参考链接 ======================================== Bypass ---------------------------------------- - `php open basedir bypass `_ - `open basedir bypass `_ - `Bypass Disable functions Shell `_ Tricks ---------------------------------------- - `php wrappers `_ - `反序列化之PHP原生类的利用 `_ - `php解密的数种方法 `_ - `Surprising CTF task solution using php://filter `_ - `主机安全 洋葱Webshell检测实践与思考 `_ WebShell ---------------------------------------- - `PHP htaccess inject `_ - `php木马加密 `_ - `PHP WebShell变形技术总结 `_ - `一些不包含数字和字母的webshell `_ - `PHP Webshell那些事-攻击篇 `_ Phar ---------------------------------------- - `US Black Hat 2018 Phar `_ - `利用 phar 拓展 php 反序列化漏洞攻击面 `_ - `Phar与Stream Wrapper造成PHP RCE的深入挖掘 `_ 运行 ---------------------------------------- - `Learning the PHP lifecycle `_ - `PHP7内核剖析 `_ Blog ---------------------------------------- - `How we broke PHP `_