SQL:
sql注入_百度百科http://baike.baidu.com/view/3896.htm(包含注入方法)
sql注入原理讲解http://blog.csdn.net/stilling2006/article/details/8526458
sql注入攻击过程http://blog.jobbole.com/83092/
SQL注入全过程实况转播http://www.cnblogs.com/hkncd/archive/2012/03/31/2426274.html
php sql注入http://php.net/manual/zh/security.database.sql-injection.php
上传:
上传漏洞利用方法www.qxzxp.com/3761.html
XSS
netsecurity.51cto.com/art/201408/448305_all.htm
www.cnblogs.com/TankXiao/archive/2012/03/21/2337194.html
http://983836259.blog.51cto.com/7311475/1623146
一句话木马
www.arkteam.net/?p=48
来源:oschina
链接:https://my.oschina.net/u/2403163/blog/529621