摘要: PHP's unserialize() function In a nutshell, PHP's unserialize() function takes a string(representing a serialized object) and converts it back to a PH 阅读全文
posted @ 2021-02-03 14:49 咕咕鸟GGA 阅读(217) 评论(0) 推荐(0) 编辑
摘要: What is insecure deserialization? To understand insecure deserialization, we must first understand what serialization is and how it is used in applica 阅读全文
posted @ 2021-02-03 09:40 咕咕鸟GGA 阅读(117) 评论(0) 推荐(0) 编辑
摘要: Description Apache Shiro is a powerful and easy-to-use Java security framework that performs authentication, authorization, cryptography, and session 阅读全文
posted @ 2021-02-03 09:01 咕咕鸟GGA 阅读(256) 评论(0) 推荐(0) 编辑