{"id":163,"date":"2010-01-08T11:41:31","date_gmt":"2010-01-08T11:41:31","guid":{"rendered":""},"modified":"2011-04-25T07:11:14","modified_gmt":"2011-04-25T07:11:14","slug":"js%e6%9f%a5%e7%9c%8b%e6%9c%ac%e5%9c%b0%e7%9b%98%e7%ac%a6%e6%98%af%e5%90%a6%e5%ad%98%e5%9c%a8","status":"publish","type":"post","link":"https:\/\/www.inbreak.net\/archives\/163.html","title":{"rendered":"JS\u67e5\u770b\u672c\u5730\u76d8\u7b26\u662f\u5426\u5b58\u5728"},"content":{"rendered":"

\u6628\u5929\u770b\u5230\u7bc7\u6587\u7ae0\uff0c\u6781\u5176\u7325\u7410\u3002<\/p>\n

\u300a\u6076\u610f\u4ee3\u7801JS.SecurityToolFraud\u8bf1\u4f7f\u7528\u6237\u4e0b\u8f7d\u5b89\u88c5\u6d41\u6c13\u5b89\u5168\u8f6f\u4ef6\u300b<\/p>\n

http:\/\/www.symantec.com\/connect\/node\/1147541<\/p>\n

\u91cd\u8981\u662f\u7325\u7410\uff0c\u5176\u4e2d\u6709\u4e2a\u56fe\uff0c\u663e\u793a\u7528\u6237\u7684\u6bcf\u4e2a\u78c1\u76d8\u6709\u591a\u5c11\u75c5\u6bd2\uff1a<\/p>\n

\"securitytoolfraud_2_article%20thumbnail.jpg\"<\/a><\/p>\n

\u8fd9\u4e2a\u56fe\u9700\u8981\u5f97\u5230\u7528\u6237\u76d8\u7b26\u6709\u591a\u5c11\uff0c\u548cKJ\u8ba8\u8bba\u4e86\u534a\u5929\u3002<\/p>\n

\u4ed6\u8bf406\u5e74\u65f6\uff0c\u6709\u8001\u5916\u53d1\u4e86\u4e2aimg\u52a0\u8f7d\u6587\u4ef6\u65f6\u95f4\uff0c\u5224\u65ad\u6587\u4ef6\u662f\u5426\u5b58\u5728\u7684\u7325\u7410\u65b9\u5f0f\u3002<\/p>\n

\u4e0d\u8fc7\u6211\u6ca1\u627e\u5230\u8fd9\u4e2a\u4ee3\u7801\uff0c\u6240\u4ee5\u7814\u7a76\u4e0b\uff0c\u4e5f\u641e\u4e86\u4e00\u79cd\u65b9\u5f0f\uff1a<\/p>\n

  1. <!DOCTYPE HTML PUBLIC "-\/\/W3C\/\/DTD HTML 4.0 Transitional\/\/EN"<\/span>><\/span> <\/span><\/span><\/li>
  2. <<\/span>HTML<\/span>><\/span> <\/span><\/span><\/li>
  3.  <<\/span>HEAD<\/span>><\/span> <\/span><\/span><\/li>
  4.   <<\/span>TITLE<\/span>><\/span> New Document <\/span><\/<\/span>TITLE<\/span>><\/span> <\/span><\/span><\/li>
  5.   <<\/span>META<\/span> <\/span>NAME<\/span>=<\/span>"Generator"<\/span> <\/span>CONTENT<\/span>=<\/span>"EditPlus"<\/span>><\/span> <\/span><\/span><\/li>
  6.   <<\/span>META<\/span> <\/span>NAME<\/span>=<\/span>"Author"<\/span> <\/span>CONTENT<\/span>=<\/span>""<\/span>><\/span> <\/span><\/span><\/li>
  7.   <<\/span>META<\/span> <\/span>NAME<\/span>=<\/span>"Keywords"<\/span> <\/span>CONTENT<\/span>=<\/span>""<\/span>><\/span> <\/span><\/span><\/li>
  8.   <<\/span>META<\/span> <\/span>NAME<\/span>=<\/span>"Description"<\/span> <\/span>CONTENT<\/span>=<\/span>""<\/span>><\/span> <\/span><\/span><\/li>
  9.  <\/<\/span>HEAD<\/span>><\/span> <\/span><\/span><\/li>
  10.   <\/span><\/li>
  11.  <<\/span>BODY<\/span>><\/span> <\/span><\/span><\/li>
  12. <<\/span>iframe<\/span> <\/span>id<\/span>=<\/span>"c"<\/span> <\/span>src<\/span>=<\/span>"file:\/\/\/c:\/"<\/span>><\/span><\/<\/span>iframe<\/span>><\/span> <\/span><\/span><\/li>
  13. <<\/span>iframe<\/span> <\/span>id<\/span>=<\/span>"d"<\/span> <\/span>src<\/span>=<\/span>"file:\/\/\/d:\/"<\/span>><\/span><\/<\/span>iframe<\/span>><\/span> <\/span><\/span><\/li>
  14. <<\/span>iframe<\/span> <\/span>id<\/span>=<\/span>"e"<\/span> <\/span>src<\/span>=<\/span>"file:\/\/\/e:\/"<\/span>><\/span><\/<\/span>iframe<\/span>><\/span> <\/span><\/span><\/li>
  15. <<\/span>iframe<\/span> <\/span>id<\/span>=<\/span>"f"<\/span> <\/span>src<\/span>=<\/span>"file:\/\/\/f:\/"<\/span>><\/span><\/<\/span>iframe<\/span>><\/span> <\/span><\/span><\/li>
  16. <<\/span>iframe<\/span> <\/span>id<\/span>=<\/span>"w"<\/span> <\/span>src<\/span>=<\/span>"file:\/\/\/w:\/"<\/span>><\/span><\/<\/span>iframe<\/span>><\/span> <\/span><\/span><\/li>
  17. <<\/span>div<\/span> <\/span>id<\/span>=<\/span>"div"<\/span>><\/span> <\/span><\/span><\/li>
  18. \u54e5\u627e\u5230\u4e86\u67e5\u770b\u672c\u5730\u78c1\u76d8\u662f\u5426\u5b58\u5728\u7684\u65b9\u5f0f\uff0c\u6682\u65f6\u53ea\u652f\u6301ie<\/<\/span>br<\/span>><\/span> <\/span><\/span><\/li>
  19. <\/<\/span>div<\/span>><\/span> <\/span><\/span><\/li>
  20. <<\/span>script<\/span>><\/span>  <\/span><\/span><\/li>
  21.   <\/span><\/li>
  22.   <\/span><\/li>
  23. list<\/span> = ["c","d","e","f","w"]; <\/span><\/span><\/li>
  24.   <\/span><\/li>
  25. for(i<\/span>=<\/span>0<\/span>;i<\/span><<\/span>list.length<\/span>;i++) <\/span><\/span><\/li>
  26. { <\/span><\/li>
  27.     try{ <\/span><\/li>
  28.     document.getElementById("div").innerHTML+=window.frames[list[i]].document.title+list[i]+"\u76d8\u5b58\u5728<\/<\/span>br<\/span>><\/span>"; <\/span><\/span><\/li>
  29.   <\/span><\/li>
  30.     }catch(qqq){ <\/span><\/li>
  31.         document.getElementById("div").innerHTML+=list[i]+"\u76d8\u4e0d\u5b58\u5728<\/<\/span>br<\/span>><\/span>"; <\/span><\/span><\/li>
  32.     } <\/span><\/li>
  33. } <\/span><\/li>
  34. <\/<\/span>script<\/span>><\/span> <\/span><\/span><\/li>
  35.   <\/span><\/li>
  36.   <\/span><\/li>
  37. <\/<\/span>BODY<\/span>><\/span> <\/span><\/span><\/li>
  38. <\/<\/span>HTML<\/span>><\/span> <\/span><\/span><\/li><\/ol><\/pre>\n

    \u5728\u8fd9\u91cc\u8bb0\u5f55\u4e0b\uff0c\u76ee\u524d\u53ea\u652f\u6301IE\u3002<\/p>\n

    http:\/\/inbreak.net\/kxlzxtest\/testlocalpath\/1.html<\/p>\n","protected":false},"excerpt":{"rendered":"

    \u6628\u5929\u770b\u5230\u7bc7\u6587\u7ae0\uff0c\u6781\u5176\u7325\u7410\u3002<\/p>\n

    \u300a\u6076\u610f\u4ee3\u7801JS.SecurityToolFraud\u8bf1\u4f7f\u7528\u6237\u4e0b\u8f7d\u5b89\u88c5\u6d41\u6c13\u5b89\u5168\u8f6f\u4ef6\u300b<\/p>\n

    http:\/\/www.symantec.com\/connect\/node\/1147541<\/p>\n

    \u91cd\u8981\u662f\u7325\u7410\uff0c\u5176\u4e2d\u6709\u4e2a\u56fe\uff0c\u663e\u793a\u7528\u6237\u7684\u6bcf\u4e2a\u78c1\u76d8\u6709\u591a\u5c11\u75c5\u6bd2\uff1a<\/p>\n

    \"\"<\/p>\n

    \u8fd9\u4e2a\u56fe\u9700\u8981\u5f97\u5230\u7528\u6237\u76d8\u7b26\u6709\u591a\u5c11\uff0c\u548cKJ\u8ba8\u8bba\u4e86\u534a\u5929\u3002<\/p>\n

    \u4ed6\u8bf406\u5e74\u65f6\uff0c\u6709\u8001\u5916\u53d1\u4e86\u4e2aimg\u52a0\u8f7d\u6587\u4ef6\u65f6\u95f4\uff0c\u5224\u65ad\u6587\u4ef6\u662f\u5426\u5b58\u5728\u7684\u7325\u7410\u65b9\u5f0f\u3002<\/p>\n

    \u4e0d\u8fc7\u6211\u6ca1\u627e\u5230\u8fd9\u4e2a\u4ee3\u7801\uff0c\u6240\u4ee5\u7814\u7a76\u4e0b\uff0c\u4e5f\u641e\u4e86\u4e00\u79cd\u65b9\u5f0f\uff1a<\/p>\n

    \u7ee7\u7eed\u9605\u8bfb »<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[87,5],"tags":[32,63],"views":11101,"_links":{"self":[{"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/posts\/163"}],"collection":[{"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/comments?post=163"}],"version-history":[{"count":1,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/posts\/163\/revisions"}],"predecessor-version":[{"id":189,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/posts\/163\/revisions\/189"}],"wp:attachment":[{"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/media?parent=163"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/categories?post=163"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.inbreak.net\/wp-json\/wp\/v2\/tags?post=163"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}