其次，實在沒有什麼新貨。村長說：不必講技術，可以談談「信息安全的現狀和未來」。我思前想後，覺得這個題目綱領性太強，我這點資歷講起來顯然自不量力。還是改稱「信息安全走向漫談」顯得比較低調。漫談漫談，就是漫天亂談，談錯了不要緊。萬一談得對，就算蒙上了。&lt;/p&gt; &lt;/blockquote&gt;  &lt;p align="center"&gt;&lt;a href="http://hi.baidu.com/tombkeeper/blog/item/6a6e918b9223b3d4fd1f10bc.html" target="_blank"&gt;信息安全走向漫談（一）&lt;/a&gt;&lt;/p&gt;  &lt;p align="center"&gt;&lt;a href="http://hi.baidu.com/tombkeeper/blog/item/0016a1b701ac31f331add1ce.html" target="_blank"&gt;信息安全走向漫談（二）&lt;/a&gt;&lt;/p&gt;  &lt;p align="center"&gt;&lt;a href="http://hi.baidu.com/tombkeeper/blog/item/6cbed55cd1d66d44faf2c0ee.html" target="_blank"&gt;信息安全走向漫談（三）&lt;/a&gt;&lt;/p&gt;  &lt;p align="center"&gt;&lt;a href="http://hi.baidu.com/tombkeeper/blog/item/907e06ce52f74632b600c8a0.html" target="_blank"&gt;信息安全走向漫談（四）&lt;/a&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;以上四篇「漫談」是根據當時講的PPT和備註整理出來的。當時講的肯定比這些要多，不過大致的意思就這些，主要是「紅旗還能打多久」的問題。當時Vista剛剛出來，初步研究後，自己也想過「紅旗還能打多久」，所以借B105沙龍，把一些想法和大家分享了一下。      &lt;br /&gt;      &lt;br /&gt;如果僅從技術角度著眼，那麼，今天你搞不出來，就會認為紅旗要倒了；明天搞出來了，就會認為紅旗還能飄。但是從事物發展的一般規律來看，紅旗絕不會一套新技術新辦法就倒了。       &lt;br /&gt;      &lt;br /&gt;就像挖石油。剛開始油多，好挖，隨便一鍬下去就噴一身，所以區分度不明顯。後來油慢慢少了，難挖的油田也要挖，還是能挖出來。萬一有天油真挖光了，怎麼辦？別忘了，挖油以前，這把鍬是挖煤的，挖煤以前，這把鍬是挖土的。腳下油沒了，頭上還有&lt;a href="http://zh.wikipedia.org/wiki/%E6%B0%A6-3" target="_blank"&gt;&lt;font color="#0066cc"&gt;氦三&lt;/font&gt;&lt;/a&gt;。       &lt;br /&gt;      &lt;br /&gt;這是我當時的觀點，現在也還是這麼認為的。不過現在更有底氣一點。因為，今天即使從技術角度看，紅旗也還能打幾天。       &lt;br /&gt;      &lt;br /&gt;我去年在&lt;a href="http://hi.baidu.com/tombkeeper/blog/item/952b7f8193412fd2bc3e1e8d.html" target="_blank"&gt;&lt;font color="#0066cc"&gt;一篇Blog&lt;/font&gt;&lt;/a&gt;中寫過，對部分類型的漏洞來說，DEP+ALSR+SEHOP已經浮雲。後來在SSCON 2009上講《安全漏洞的下一個十年》，提了未來對抗這些的辦法大致可以分成兩類：一類很黃，一類很暴力。也給大家看了&lt;a href="http://hi.baidu.com/vessial/blog/item/962b7d1149d1d8cca6ef3f24.html" target="_blank"&gt;&lt;font color="#0066cc"&gt;一個「很黃」的PoC&lt;/font&gt;&lt;/a&gt;（謝謝vessial的整理，省得我寫了）。之所以用那個PoC，是因為它非常PoC，無害，又剛好能說明點問題。       &lt;br /&gt;      &lt;br /&gt;那天yuange在Full Disclosure上發了張圖（&lt;a href="http://seclists.org/fulldisclosure/2010/Jan/614" target="_blank"&gt;&lt;font color="#0066cc"&gt;http://seclists.org/fulldisclosure/2010/Jan/614&lt;/font&gt;&lt;/a&gt;），我沒看到那張圖，不過從留在Full Disclosure裡那行信息來看，用的可能也是「很黃」的一類辦法。不過那應該已經超越PoC的範疇了。估計也就因為這個，所以現在圖已經看不到。不過這至少可以告訴大家：紅旗還在飄。&lt;/p&gt;&lt;/blockquote&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-6874201026707694336?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/6874201026707694336/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=6874201026707694336' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6874201026707694336'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6874201026707694336'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/02/blog-post.html' title='信息安全走向漫談'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-8861635954673759765</id><published>2010-02-03T23:08:00.003+08:00</published><updated>2010-07-15T09:52:23.995+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='資安文摘'/><title type='text'>Scan of the Month 挑戰文集</title><content type='html'>"Scan of the Month Challenge"&amp;nbsp;由 &lt;a href="http://honeynet.org/"&gt;The Honeynet Project&lt;/a&gt; 所主持，對資安社群的人員來說，該計畫透過多數常見的案例研究，企圖培養分析與鑑識技能，並提昇解析攻擊流程的能力，使之將來能夠應對各種境外攻擊。&lt;br /&gt;&lt;br /&gt;&lt;span class="Apple-style-span" style="color: #333333; font-family: Verdana, Arial, Helvetica, sans-serif; font-size: 10px; line-height: 18px;"&gt;&lt;a href="http://old.honeynet.org/scans/archive.html" style="color: #ff6600; text-decoration: none;"&gt;Scans 1 - 19&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan20/" style="color: #ff6600; text-decoration: none;"&gt;Scan 20 - Solaris dtspcd attack.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan21/" style="color: #ff6600; text-decoration: none;"&gt;Scan 21 - Obfuscated UDP network sweep.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan22/" style="color: #ff6600; text-decoration: none;"&gt;Scan 22 - Determine why the Reverse Challenge attacker was breaking into systems.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan23/" style="color: #ff6600; text-decoration: none;"&gt;Scan 23 - The very first challenge for beginners, decode a network scan.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan24/" style="color: #ff6600; text-decoration: none;"&gt;Scan 24 - Recover and analyze captured evidence from a floppy.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan25/" style="color: #ff6600; text-decoration: none;"&gt;Scan 25 - Analyze a worm recovered by a Honeynet.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan26/" style="color: #ff6600; text-decoration: none;"&gt;Scan 26 - Continuation from SotM24, investigate the drug supplier Jimmy Jungle&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan27/" style="color: #ff6600; text-decoration: none;"&gt;Scan 27 - Indepth analysis of a Win2000 compromise, part of a large botnet.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan28/" style="color: #ff6600; text-decoration: none;"&gt;Scan 28 - Italian blackhats break into a Solaris server then enable IPv6 tunneling for communications.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan29/" style="color: #ff6600; text-decoration: none;"&gt;Scan 29 - One of our most unique challenges, analyze a live hacked Linux system.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan30/" style="color: #ff6600; text-decoration: none;"&gt;Scan 30 - Analyze a month of honeynet firewall logs.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan31/" style="color: #ff6600; text-decoration: none;"&gt;Scan 31 - Discover how an OpenProxy is abused.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan32/" style="color: #ff6600; text-decoration: none;"&gt;Scan 32 - Analyze a Malware binary.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan33/" style="color: #ff6600; text-decoration: none;"&gt;Scan 33 - Advanced reverse engineering challenge.&lt;/a&gt;&lt;br /&gt;&lt;a href="http://old.honeynet.org/scans/scan34/" style="color: #ff6600; text-decoration: none;"&gt;Scan 34 - Analyze real honeynet logs for attacks and activity.&lt;/a&gt;&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;來源：&lt;a href="http://old.honeynet.org/scans/index.html"&gt;http://old.honeynet.org/scans/index.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-8861635954673759765?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/8861635954673759765/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=8861635954673759765' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/8861635954673759765'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/8861635954673759765'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/02/scan-of-month.html' title='Scan of the Month 挑戰文集'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-4081585890232260586</id><published>2010-01-29T04:02:00.001+08:00</published><updated>2010-01-29T04:52:28.970+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='免責評論'/><title type='text'>這到底是不是故意貼出來炫耀的？</title><content type='html'>&lt;p&gt;以下八卦由 j4ck 大大獨家提供。&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.nosec.org/" target="_blank"&gt;NOSEC&lt;/a&gt; 官方有則來自某&lt;a href="http://d.hatena.ne.jp/naoe/20100106/p3" target="_blank"&gt;網誌&lt;/a&gt;對於 iiScan 的評價：&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/_lCR3unrmnM0/S2HtTAXOGAI/AAAAAAAAAHI/eDP-g6cKIvQ/s1600-h/iiScan_news_from_japan_at_nosec.org5.png"&gt;&lt;img style="border-right-width: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" title="iiScan_news_from_japan_at_nosec.org" border="0" alt="iiScan_news_from_japan_at_nosec.org" src="http://lh4.ggpht.com/_lCR3unrmnM0/S2HtT_YzC_I/AAAAAAAAAHM/bZK_SvxDll0/iiScan_news_from_japan_at_nosec.org_.png?imgmax=800" width="451" height="316" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;以下感謝網友智乃提供精闢的中文翻譯：&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font color="#333333"&gt;Invitation Code是必要的嗎？ 在某ML流傳著某個傢伙已經使用完了        &lt;br /&gt;因為想用看看這個工具，所以想打聽看看         &lt;br /&gt;&lt;/font&gt;&lt;font color="#ff0000"&gt;問問看的話會有怎樣嗎？ 中國製&lt;/font&gt;&lt;font color="#ff0000"&gt;的工具之類的真的很可怕嗎？&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Blog 文章的內容是某日人網友擔心中國製的都是黑心產品！&lt;/p&gt;  &lt;p&gt;難道這位使用 root 帳號登錄的網站維護人員沒注意在看嗎？&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-4081585890232260586?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/4081585890232260586/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=4081585890232260586' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/4081585890232260586'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/4081585890232260586'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/01/blog-post_29.html' title='這到底是不是故意貼出來炫耀的？'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh4.ggpht.com/_lCR3unrmnM0/S2HtT_YzC_I/AAAAAAAAAHM/bZK_SvxDll0/s72-c/iiScan_news_from_japan_at_nosec.org_.png?imgmax=800' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-7734314492965340009</id><published>2010-01-29T01:40:00.002+08:00</published><updated>2010-02-02T19:44:07.894+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='免責評論'/><title type='text'>我論漏洞挖掘的難度與態度</title><content type='html'>引用：&lt;a href="http://www.itis.tw/node/3553" target="_blank"&gt;中華電信：上週微軟漏洞 防毒軟體難偵測後門&lt;/a&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span style="color: #333333;"&gt;所謂0day漏洞便是作業系統廠商尚未推出修補程式，在這次攻擊手法中，幾乎所有版本IE瀏覽器在攻擊發生時皆受影響，且經過測試各家防毒軟體的偵測能力，&lt;span style="color: red;"&gt;大部分防毒軟體皆無法偵測該植入的後門程式&lt;/span&gt;，對於使用者的威脅指數非常巨大。&lt;/span&gt;&lt;/blockquote&gt;我想大概是因為 MS 的程式是封閉源碼的，所以只能用 Black-box 來進行 Fuzzing 的動作，這點防毒軟體實驗室實在不比坊間駭客來得有優勢（其實就是黑帽與白帽的相互較勁），加上那些大廠規定假如發現重大威脅都不能隨便公報（不能公報沒成就感阿...），因為正式的 Advisor 都有跟他們簽署 NDA（Non-Disclosure Agreement） 保密協議，我想&lt;span style="color: red;"&gt;多數人&lt;/span&gt;如果有找到弱點通常都先丟黑市賣錢吧！現在有看到 Exploit 幾乎都是被玩好幾手，玩到 Vendor 有心力 Handle 之後才會丟出來，如此以求能縮短蔓延時期的時間長度。&lt;br /&gt;迷：如果真的都有簽署 NDA 的話，我覺得應該會先自由心證（&lt;span style="color: blue;"&gt;內心的自我抗戰！&lt;/span&gt;），然後才決定是否告知 Vendor 一聲，所以把 NDA 的定義套用在這裡也似乎覺得荒謬：&lt;br /&gt;&lt;blockquote&gt;A &lt;b&gt;non-disclosure agreement&lt;/b&gt; (NDA), also known as a &lt;b&gt;confidentiality agreement&lt;/b&gt;, &lt;b&gt;confidential disclosure agreement&lt;/b&gt; (CDA), &lt;b&gt;proprietary information agreement&lt;/b&gt; (PIA), or &lt;b&gt;secrecy agreement&lt;/b&gt;, is a &lt;a href="http://en.wikipedia.org/wiki/Law" title="Law"&gt;&lt;span style="color: #0066cc;"&gt;legal&lt;/span&gt;&lt;/a&gt; &lt;a href="http://en.wikipedia.org/wiki/Contract" title="Contract"&gt;&lt;span style="color: #0066cc;"&gt;contract&lt;/span&gt;&lt;/a&gt; between at least two &lt;a href="http://en.wikipedia.org/wiki/Party_%28law%29" title="Party (law)"&gt;&lt;span style="color: #0066cc;"&gt;parties&lt;/span&gt;&lt;/a&gt; that outlines confidential material, knowledge, or information that the parties &lt;span style="color: red;"&gt;wish to share with one another for certain purposes&lt;/span&gt;, but &lt;span style="color: blue;"&gt;wish to restrict access to by third parties&lt;/span&gt;. It is a contract through which the parties agree not to disclose information covered by the agreement.&lt;/blockquote&gt;&lt;span style="color: #666666;"&gt;Vendor: You must promise DO NOT leak any information but keep it confidential.&lt;/span&gt;&lt;br /&gt;&lt;span style="color: #666666;"&gt;And then, Advisor told the third party similar word again.&lt;/span&gt;&lt;br /&gt;&lt;span style="color: #666666;"&gt;And and then, the third party applied the same policy on the fourth party.&lt;/span&gt;&lt;br /&gt;&lt;span style="color: #666666;"&gt;And*N then, ……&lt;/span&gt;&lt;br /&gt;&lt;span style="color: #666666;"&gt;Thus, the proverb goes, “Bad news has wings”.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-7734314492965340009?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/7734314492965340009/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=7734314492965340009' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/7734314492965340009'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/7734314492965340009'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/01/blog-post.html' title='我論漏洞挖掘的難度與態度'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-6745285819700571790</id><published>2010-01-29T01:25:00.001+08:00</published><updated>2010-01-29T04:48:33.697+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='免責評論'/><title type='text'>「瓜田李下」大家都聽過吧？</title><content type='html'>&lt;p&gt;引用：&lt;a href="http://www.itis.tw/node/3548" target="_blank"&gt;中國網攻Google 證據被掌握&lt;/a&gt;&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;自從Google發佈遭駭客攻擊以來，多家電腦安全公司均表示支持Google認為此舉出自中國政府的說法，不過大都無法提出有效證據，但現在情況已經有改觀；《紐約時報》週三報導，&lt;font color="#ff0000"&gt;一名美國的電腦安全研究人員，說他已經發現他相信是強有力的證據，證實被用在攻擊Google的軟體程式上，有中國程式設計師的數位指紋&lt;/font&gt;。&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;因為我對這則新聞很好奇，所以尋線找到那所謂美國安全研究人員的實驗室網誌，在該篇&lt;a href="http://www.secureworks.com/research/blog/index.php/2010/01/20/operation-aurora-clues-in-the-code/" target="_blank"&gt;分析報告&lt;/a&gt;發現以下訊息：&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;There are many different &lt;a href="http://homepages.tesco.net/rainstorm/crc-catalogue.htm" target="_blank"&gt;&lt;font color="#0066cc"&gt;CRC algorithms and implementations&lt;/font&gt;&lt;/a&gt; of those algorithms, &lt;font color="#ff0000"&gt;but this is one I had not previously seen in any of my reverse-engineering efforts.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;「只此一家，絕無分號」的 CRC 演算法實做。&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#000000"&gt;The &lt;/font&gt;&lt;a href="http://www.fjbmcu.com/chengxu/crcsuan.htm" target="_blank" tooltip="linkalert-tip"&gt;&lt;font color="#000000"&gt;full paper&lt;/font&gt;&lt;/a&gt;&lt;font color="#000000"&gt; was published in &lt;/font&gt;&lt;a href="http://en.wikipedia.org/wiki/Simplified_Chinese_characters" target="_blank" tooltip="linkalert-tip"&gt;&lt;font color="#ff0000"&gt;simplified Chinese&lt;/font&gt;&lt;/a&gt;&lt;font color="#000000"&gt;&lt;font color="#ff0000"&gt; characters&lt;/font&gt;, and all existing references and publications of &lt;font color="#ff0000"&gt;the sample source code seem to be exclusively on Chinese websites&lt;/font&gt;.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;整篇 Paper 用簡體中文寫作且只在中文網站找得到。&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#000000"&gt;This information strongly indicates the Aurora codebase originated with &lt;font color="#ff0000"&gt;someone who is comfortable reading simplified Chinese&lt;/font&gt;. Although source code itself is not restrained by any particular human language or nationality, &lt;font color="#ff0000"&gt;most programmers reuse code documented in their native language&lt;/font&gt;.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;讀中文最輕鬆的首先就懷疑是華語人士吧？&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;多數人寫程式都會用他們的母語當註解吧？&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;所以最後的結論是：&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;font color="#333333"&gt;(in light of the &lt;font color="#ff0000"&gt;harsh penalties&lt;/font&gt; we have seen handed out in communist China for other computer intrusion offenses), this creates speculation around whether the attacks could be &lt;font color="#ff0000"&gt;state-sponsored&lt;/font&gt;.&lt;/font&gt;&lt;/p&gt;    &lt;p&gt;&lt;font color="#0000ff"&gt;在稍早的幾個計算機犯罪事件中，中共當局都是嚴加處置，所以有可能是因為國家資助才造成這次的局面！&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;題外話：對岸隱藏的策略越來越先進，我還記得之前在分析的樣本發現過下面這種程式片段：&lt;/p&gt;  &lt;p&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh6.ggpht.com/_lCR3unrmnM0/S2HK1oV29tI/AAAAAAAAAGo/J4KI5XWLSmM/s1600-h/Malware_ZongCan.png"&gt;&lt;img style="border-right-width: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" title="Malware_ZongCan" border="0" alt="Malware_ZongCan" src="http://lh4.ggpht.com/_lCR3unrmnM0/S2HK1-obdPI/AAAAAAAAAGs/EgEMB1AhRxg/Malware_ZongCan_thumb.png?imgmax=800" width="464" height="62" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://lh4.ggpht.com/_lCR3unrmnM0/S2HK2TgBo7I/AAAAAAAAAGw/DURPaFyeXgI/s1600-h/Google_ZongCan%5B3%5D.png"&gt;&lt;img style="border-right-width: 0px; display: inline; border-top-width: 0px; border-bottom-width: 0px; border-left-width: 0px" title="Google_ZongCan" border="0" alt="Google_ZongCan" src="http://lh3.ggpht.com/_lCR3unrmnM0/S2HK21X-tII/AAAAAAAAAG4/G-MZfKyk2iw/Google_ZongCan_thumb%5B3%5D.png?imgmax=800" width="457" height="119" /&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;看來在＊＊單位作程式研發連資料夾的名稱都不能亂取，萬一編譯之後存在 Binary 中，事情就大條了。&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-6745285819700571790?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/6745285819700571790/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=6745285819700571790' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6745285819700571790'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6745285819700571790'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/01/google.html' title='「瓜田李下」大家都聽過吧？'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://lh4.ggpht.com/_lCR3unrmnM0/S2HK1-obdPI/AAAAAAAAAGs/EgEMB1AhRxg/s72-c/Malware_ZongCan_thumb.png?imgmax=800' height='72' width='72'/><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-184392792714002000</id><published>2010-01-29T01:07:00.001+08:00</published><updated>2010-01-29T01:09:59.439+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='資源分享'/><title type='text'>MS COFEE 工具疑似洩漏</title><content type='html'>&lt;blockquote&gt;   &lt;p&gt;Last November, the code for Microsoft's Microsoft's COFEE (Computer Online Forensic Evidence Extractor) forensics tool was leaked to the Internet. COFEE is distributed free to law enforcement agencies all over the world and used to gather digital evidence from computers that are seized in connection with criminal activity. Microsoft does not make it available to those outside the law enforcement community.      &lt;br /&gt;&lt;a href="http://www.crunchgear.com/2009/11/06/siren-gif-microsoft-cofee-law-enforcement-tool-leaks-all-over-the-internet/" target="_blank" tooltip="linkalert-tip"&gt;&lt;font color="#0066cc"&gt;http://www.crunchgear.com/2009/11/06/siren-gif-mic...ernet/&lt;/font&gt;&lt;/a&gt;       &lt;br /&gt;      &lt;br /&gt;Then in December, several sites reported on the release of software called DECAF that could detect the presence of&amp;#160; imageCOFEE&amp;#160; and delete its files and processes as well as clearing its log files. You can read more about DECAF here:       &lt;br /&gt;&lt;a href="http://www.theregister.co.uk/2009/12/14/microsoft_cofee_vs_decaf/" target="_blank" tooltip="linkalert-tip"&gt;&lt;font color="#0066cc"&gt;http://www.theregister.co.uk/2009/12/14/microsoft_...decaf/&lt;/font&gt;&lt;/a&gt;&amp;#160;&amp;#160;&amp;#160; &lt;br /&gt;      &lt;br /&gt;On December 18, that first version was pulled by its makers and it was labeled as fake. Now a new version, DECAF 2, is out there. The new version doesn't limit itself to COFEE, but also detects other forensics software including EnCase, Helix, Forensic Toolkit and more. DECAF developers say the first version did work and was removed because of legal concerns, and that they were trying to raise awareness for 「better security and more privacy tools.」       &lt;br /&gt;&lt;a href="http://www.thetechherald.com/article.php/200953/50...unched" target="_blank"&gt;&lt;font color="#0066cc"&gt;http://www.thetechherald.com/article.php/200953/50...unched&lt;/font&gt;&lt;/a&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;&lt;font color="#666666"&gt;下載資訊：&lt;a href="http://www.xun6.com/file/631805d12/COFEE-Microsoft+tools.rar.html"&gt;http://www.xun6.com/file/631805d12/COFEE-Microsoft+tools.rar.html&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-184392792714002000?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/184392792714002000/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=184392792714002000' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/184392792714002000'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/184392792714002000'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2010/01/ms-cofee.html' title='MS COFEE 工具疑似洩漏'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-1617201939824266908</id><published>2009-12-18T23:26:00.002+08:00</published><updated>2010-01-29T01:05:33.923+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='原創翻譯'/><title type='text'>X86 LINUX SHELLCODE 設計解密</title><content type='html'>&lt;div class="quote"&gt;&lt;blockquote&gt;目錄      &lt;br /&gt;&lt;br /&gt;前序 ----------------------------------------------------- 1       &lt;br /&gt;SHELLCODE 為何物？--------------------------------- 2       &lt;br /&gt;系統呼叫 ------------------------------------------------ 3       &lt;br /&gt;產生介殼程式的 SHELLCODE----------------------- 12       &lt;br /&gt;後詙 --------------------------------------------------- 19       &lt;br /&gt;銘謝 --------------------------------------------------- 19       &lt;br /&gt;文獻 --------------------------------------------------- 19&lt;br /&gt;&lt;/blockquote&gt;&lt;/div&gt;&lt;blockquote class="quote"&gt;FORE WORD      &lt;br /&gt;前序       &lt;br /&gt;&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In our previous paper, Buffer Overflows Demystified, we told you that there will be more papers on these subjects. We kept our promise. Here is the second paper from the same series. The paper is about the fundamentals of shellcode design and totally Linux 2.2 on IA-32 specific. The base principles apply to all architectures, whereas the details might obviously not.       &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;span style="color: blue;"&gt;在前文「緩衝區溢出解密」中，&lt;/span&gt;&lt;span style="color: blue;"&gt;筆者&lt;/span&gt;&lt;span style="color: blue;"&gt;保證會撰寫更多有關這個主題的文章，當前所見為此系列的第二篇。 該文有關 SHELLCODE 於 IA-32 架構中 Linux 2.2 系統核心上的基礎知識。 應用到所有架構上的基礎原理皆是如此，本文將不再次詳述那些妳本該知道的。        &lt;br /&gt;&lt;/span&gt;      &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; To understand what's going on, some C and assembly knowledge is required. Virtual Memory, some Operating Systems essentials, like, for example, how a process is laid out in memory will be helpful. You MUST know what a setuid binary is, and of course you need to be able to at least use UNIX systems. If you have an experience of gdb/cc, that is something really really good. Keep 「IA-32 Intel® Architecture Software Developer's Manual Volume 1: Basic Architecture" at hand. You can get it from &lt;a href="ftp://download.intel.com/design/Pentium4/manuals/24547008.pdf" target="_blank"&gt;&lt;span style="color: #0066cc;"&gt;here&lt;/span&gt;&lt;/a&gt;.       &lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;span style="color: blue;"&gt;想瞭解接下來要作什麼，則需要一些關於 C 與 Asm 的知識。 有關虛擬記憶體與作業系統的要點，亦同於上。舉例來說：程序如何運作於記憶體中與其實際分佈狀況。 讀者必須知道什麼是 setuid 二進制檔案，當然也必須會操作 Unix 系統。假若曾有過對於 gdb/cc 工具的使用經驗，那當然更好。 最後別忘經常關注官方手冊：「IA-32 Intel® Architecture Software Developer's Manual Volume 1: Basic Architecture」，可於下列&lt;a href="ftp://download.intel.com/design/Pentium4/manuals/24547008.pdf" target="_blank"&gt;&lt;span style="color: #0066cc;"&gt;網址&lt;/span&gt;&lt;/a&gt;獲得該手冊。&lt;/span&gt;       &lt;br /&gt;&lt;br /&gt;Recent versions of the paper can be found &lt;a href="http://www.enderunix.org/documents/en/sc-en.txt" target="_blank"&gt;&lt;span style="color: #0066cc;"&gt;here&lt;/span&gt;&lt;/a&gt;.       &lt;br /&gt;&lt;span style="color: blue;"&gt;可於下列&lt;a href="http://www.enderunix.org/documents/en/sc-en.txt" target="_blank"&gt;&lt;span style="color: #0066cc;"&gt;網址&lt;/span&gt;&lt;/a&gt;尋獲當前版本的論文。&lt;/span&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;span style="color: black;"&gt;文件下載：&lt;a href="http://www.box.net/shared/vdcfa45wck"&gt;http://www.box.net/shared/vdcfa45wck&lt;/a&gt;&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-1617201939824266908?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/1617201939824266908/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=1617201939824266908' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1617201939824266908'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/1617201939824266908'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2009/12/x86-linux-shellcode.html' title='X86 LINUX SHELLCODE 設計解密'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-706864158531666609</id><published>2009-12-17T23:37:00.000+08:00</published><updated>2009-12-18T23:37:28.394+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='原創翻譯'/><title type='text'>WINDOWS 中的 SHELLCODE 定位與緩衝區溢出</title><content type='html'>&lt;div class="quote"&gt;   &lt;blockquote&gt;目錄      &lt;br /&gt;      &lt;br /&gt;介紹 ------------------------------------------- 01       &lt;br /&gt;SHELLCODE 基礎 --------------------------- 03       &lt;br /&gt;一個有弱點的 C 程式 ------------------------ 05       &lt;br /&gt;手法一 ---------------------------------------- 06       &lt;br /&gt;手法二 ---------------------------------------- 08       &lt;br /&gt;手法三 ---------------------------------------- 11       &lt;br /&gt;結論 ------------------------------------------- 14       &lt;br /&gt;銘謝 ------------------------------------------- 14&lt;/blockquote&gt; &lt;/div&gt;  &lt;blockquote class="quote"&gt;   &lt;p&gt;Introduction      &lt;br /&gt;介紹       &lt;br /&gt;      &lt;br /&gt;This is not just another paper describing basics of buffer overflows. There are lots of publications about this topic; therefore it does not make any sense to describe it again. If you are familiar with exploiting buffer overflows on &lt;span class="t_tag" onclick="tagshow(event)" href="http://www.phate.tw/tag.php?name=Windows"&gt;Windows&lt;/span&gt; platform, do not think that &lt;u&gt;this article has&lt;/u&gt; nothing to offer you &lt;font color="#ff0000"&gt;in this article&lt;/font&gt;. It shows some interesting methods, which can be used during writing an exploit (for example: where to put &lt;span class="t_tag" onclick="tagshow(event)" href="http://www.phate.tw/tag.php?name=shellcode"&gt;shellcode&lt;/span&gt; when stack is non-executable). Basic knowledge of &lt;span class="t_tag" onclick="tagshow(event)" href="http://www.phate.tw/tag.php?name=x86"&gt;x86&lt;/span&gt; processors, Assembly and C languages and buffer overflows exploitation are required.       &lt;br /&gt;&lt;font color="#0000ff"&gt;這並非另一篇描述溢出基礎的文章。 對於這個課題已存在眾多公開文件；因此該處沒必要老調重彈。 假如熟悉 Windows 平台下溢出技術的人，也別認為該文對妳毫無助益。文中將示範於撰寫攻擊程式（exploit）期間數種會被使用的有趣手法（例如：當堆疊不可執行代碼時，應放置 Shellcode 之處）。 至於對 x86 微處理器、組合語言、C 語言與緩衝溢出原理的認知為最低需求。&lt;/font&gt;       &lt;br /&gt;      &lt;br /&gt;&lt;font color="#ff0000"&gt;Acquiring&lt;/font&gt; the ability to overflow a buffer on the stack&lt;u&gt;, gives us&lt;/u&gt; through &lt;u&gt;the&lt;/u&gt; obtaining full control over the EIP register of x86 Processor. Yep!!! This is great!!! We can load this register with &lt;font color="#ff0000"&gt;arbitrary address&lt;/font&gt; &lt;u&gt;every address we want&lt;/u&gt; , and then force a vulnerable program to jump &lt;u&gt;there and to&lt;/u&gt; and execute code &lt;u&gt;that is&lt;/u&gt; at that address.       &lt;br /&gt;&lt;font color="#0000ff"&gt;透過完全掌握 x86 微處理機中的 EIP 暫存器，就有進行堆疊溢出的能力。 吔∼這很棒！ 我們可以載入任意位址的內容到記憶體中，然後強迫有弱點的程式碼跳躍至該位址執行構造的代碼。&lt;/font&gt;       &lt;br /&gt;      &lt;br /&gt;&lt;font color="#ff0000"&gt;Theoretically, we could implement in which aforementioned. But&lt;/font&gt; the problem occurred when we want to execute the code, in which &lt;u&gt;WE want to be executed and not the code, which&lt;/u&gt; &lt;font color="#ff0000"&gt;we desired&lt;/font&gt; is not &lt;font color="#ff0000"&gt;actual&lt;/font&gt; in the memory. To achieve it, we have got to place OUR code in the memory of process we are attacked. This code is known as shellcode and it consists of a set of instructions for processor, additionally encoded in their hex values.       &lt;br /&gt;&lt;font color="#0000ff"&gt;理論上可以實現上文所提及的方法，但是問題發生於當我們要執行的代碼並非眞得存在記憶體中。 想逆轉致勝，就得把構造的代碼放入欲攻擊行程的記憶體中。 該代碼稱作 shellcode 其中包含一組微處理器的指令集，此外以十六進制編碼表示。        &lt;br /&gt;&lt;/font&gt;      &lt;br /&gt;In this paper, I will discuss three possible locations in memory, where we can put our shellcode and then, how to force the vulnerable application to execute it. During this tutorial we will be using two shellcodes&lt;u&gt;, of&lt;/u&gt; &lt;font color="#ff0000"&gt;which are&lt;/font&gt; different size&lt;font color="#ff0000"&gt;s&lt;/font&gt;.       &lt;br /&gt;&lt;font color="#0000ff"&gt;於該篇章中，筆者將探討三種可能放置 shellcode 的記憶體位置，然後強迫有弱點的應用程式去執行。 於本次教學，筆者將使用兩個大小相異的 shellcode 程式碼。&lt;/font&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p class="quote"&gt;&lt;font color="#0000ff"&gt;NOTE: Please,excuse my poor English, it's not my mother language.      &lt;br /&gt;&lt;font color="#ff0000"&gt;作者：英文非我母語，請原諒我的爛文法與拼錯字。&lt;/font&gt;       &lt;br /&gt;      &lt;br /&gt;&lt;font color="#ff0000"&gt;譯者：於非母語人士的前提之下，該文作者的寫作功力，實在令小弟非常「吐血」，該文充斥不少容易讓人誤解的地方：冗餘修辭、文法誤用與拼字錯誤，幸好我堅持到最後，才有這篇翻譯！&lt;/font&gt;       &lt;br /&gt;      &lt;br /&gt;&lt;font color="#ff0000"&gt;小抱怨：There are tons of abusive and redundant words in this article which I almost couldn't bear.-_-|||&lt;/font&gt;       &lt;br /&gt;      &lt;br /&gt;&lt;font color="#ff0000"&gt;P.S.&lt;/font&gt; 本翻譯中刪除線（&lt;u&gt;黑色底線&lt;/u&gt;）為譯者屏棄，而&lt;font color="#ff0000"&gt;紅色部份&lt;/font&gt;為譯者修正，以利對翻譯內容行交互參考。&lt;/font&gt;&lt;/p&gt;  &lt;p class="quote"&gt;&lt;font color="#000000"&gt;文件下載：&lt;a href="http://www.box.net/shared/bbe8sl8a7d"&gt;http://www.box.net/shared/bbe8sl8a7d&lt;/a&gt;&lt;/font&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-706864158531666609?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/706864158531666609/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=706864158531666609' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/706864158531666609'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/706864158531666609'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2009/12/windows-shellcode.html' title='WINDOWS 中的 SHELLCODE 定位與緩衝區溢出'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-373700850618313643</id><published>2006-07-19T01:58:00.000+08:00</published><updated>2009-12-18T20:40:17.524+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='文章封存'/><title type='text'>刑法第 36 章條文</title><content type='html'>第 三六 章 妨害電腦使用罪 &lt;br /&gt;第 358 條 無故輸入他人帳號密碼、破解使用電腦之保護措施或利用電腦系統之漏洞，而入侵他人之電腦或其相關設備者，處三年以下有期徒刑、拘役或科或併科十萬元以下罰金。 &lt;br /&gt;第 359 條 無故取得、刪除或變更他人電腦或其相關設備之電磁紀錄，致生損害於公眾或他人者，處五年以下有期徒刑、拘役或科或併科二十萬元以下罰金。 &lt;br /&gt;第 360 條 無故以電腦程式或其他電磁方式干擾他人電腦或其相關設備，致生損害於公眾或他人者，處三年以下有期徒刑、拘役或科或併科十萬元以下罰金。 &lt;br /&gt;第 361 條 對於公務機關之電腦或其相關設備犯前三條之罪者，加重其刑至二分之一。 &lt;br /&gt;第 362 條 製作專供犯本章之罪之電腦程式，而供自己或他人犯本章之罪，致生損害於公眾或他人者，處五年以下有期徒刑、拘役或科或併科二十萬元以下罰金。 &lt;br /&gt;第 363 條 第三百五十八條至第三百六十條之罪，須告訴乃論。 &lt;br /&gt;Original Url: &lt;a href="http://law.moj.gov.tw/Scripts/Query4B.asp?FullDoc=%E6%89%80%E6%9C%89%E6%A2%9D%E6%96%87&amp;amp;Lcode=C0000001" target="'_blank"&gt;http://law.moj.gov.tw/Scripts/Query4B.asp?FullDoc=所有條文&amp;amp;Lcode=C0000001&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-373700850618313643?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/373700850618313643/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=373700850618313643' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/373700850618313643'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/373700850618313643'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2006/07/law-known-36.html' title='刑法第 36 章條文'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-824500213163798184</id><published>2006-07-15T17:16:00.000+08:00</published><updated>2009-12-18T20:40:29.875+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='文章封存'/><title type='text'>評等「剽竊」的境界！</title><content type='html'>Pschool Huang：&lt;br /&gt;抄襲論文的境界：&lt;br /&gt;「抄襲」是整篇拿來抄。&lt;br /&gt;「引用」是整段拿來抄。&lt;br /&gt;「參考」是整句拿來抄。&lt;br /&gt;「改寫」是整篇拿來改。&lt;br /&gt;「模仿」是整段拿來改。&lt;br /&gt;&lt;br /&gt;抄襲程式碼的境界：&lt;br /&gt;「抄襲」是剪下貼上。&lt;br /&gt;「引用」是拼拼湊湊。&lt;br /&gt;「參考」是沿用方法。&lt;br /&gt;「改寫」是更改變數。&lt;br /&gt;「模仿」是拷貝結構。&lt;br /&gt;&lt;br /&gt;PinLunLiao：&lt;br /&gt;「原創」必經的過程：「抄」、「偷」、「拷」、「貼」、「改」。&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-824500213163798184?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/824500213163798184/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=824500213163798184' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/824500213163798184'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/824500213163798184'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2006/07/msn-543.html' title='評等「剽竊」的境界！'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-2284014941240657541</id><published>2006-07-02T01:12:00.000+08:00</published><updated>2009-12-18T20:40:41.799+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='文章封存'/><title type='text'>虛擬都不鍵盤！</title><content type='html'>&lt;a href="http://photos1.blogger.com/blogger/5983/3228/1600/VR_Keyboard.png"&gt;&lt;img alt="" border="0" src="http://photos1.blogger.com/blogger/5983/3228/320/VR_Keyboard.png" style="display: block; margin: 0px auto 10px; text-align: center;" tooltip="linkalert-tip" /&gt;&lt;/a&gt;&lt;br /&gt;Kuon 大哥說：「其實利用光線虛擬出來的鍵盤位置輸入到電腦之後還是會被轉成可捕捉的Keystroke！」&lt;br /&gt;所以在此修改我寫錯的部分，另外我把 IrAD 誤植成 IrDA！&lt;br /&gt;重點在於，以上報導提到的兩個「虛擬鍵盤」根本是不一樣的東西！&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-2284014941240657541?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/2284014941240657541/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=2284014941240657541' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2284014941240657541'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/2284014941240657541'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2006/07/k-espisode.html' title='虛擬都不鍵盤！'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-3132662773617693854</id><published>2006-06-30T20:59:00.000+08:00</published><updated>2009-12-18T20:40:56.951+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='文章封存'/><title type='text'>開車請戴安全帽！</title><content type='html'>&lt;div align="center"&gt;&lt;a href="http://photos1.blogger.com/blogger/5983/3228/1600/Traf_Rule.png" tooltip="linkalert-tip"&gt;&lt;img alt="" border="0" src="http://photos1.blogger.com/blogger/5983/3228/320/Traf_Rule.png" style="margin: 0px 10px 10px 0px;" tooltip="linkalert-tip" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/div&gt;圖中說汽車駕駛人與乘客必須要配戴安全帽？&lt;br /&gt;箇中緣故有可能是把「機車」誤植成「汽車」！&lt;br /&gt;有人會問為什麼經過兩年還沒修正呢？&lt;br /&gt;我想這樣才不愧為台灣的行政機關吧？&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-3132662773617693854?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/3132662773617693854/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=3132662773617693854' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/3132662773617693854'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/3132662773617693854'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2006/06/k-episode.html' title='開車請戴安全帽！'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-6645314309396063482.post-6135279824679236383</id><published>2006-06-29T14:55:00.000+08:00</published><updated>2009-12-18T20:41:09.972+08:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='文章封存'/><title type='text'>程式設計之道</title><content type='html'>THE DAO OF PROGRAMMING&lt;br /&gt;&lt;br /&gt;程式設計之道 冼鏡光 Geoffrey James&lt;br /&gt;&lt;br /&gt;微電腦時代96,97&lt;br /&gt;&lt;br /&gt;第一部 寂靜虛無篇&lt;br /&gt;大師如是說:"學會從程式抓蟲子之後, 就可以畢業了&lt;br /&gt;1.1 節&lt;br /&gt;.寂靜虛無中有奧秘, 不動不靜, 乃程式之源,&lt;br /&gt;吾無以名之, 故稱之為程式設計之道.&lt;br /&gt;.若道至大, 則作業系統至大; 若作業系統至大,&lt;br /&gt;編譯程式亦然; 若編譯程式至大,&lt;br /&gt;則應用程式亦復如是, 是故使用人大悅, 世有和諧存焉.&lt;br /&gt;&lt;br /&gt;Click Here For Full Editon - &lt;a href="http://mis.ndhu.edu.tw/docu/The_DAO_of_programming.htm" target="_blank"&gt;THE DAO OF PROGRAMMING&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;strong&gt;家科說：&lt;/strong&gt;因為不能寫攻擊手法，所以只好努力寫好每個八卦！&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6645314309396063482-6135279824679236383?l=tek-note.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://tek-note.blogspot.com/feeds/6135279824679236383/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=6645314309396063482&amp;postID=6135279824679236383' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6135279824679236383'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/6645314309396063482/posts/default/6135279824679236383'/><link rel='alternate' type='text/html' href='http://tek-note.blogspot.com/2006/06/e-digest.html' title='程式設計之道'/><author><name>CK</name><uri>http://www.blogger.com/profile/12816363361096671228</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='32' height='32' src='http://4.bp.blogspot.com/_lCR3unrmnM0/SyJBnH87_0I/AAAAAAAAAEs/JRyT4g6crI4/S220/CKH_Logo.jpg'/></author><thr:total>3</thr:total></entry></feed>
