• 专注软件测试培训
  • 践行良心教育
  • 铺就职业坦途

400-888-9073

Web安全测试核心场景全解析:从SQL注入到缓冲区溢出的攻防指南

来源:上海博为峰it 时间:04-29

Web安全测试核心场景全解析:从SQL注入到缓冲区溢出的攻防指南

SQL注入:数据安全的隐形突破口

在Web安全测试领域,SQL注入是代表性的攻击手段之一。攻击者通过构造特殊的输入字符串,将非法SQL命令嵌入用户请求中,诱导数据库执行非预期操作。这种攻击方式之所以频发,源于许多Web应用在处理用户输入时未做严格过滤,给了恶意代码渗透的机会。

常见的SQL注入手法主要分为两类:其一为猜测法,攻击者通过试探数据库表名、列名的组合,逐步拼凑出可获取敏感数据的查询语句。例如在登录界面输入"1' OR '1'='1",若系统未过滤单引号,就可能绕过密码验证。其二是屏蔽法,利用SQL逻辑验证的漏洞,通过添加"--"等注释符使后续代码失效,从而让验证条件恒真。某电商平台曾因未处理用户输入的注释符,导致后台订单数据被批量窃取,正是典型案例。

防御SQL注入需从代码层入手:严格使用预编译语句(Prepared Statement)绑定参数,避免直接拼接用户输入;对特殊字符(如单引号、分号)进行转义处理;限制数据库账户权限,仅开放必要的查询功能。某金融机构通过升级ORM框架,强制使用参数化查询后,SQL注入攻击事件下降90%以上,验证了防护措施的有效性。

XSS攻击:用户端的代码执行陷阱

跨站脚本攻击(XSS)的核心是诱导Web应用输出可执行代码。当用户访问被注入恶意脚本的页面时,浏览器会无差别执行这些代码,导致Cookie窃取、页面篡改甚至钓鱼攻击等后果。根据攻击代码的存储方式,XSS可分为反射型与存储型两大类。

反射型XSS(非持久型)的攻击代码不会存储在服务器端,而是通过诱导用户点击包含恶意参数的链接触发。例如攻击者伪造一个"领取优惠券"的URL,其中嵌入"",用户点击后若未做输入过滤,浏览器会执行该脚本并弹出Cookie信息。这类攻击依赖用户主动操作,危害范围相对可控。

存储型XSS(持久型)的威胁更大,攻击代码会被存储在数据库中,所有访问该页面的用户都会触发。某论坛曾因未过滤用户发帖内容,导致攻击者插入的恶意脚本长期存在,每天约有2000名用户的会话信息被窃取。其根源在于开发者未对输入的HTML标签、JavaScript代码进行转义,或未限制输入内容的类型和长度。

防护XSS需遵循"输出编码"原则:对用户输入的HTML、JS、CSS内容进行转义(如将"<"转为"<");使用CSP(内容安全策略)限制外部脚本的加载来源;对敏感操作启用二次验证,降低Cookie被盗用后的损失。某社交平台通过部署CSP策略,配合输入输出双重过滤,XSS攻击拦截率提升至98%。

CSRF:信任关系的恶意利用

跨站请求伪造(CSRF)是一种利用用户信任关系的攻击方式。攻击者通过诱导用户访问恶意网站,伪造用户在可信网站上的操作请求(如转账、修改密码)。由于请求携带了用户的Cookie等身份凭证,可信网站会误认为是用户本人操作,从而执行非授权指令。

与XSS相比,CSRF更难被察觉。XSS需要用户执行恶意代码,而CSRF仅需用户访问恶意页面即可触发。判断CSRF漏洞的简单方法是:抓取正常请求的数据包,移除Referer头后重新发送,若请求仍能成功,则说明存在漏洞。某银行系统曾因未验证Referer来源,导致攻击者伪造转账请求,造成数百万元损失。

有效的CSRF防护手段包括:在请求中添加随机Token并验证(如表单中隐藏);检查请求的Origin或Referer头是否来自可信域;对敏感操作要求用户输入动态验证码。某支付平台通过同时启用Token验证与Referer检查,CSRF攻击拦截率达到。

缓冲区溢出:系统级的内存安全隐患

缓冲区溢出是操作系统与应用软件中普遍存在的内存管理漏洞。当程序向缓冲区写入超过其容量的数据时,溢出的数据会覆盖相邻内存空间,导致程序崩溃或执行攻击者控制的代码。这种攻击可实现权限提升、远程控制等严重后果,1988年的Morris蠕虫就是利用fingerd服务的缓冲区溢出漏洞传播的典型案例。

堆栈溢出是最危险的缓冲区溢出类型。函数调用时,参数、返回地址等信息存储在堆栈中,攻击者通过覆盖返回地址,可将程序执行流程导向恶意代码。现代系统虽引入了ASLR(地址空间布局随机化)、DEP(数据执行保护)等防护机制,但在旧版本软件或未打补丁的系统中,缓冲区溢出仍是重大威胁。

防御缓冲区溢出需从开发与运维两端发力:开发者应使用安全的编程语言(如Java、Python)替代易受攻击的C/C++,或启用编译器防护选项(如GCC的-fstack-protector);运维人员需及时更新系统补丁,关闭不必要的服务端口;测试人员需重点关注输入验证,限制输入数据的长度和格式,模拟异常输入场景验证程序健壮性。

构建系统化的Web安全测试体系

Web安全是动态防护的过程,单一措施难以应对所有威胁。测试人员需建立"分层防御"思维:前端过滤用户输入,后端验证数据合法性,数据库限制操作权限,同时借助APPScan、Burp Suite等专业工具进行自动化扫描。值得注意的是,没有绝对安全的系统,测试的目标是将风险降低到可接受范围,而非追求防护。

在实际测试中,需重点关注用户权限管理(如越权访问)、数据库安全(如SQL注入、敏感数据加密)、会话管理(如Cookie安全标记)等核心场景。定期开展渗透测试与安全演练,模拟真实攻击场景,才能持续提升系统的抗风险能力。

校区导航
基本 文件 流程 错误 SQL 调试
  1. 请求信息 : 2026-04-04 20:52:21 HTTP/1.1 GET : http://www.aabrh.com/s/5601/n/32663.html
  2. 运行时间 : 0.016130s [ 吞吐率:62.00req/s ] 内存消耗:391.25kb 文件加载:137
  3. 缓存信息 : 0 reads,0 writes
  1. /data/web/baijiao_branch_collect/public/index.php ( 0.79 KB )
  2. /data/web/baijiao_branch_collect/vendor/autoload.php ( 0.75 KB )
  3. /data/web/baijiao_branch_collect/vendor/composer/autoload_real.php ( 1.63 KB )
  4. /data/web/baijiao_branch_collect/vendor/composer/platform_check.php ( 0.90 KB )
  5. /data/web/baijiao_branch_collect/vendor/composer/ClassLoader.php ( 15.99 KB )
  6. /data/web/baijiao_branch_collect/vendor/composer/autoload_static.php ( 4.26 KB )
  7. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/helper.php ( 8.34 KB )
  8. /data/web/baijiao_branch_collect/vendor/topthink/think-validate/src/helper.php ( 2.19 KB )
  9. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/helper.php ( 1.47 KB )
  10. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/stubs/load_stubs.php ( 0.16 KB )
  11. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Exception.php ( 1.69 KB )
  12. /data/web/baijiao_branch_collect/vendor/topthink/think-container/src/Facade.php ( 2.71 KB )
  13. /data/web/baijiao_branch_collect/vendor/symfony/deprecation-contracts/function.php ( 0.99 KB )
  14. /data/web/baijiao_branch_collect/vendor/symfony/polyfill-mbstring/bootstrap.php ( 8.26 KB )
  15. /data/web/baijiao_branch_collect/vendor/symfony/polyfill-mbstring/bootstrap80.php ( 9.78 KB )
  16. /data/web/baijiao_branch_collect/vendor/symfony/var-dumper/Resources/functions/dump.php ( 1.49 KB )
  17. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/App.php ( 15.30 KB )
  18. /data/web/baijiao_branch_collect/vendor/topthink/think-container/src/Container.php ( 15.76 KB )
  19. /data/web/baijiao_branch_collect/vendor/psr/container/src/ContainerInterface.php ( 1.02 KB )
  20. /data/web/baijiao_branch_collect/app/provider.php ( 0.19 KB )
  21. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Http.php ( 6.04 KB )
  22. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/helper/Str.php ( 7.29 KB )
  23. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Env.php ( 4.68 KB )
  24. /data/web/baijiao_branch_collect/app/common.php ( 10.83 KB )
  25. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/helper.php ( 18.78 KB )
  26. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Config.php ( 5.54 KB )
  27. /data/web/baijiao_branch_collect/config/app.php ( 1.29 KB )
  28. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/facade/Env.php ( 1.67 KB )
  29. /data/web/baijiao_branch_collect/config/cache.php ( 1.22 KB )
  30. /data/web/baijiao_branch_collect/config/config.php ( 0.26 KB )
  31. /data/web/baijiao_branch_collect/config/console.php ( 0.29 KB )
  32. /data/web/baijiao_branch_collect/config/cookie.php ( 0.56 KB )
  33. /data/web/baijiao_branch_collect/config/database.php ( 2.29 KB )
  34. /data/web/baijiao_branch_collect/config/filesystem.php ( 0.63 KB )
  35. /data/web/baijiao_branch_collect/config/lang.php ( 0.81 KB )
  36. /data/web/baijiao_branch_collect/config/log.php ( 1.37 KB )
  37. /data/web/baijiao_branch_collect/config/middleware.php ( 0.19 KB )
  38. /data/web/baijiao_branch_collect/config/route.php ( 1.54 KB )
  39. /data/web/baijiao_branch_collect/config/session.php ( 0.57 KB )
  40. /data/web/baijiao_branch_collect/config/trace.php ( 0.34 KB )
  41. /data/web/baijiao_branch_collect/config/view.php ( 0.81 KB )
  42. /data/web/baijiao_branch_collect/app/event.php ( 0.25 KB )
  43. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Event.php ( 7.67 KB )
  44. /data/web/baijiao_branch_collect/app/service.php ( 0.13 KB )
  45. /data/web/baijiao_branch_collect/app/AppService.php ( 0.26 KB )
  46. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Service.php ( 1.64 KB )
  47. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Lang.php ( 7.35 KB )
  48. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/lang/zh-cn.php ( 13.70 KB )
  49. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/initializer/Error.php ( 3.31 KB )
  50. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/initializer/RegisterService.php ( 1.33 KB )
  51. /data/web/baijiao_branch_collect/vendor/services.php ( 0.14 KB )
  52. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/service/PaginatorService.php ( 1.52 KB )
  53. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/service/ValidateService.php ( 0.99 KB )
  54. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/service/ModelService.php ( 2.04 KB )
  55. /data/web/baijiao_branch_collect/vendor/topthink/think-trace/src/Service.php ( 0.77 KB )
  56. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Middleware.php ( 6.72 KB )
  57. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/initializer/BootService.php ( 0.77 KB )
  58. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/Paginator.php ( 11.86 KB )
  59. /data/web/baijiao_branch_collect/vendor/topthink/think-validate/src/Validate.php ( 63.20 KB )
  60. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/Model.php ( 23.55 KB )
  61. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/Attribute.php ( 21.05 KB )
  62. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/AutoWriteData.php ( 4.20 KB )
  63. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/Conversion.php ( 6.75 KB )
  64. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/DbConnect.php ( 5.16 KB )
  65. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/ModelEvent.php ( 2.33 KB )
  66. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/concern/RelationShip.php ( 28.30 KB )
  67. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/contract/Arrayable.php ( 0.09 KB )
  68. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/contract/Jsonable.php ( 0.13 KB )
  69. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/model/contract/Modelable.php ( 0.09 KB )
  70. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Db.php ( 2.88 KB )
  71. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/DbManager.php ( 8.52 KB )
  72. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Log.php ( 6.28 KB )
  73. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Manager.php ( 3.92 KB )
  74. /data/web/baijiao_branch_collect/vendor/psr/log/src/LoggerTrait.php ( 2.69 KB )
  75. /data/web/baijiao_branch_collect/vendor/psr/log/src/LoggerInterface.php ( 2.71 KB )
  76. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Cache.php ( 4.92 KB )
  77. /data/web/baijiao_branch_collect/vendor/psr/simple-cache/src/CacheInterface.php ( 4.71 KB )
  78. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/helper/Arr.php ( 17.45 KB )
  79. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/cache/driver/Redis.php ( 6.94 KB )
  80. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/cache/Driver.php ( 9.03 KB )
  81. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/contract/CacheHandlerInterface.php ( 1.99 KB )
  82. /data/web/baijiao_branch_collect/app/Request.php ( 0.09 KB )
  83. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Request.php ( 55.78 KB )
  84. /data/web/baijiao_branch_collect/app/middleware.php ( 0.26 KB )
  85. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Pipeline.php ( 2.61 KB )
  86. /data/web/baijiao_branch_collect/vendor/topthink/think-trace/src/TraceDebug.php ( 3.40 KB )
  87. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Route.php ( 23.73 KB )
  88. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/RuleName.php ( 5.75 KB )
  89. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/Domain.php ( 2.53 KB )
  90. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/RuleGroup.php ( 22.43 KB )
  91. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/Rule.php ( 26.95 KB )
  92. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/RuleItem.php ( 9.78 KB )
  93. /data/web/baijiao_branch_collect/route/app.php ( 3.05 KB )
  94. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/facade/Route.php ( 4.70 KB )
  95. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/dispatch/Controller.php ( 4.74 KB )
  96. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/Dispatch.php ( 10.44 KB )
  97. /data/web/baijiao_branch_collect/app/controller/Index.php ( 33.26 KB )
  98. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/facade/Request.php ( 9.20 KB )
  99. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/route/Url.php ( 14.07 KB )
  100. /data/web/baijiao_branch_collect/app/model/IndexModel.php ( 19.95 KB )
  101. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/facade/Config.php ( 1.37 KB )
  102. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/facade/Cache.php ( 2.06 KB )
  103. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/facade/Db.php ( 0.93 KB )
  104. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/connector/Mysql.php ( 5.73 KB )
  105. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/PDOConnection.php ( 53.74 KB )
  106. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/Connection.php ( 8.39 KB )
  107. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/ConnectionInterface.php ( 4.57 KB )
  108. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/builder/Mysql.php ( 16.58 KB )
  109. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/Builder.php ( 24.07 KB )
  110. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/BaseBuilder.php ( 27.50 KB )
  111. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/Query.php ( 15.97 KB )
  112. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/BaseQuery.php ( 45.13 KB )
  113. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/TimeFieldQuery.php ( 7.43 KB )
  114. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/AggregateQuery.php ( 3.26 KB )
  115. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/ModelRelationQuery.php ( 20.07 KB )
  116. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/ParamsBind.php ( 3.66 KB )
  117. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/ResultOperation.php ( 7.01 KB )
  118. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/WhereQuery.php ( 19.37 KB )
  119. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/JoinAndViewQuery.php ( 7.11 KB )
  120. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/TableFieldInfo.php ( 2.63 KB )
  121. /data/web/baijiao_branch_collect/vendor/topthink/think-orm/src/db/concern/Transaction.php ( 2.77 KB )
  122. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/log/driver/File.php ( 5.96 KB )
  123. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/contract/LogHandlerInterface.php ( 0.86 KB )
  124. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/log/Channel.php ( 3.89 KB )
  125. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/event/LogRecord.php ( 1.02 KB )
  126. /data/web/baijiao_branch_collect/vendor/topthink/think-helper/src/Collection.php ( 16.47 KB )
  127. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Response.php ( 8.81 KB )
  128. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/response/View.php ( 3.29 KB )
  129. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/Cookie.php ( 6.06 KB )
  130. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/View.php ( 4.39 KB )
  131. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/view/driver/Php.php ( 6.44 KB )
  132. /data/web/baijiao_branch_collect/vendor/topthink/framework/src/think/contract/TemplateHandlerInterface.php ( 1.60 KB )
  133. /data/web/baijiao_branch_collect/view/index/pc/school_news_details.php ( 2.39 KB )
  134. /data/web/baijiao_branch_collect/view/index/pc/school_top.php ( 5.76 KB )
  135. /data/web/baijiao_branch_collect/view/index/pc/school_right.php ( 2.17 KB )
  136. /data/web/baijiao_branch_collect/view/index/pc/school_bottom.php ( 1.16 KB )
  137. /data/web/baijiao_branch_collect/vendor/topthink/think-trace/src/Html.php ( 4.42 KB )
  1. CONNECT:[ UseTime:0.000402s ] mysql:host=127.0.0.1;port=3306;dbname=baijiao_branch_collect;charset=utf8
  2. SHOW FULL COLUMNS FROM `fqi_school` [ RunTime:0.001195s ]
  3. SELECT * FROM `fqi_school` WHERE `school_id` = '5601' AND `site_id` = 20 AND `school_status` = 1 LIMIT 1 [ RunTime:0.000289s ]
  4. SHOW FULL COLUMNS FROM `fqi_school_class` [ RunTime:0.000612s ]
  5. SELECT * FROM `fqi_school_class` WHERE `school_id` = 5601 [ RunTime:0.000243s ]
  6. SHOW FULL COLUMNS FROM `fqi_school_campus` [ RunTime:0.000617s ]
  7. SELECT * FROM `fqi_school_campus` WHERE `school_id` = 5601 [ RunTime:0.000255s ]
  8. SHOW FULL COLUMNS FROM `fqi_school_news` [ RunTime:0.000680s ]
  9. SELECT `a`.*,`content` FROM `fqi_school_news` `a` LEFT JOIN `fqi_school_news_content` `b` ON `b`.`content_id`=`a`.`content_id` WHERE `school_id` = 5601 AND `a`.`content_id` = '32663' AND `news_status` = 1 AND `school_status` = 1 LIMIT 1 [ RunTime:0.001305s ]
  10. (select content_id,news_name,school_id from fqi_school_news where school_id = '5601' and content_id < '32663' and site_id <= '20' order by content_id desc limit 1) union all(select content_id,news_name,school_id from fqi_school_news where school_id = '5601' and content_id > '32663' and site_id <= '20' order by content_id asc limit 1) [ RunTime:0.000565s ]
  11. SHOW FULL COLUMNS FROM `fqi_school_course` [ RunTime:0.000717s ]
  12. SELECT * FROM `fqi_school_course` WHERE `school_id` = 5601 AND `site_id` = 20 AND `course_status` = 1 AND `school_status` = 1 ORDER BY `course_id` DESC LIMIT 4 [ RunTime:0.000365s ]
  13. SELECT * FROM `fqi_school_course` WHERE `school_id` = 5601 AND `school_status` = 1 AND `course_status` = 1 ORDER BY `course_id` DESC LIMIT 8 [ RunTime:0.000187s ]
  14. SELECT * FROM `fqi_school_news` WHERE `school_id` = 5601 ORDER BY `click` DESC,`news_id` DESC LIMIT 5 [ RunTime:0.000189s ]
  15. SELECT `content_id`,`news_name`,`a`.`school_id`,`b`.`school_name` FROM `fqi_school_news` `a` LEFT JOIN `fqi_school` `b` ON `b`.`school_id`=`a`.`school_id` WHERE `a`.`site_id` = '20' AND `b`.`school_status` = '1' AND `news_status` = 1 AND `content_id` < 32663 ORDER BY `content_id` DESC LIMIT 20 [ RunTime:0.004717s ]
0.016450s