<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0"><channel><title>RASP | baozongwi's blog</title><link>https://baozongwi.xyz/tags/rasp/</link><description>Currently exploring Java security and internal network penetration, with CTFs as a hobby.</description><generator>Hugo</generator><language>zh-cn</language><item><title>QWNT Final 2025</title><link>https://baozongwi.xyz/p/qwnt-final-2025/</link><pubDate>Sat, 29 Nov 2025 13:53:16 +0800</pubDate><guid>https://baozongwi.xyz/p/qwnt-final-2025/</guid><description>第一没了😅，最后第三，感谢紫金山实验室，小包从来没见过这么多奖金😋。 有些 CS 尬黑 SU，做的快招你惹你了，你咋这么贱呢🙄🙄 Wuwa 审计代码, 附件中 jwtKey 为 default_jwt_key, 远程并不是，看到外面有个 jwt 鉴权，内部有个 TCP 链接，初步思路是越权到任意文件读取 发现有一处代码 …</description></item></channel></rss>