CTF

[Meachines] [Easy] Heist Cisco crack+RID Brute+ProcDump转存储权限提升

Information GatheringIP AddressOpening Ports10.10.10.149TCP:80,135,445,5985,49669$ ip='10.…

[Meachines] [Easy] Pandora SNMP+TRP00F权限提升+ktor-HTTP服务扫描+Pandora Fms SQLI-R…

Information GatheringIP AddressOpening Ports10.10.11.136TCP:22,80,161$ ip='10.10.11.136'; …

KTOR:高效的Linux横向移动与无文件落地HTTP服务扫描工具

地址:https://github.com/MartinxMax/KTOR简介KTOR 是一款专为 Linux 横向渗透设计的工具。通过该工具,您可以快速扫描内部 HTTP 服务,…

[Meachines] [Easy] Stocker NOSQLI+PDF-XSS-LFI+*通配符Bypass权限提升

Information GatheringIP AddressOpening Ports10.10.11.196TCP:22,80$ ip='10.10.11.196'; itf=…

[Meachines] [Easy] Soccer Tiny 2.4.3-RCE+WS-SQLI+Doas权限提升+dstat权限提升

Information GatheringIP AddressOpening Ports10.10.11.194TCP:22,80,9091$ ip='10.10.11.194';…

[Meachines] [Easy] Pilgrimage .Git泄露+ImageMagick-LFI+binwalk-v2.3.2权限提升

Information GatheringIP AddressOpening Ports10.10.11.219TCP:22,80$ ip='10.10.11.219'; itf=…

[Meachines] [Easy] Broker Apache MQ RCE+Nginx ngx_http_dav_module权限提升

Information GatheringIP AddressOpening Ports10.10.11.243TCP:22,80,1883,5672,8161,38507,616…

SRC之若依系统弱口令恰分攻略

本文作者:Track-杳若前言若依系统存在较多魔改版本,具有前后端分离的情况,内置了druid通过这个拿下了交大证书Druid弱口令上分攻略信息收集首先,我们要做的是收集基于若依C…

[Meachines] [Easy] Return HTB Printer+Server Operators sc.exe VSS权限提升

Information GatheringIP AddressOpening Ports10.10.11.108TCP:53,80,88,135,139,389,445,464,5…

[Meachines] [Easy] CozyHosting Spring Boot API+Cozy Cloud RCE+PostgreSQL+SS…

Information GatheringIP AddressOpening Ports10.10.11.230TCP:22,80$ ip='10.10.11.230'; itf=…