信息安全

密码保护:bypass 各大waf

1. 百度云盾 (好像是CF的东西) POST  POST / HTTP/1.1 Host: www.sglynp.com Connection: close Cache-Control: max-age=0 Upgrade-Insecure-Requests: 1 User-Agent: Mozilla/5....

CVE-2019-16278

https://github.com/jas502n/CVE-2019-16278 Exploits for CVE-2019-16278 and CVE-2019-16279 Nostromo httpd is prone to 2 cricital vulnerabilities for versions <= 1.9.6 (0day =]) firs...

记一次内网渗透

无意中拿到了一个shell 然后花了几天内网渗透。还是有点收获的 没啥技巧可言了。都是一些瞎操作了。别喷就行了 先介绍一下环境把  WEB: 内网主机 192.168.1.231   (无域...