<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>安全 on 海风自语 · 技术与教育笔记</title><link>https://www.szlanmin.com/tags/%E5%AE%89%E5%85%A8/</link><description>Recent content in 安全 on 海风自语 · 技术与教育笔记</description><generator>Hugo</generator><language>zh-CN</language><lastBuildDate>Mon, 21 Sep 2026 07:30:00 +0800</lastBuildDate><atom:link href="https://www.szlanmin.com/tags/%E5%AE%89%E5%85%A8/index.xml" rel="self" type="application/rss+xml"/><item><title>Plugin4Shell 漏洞：钉住的是请求，不是运行的代码</title><link>https://www.szlanmin.com/tech/ai/plugin-sha-pinning-bypass/</link><pubDate>Mon, 21 Sep 2026 07:30:00 +0800</pubDate><guid>https://www.szlanmin.com/tech/ai/plugin-sha-pinning-bypass/</guid><description>Plugin4Shell 让四款主流编码 agent 的插件哈希钉定机制失效：它们按市场钉住的 commit 拉取，却从不校验工作区实际落地的是不是那个 commit。审查通过、日志正常，跑起来的是攻击者的代码。同周 Safari 27 内置 MCP server、playwright-mcp 把网页工具提升为 agent 工具，暴露的是同一个形状的缺口。</description></item></channel></rss>