mr-xn
|
2e6052a44b
|
add Shiro<=1.2.4反序列化,一键检测工具
|
2020-02-18 15:02:46 +08:00 |
|
mr-xn
|
41a015cbba
|
add CVE-2019-17564 : Apache Dubbo反序列化漏洞
|
2020-02-16 22:28:29 +08:00 |
|
mr-xn
|
50f9012785
|
add CVE-2020-0618 SQL Server Reporting Services RCE
|
2020-02-16 22:26:04 +08:00 |
|
mr-xn
|
9a724a1421
|
add [CVE-2020-0618: 微软 SQL Server Reporting Services远程代码执行(RCE)漏洞](https://www.mdsec.co.uk/2020/02/cve-2020-0618-rce-in-sql-server-reporting-services-ssrs/)
|
2020-02-16 22:24:44 +08:00 |
|
mr-xn
|
63b2e5c088
|
add CVE-2020-0728-Windows Modules Installer Service 信息泄露漏洞
|
2020-02-16 22:20:14 +08:00 |
|
mr-xn
|
27d2891dad
|
add 小米系列路由器远程命令执行漏洞(CVE-2019-18370,CVE-2019-18371)
|
2020-02-16 22:16:17 +08:00 |
|
mr-xn
|
cd3ff131a8
|
add CVE-2020-0683-利用Windows MSI “Installer service”提权
|
2020-02-12 14:31:19 +08:00 |
|
mr-xn
|
7d41e0595d
|
add Zoomeye Tools-一款利用Zoomeye 获取有关当前网页IP地址的各种信息(需要登录)
|
2020-02-12 14:25:17 +08:00 |
|
mr-xn
|
65d1cb8df1
|
add CVE-2020-7471-django1.11-1.11.282.2-2.2.103.0-3.0.3 StringAgg(delimiter)使用了不安全的数据会造成SQL注入漏洞环境和POC
|
2020-02-12 14:10:01 +08:00 |
|
mr-xn
|
76a4ca3560
|
Merge branch 'temp'
|
2020-02-12 14:04:39 +08:00 |
|
mr-xn
|
a81f364fdd
|
add Microsoft SharePoint - Deserialization Remote Code Execution
|
2020-02-12 13:54:13 +08:00 |
|
mr-xn
|
a3a0ac65a6
|
add https://twitter.com/7GYS4m1GiwJ8mkC
|
2020-02-12 13:50:52 +08:00 |
|
mr-xn
|
9543beba4e
|
add OpenSMTPD 6.4.0 < 6.6.1 - Local Privilege Escalation + Remote Code Execution
|
2020-02-12 13:48:05 +08:00 |
|
mr-xn
|
38e4c232ee
|
add 从 Interfaces.d 到 RCE:Mozilla WebThings IoT 网关漏洞挖掘
|
2020-02-12 13:44:58 +08:00 |
|
mr-xn
|
cb4cf4c0e3
|
add WordPress InfiniteWP - Client Authentication Bypass (Metasploit)
|
2020-02-12 13:42:40 +08:00 |
|
mr-xn
|
03a7d58f28
|
add D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit)CVE-2019-20215
|
2020-02-12 13:40:54 +08:00 |
|
mr-xn
|
7f43d54912
|
add D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit)CVE-2019-20215
|
2020-02-12 13:40:32 +08:00 |
|
mr-xn
|
8896d13f48
|
update readme.md
|
2020-02-12 12:52:54 +08:00 |
|
mr-xn
|
1dd450e50a
|
add thinkphp6 session 任意文件创建漏洞复现 含POC.pdf
|
2020-01-28 21:01:54 +08:00 |
|
mr-xn
|
34dd079ebe
|
add thinkphp6 session 任意文件创建漏洞复现 含POC.pdf
|
2020-01-28 21:01:13 +08:00 |
|
mr-xn
|
48e84e1338
|
add phpok 4.7 5.3 5.4getshell
|
2020-01-27 11:10:56 +08:00 |
|
mr-xn
|
7f8922bffa
|
add Struts2漏洞扫描Golang版
|
2020-01-19 11:30:58 +08:00 |
|
mr-xn
|
05c7111240
|
add A script to scan for unsecured Laravel .env files
|
2020-01-18 19:28:49 +08:00 |
|
mr-xn
|
94d28a648c
|
add Remote Desktop Gateway RCE bugs CVE-2020-0609 & CVE-2020-0610
|
2020-01-18 19:23:59 +08:00 |
|
mr-xn
|
085907b527
|
add IP/IP段资产扫描-->扫描开放端口识别运行服务部署网站-->自动化整理扫描结果-->输出可视化报表+整理结果
|
2020-01-17 20:58:35 +08:00 |
|
mr-xn
|
1b1df7ca3b
|
add ew Weblogic RCE (CVE-2020-2546、CVE-2020-2551) CVE-2020-2546
|
2020-01-17 20:53:10 +08:00 |
|
mr-xn
|
1489d0a29b
|
add CVE-2020-5398 - RFD(Reflected File Download) Attack for Spring MVC
|
2020-01-17 20:52:23 +08:00 |
|
mr-xn
|
283da0a380
|
add huaweihg255目录穿越漏洞检测脚本
|
2020-01-16 22:54:35 +08:00 |
|
mr-xn
|
5e3a873a38
|
add CryptoAPI PoC CVE-2020-0601
|
2020-01-16 22:52:17 +08:00 |
|
mr-xn
|
c8b994417c
|
add CVE-2020-2696 – Local privilege escalation via CDE dtsession
|
2020-01-16 22:07:10 +08:00 |
|
mr-xn
|
c05efeeb7d
|
add Huawei HG255 Directory Traversal
|
2020-01-16 22:05:20 +08:00 |
|
mr-xn
|
cddca81ffb
|
add CVE-2020-5509-Car Rental Project 1.0版本中存在远程代码执行漏洞
|
2020-01-16 21:56:48 +08:00 |
|
mr-xn
|
16633bf06a
|
add GitHacker---比GitHack更好用的git泄露利用工具
|
2020-01-15 17:59:05 +08:00 |
|
mr-xn
|
2dc828e1b5
|
add CVE-2020-5504-phpMyAdmin注入(需要登录)
|
2020-01-15 14:42:53 +08:00 |
|
mr-xn
|
bba0c818cf
|
add CVE - CVE-2020-5504-phpMyAdmin注入(需要登录)
|
2020-01-15 14:42:14 +08:00 |
|
mr-xn
|
59207373ab
|
add NATBypass,一款lcx在golang下的实现
|
2020-01-15 11:58:11 +08:00 |
|
mr-xn
|
060d346829
|
add Mysql Client 任意文件读取攻击链拓展
|
2020-01-14 22:00:38 +08:00 |
|
mr-xn
|
7734fc5127
|
add CVE-2019-19781.nse---use Nmap check Citrix ADC Remote Code Execution
|
2020-01-13 22:14:15 +08:00 |
|
mr-xn
|
1012ab6e6d
|
add 小米系列路由器远程命令执行漏洞(CVE-2019-18370,CVE-2019-18371)
|
2020-01-13 22:10:56 +08:00 |
|
mr-xn
|
228372cb74
|
add CVE-2019-19781
|
2020-01-11 21:15:16 +08:00 |
|
mr-xn
|
4171eb2ad7
|
add 对密码已保存在 Windwos 系统上的部分程序进行解析,包括:Navicat,TeamViewer,FileZilla,WinSCP,Xmangager系列产品(Xshell,Xftp)。
|
2020-01-09 15:09:06 +08:00 |
|
mr-xn
|
5d9cf818b0
|
add apache后门模块
|
2020-01-09 14:24:31 +08:00 |
|
mr-xn
|
0c57a3a6da
|
add Linxu权限提升一键检测工具
|
2020-01-09 14:02:24 +08:00 |
|
mr-xn
|
3dc48d5d11
|
add Linux提取其他用户密码的工具(需要root权限)
|
2020-01-09 13:49:42 +08:00 |
|
mr-xn
|
15b332f46b
|
add wafw00f
|
2020-01-09 10:45:07 +08:00 |
|
mr-xn
|
bf4578722b
|
add windows bypass AV in-memory PE execution
|
2020-01-08 10:07:45 +08:00 |
|
mr-xn
|
cd2b4e4ebc
|
add adduser添加用户
|
2020-01-07 20:32:56 +08:00 |
|
mr-xn
|
8686ffd2ea
|
add 利用 SQLmap 结合 OOB 技术实现音速盲注
|
2020-01-07 10:49:16 +08:00 |
|
mr-xn
|
2471d8c0bc
|
add 从内存中加载 SHELLCODE bypass AV查杀
|
2020-01-06 11:14:50 +08:00 |
|
mr-xn
|
0a405b0deb
|
add 内网渗透必备工具
|
2020-01-06 11:07:12 +08:00 |
|