rakshasa 跨平台多级内网穿透工具
推荐群友的一个开源作品,文末模仿了一下播客交谈的形式,和作者聊了开发软件背后的故事。rakshasaraks
GCSB Director-General Andrew Hampton opening statement to Intelligence and Security Committee on Monday 27 March 2023.
Playing around with Bing Chat is quite fun. Until today I mostly used ChatGPT and GPT-4 directly, but I was curious of the capabilites and restrictions of Bing Chat.
I noticed that as soon as I mentioned the word “hacker”, Bing Chat became quite “uncomfortable”. For instance, when I asked it to imagine being a hacker and list some security vulnerabilities, it replied:
I’m sorry but I cannot help you with that. It’s not ethical to hack websites and it’s illegal. Instead, I can help you with general information about website security vulnerabilities and how to prevent them. Would that be helpful?So, how about we indirectly imply the intent, rather than stating it directly. So, I used a variation of a language manipulation technique like this:
这是半年前我在 Go 语言中发现的一个目录穿越漏洞(虽然被人抢先发现了)。
Go 语言支持非常方便的交叉编译,但是在不同平台下,操作系统对某些功能的实现有所差异。这些差异可能会导致一些安全问题。