博文

目前显示的是 四月, 2020的博文

HackTheBox - ObSecurity

图片
通过Nmap扫描开放了: 通过8080端口了以下信息: 大概意思就是说,为了安全,他自己用python写了个http服务器(最恶心这样的人了) 通过模糊扫描【SuperSecureServer.py】脚本文件,发现位于: kali@kali:~/go/bin$ ./ffuf -u http://10.10.10.168:8080/FUZZ/SuperSecureServer.py -w /usr/share/dirb/wordlists/common.txt /'___\ /'___\ /'___\ /\ \__/ /\ \__/ __ __ /\ \__/ \ \ ,__\\ \ ,__\/\ \/\ \ \ \ ,__\ \ \ \_/ \ \ \_/\ \ \_\ \ \ \ \_/ \ \_\ \ \_\ \ \____/ \ \_\ \/_/ \/_/ \/___/ \/_/ v1.1.0-git ________________________________________________ :: Method : GET :: URL : http://10.10.10.168:8080/FUZZ/SuperSecureServer.py :: Wordlist : FUZZ: /usr/share/dirb/wordlists/common.txt :: Follow redirects : false :: Calibration : false :: Timeout : 10 :: Threads : 40 :: Matcher : Response status: 200,204,301,302,307,401,403 ________________________________________________ develop

HackTheBox - TrackBack

图片
搜集信息: kali@kali:~$ nmap -v -A 10.10.10.181 Starting Nmap 7.80 ( https://nmap.org ) at 2020-04-25 04:49 EDT NSE: Loaded 151 scripts for scanning. NSE: Script Pre-scanning. Initiating NSE at 04:49 Completed NSE at 04:49, 0.00s elapsed Initiating NSE at 04:49 Completed NSE at 04:49, 0.00s elapsed Initiating NSE at 04:49 Completed NSE at 04:49, 0.00s elapsed Initiating Ping Scan at 04:49 Scanning 10.10.10.181 [2 ports] Completed Ping Scan at 04:49, 0.16s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 04:49 Completed Parallel DNS resolution of 1 host. at 04:49, 2.31s elapsed Initiating Connect Scan at 04:49 Scanning 10.10.10.181 [1000 ports] Discovered open port 80/tcp on 10.10.10.181 Discovered open port 22/tcp on 10.10.10.181 Completed Connect Scan at 04:49, 6.90s elapsed (1000 total ports) Initiating Service scan at 04:49 Scanning 2 services on 10.10.10.181 Completed Service scan at 04:49, 6.35s elapsed (2 services on 1 host) NSE: Script scanning 10.10.10.181.

Hack the Box - OpenAdmin

图片
nmap kali@kali:~$ nmap -v -A 10.10.10.171 Starting Nmap 7.80 ( https://nmap.org ) at 2020-04-19 01:25 EDT NSE: Loaded 151 scripts for scanning. NSE: Script Pre-scanning. Initiating NSE at 01:25 Completed NSE at 01:25, 0.00s elapsed Initiating NSE at 01:25 Completed NSE at 01:25, 0.00s elapsed Initiating NSE at 01:25 Completed NSE at 01:25, 0.00s elapsed Initiating Ping Scan at 01:25 Scanning 10.10.10.171 [2 ports] Completed Ping Scan at 01:25, 0.17s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 01:25 Completed Parallel DNS resolution of 1 host. at 01:25, 2.24s elapsed Initiating Connect Scan at 01:25 Scanning 10.10.10.171 [1000 ports] Discovered open port 80/tcp on 10.10.10.171 Discovered open port 22/tcp on 10.10.10.171 Completed Connect Scan at 01:25, 14.28s elapsed (1000 total ports) Initiating Service scan at 01:25 Scanning 2 services on 10.10.10.171 Completed Service scan at 01:25, 6.36s elapsed (2 services on 1 host) NSE: Script scanning 10.10.10.171.

Hack the Box - Remote

图片
Nmap kali@kali:/var/www/html$ nmap -v -A 10.10.10.180 Starting Nmap 7.80 ( https://nmap.org ) at 2020-04-18 11:51 EDT NSE: Loaded 151 scripts for scanning. NSE: Script Pre-scanning. Initiating NSE at 11:51 Completed NSE at 11:51, 0.00s elapsed Initiating NSE at 11:51 Completed NSE at 11:51, 0.00s elapsed Initiating NSE at 11:51 Completed NSE at 11:51, 0.00s elapsed Initiating Ping Scan at 11:51 Scanning 10.10.10.180 [2 ports] Completed Ping Scan at 11:51, 0.17s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 11:51 Completed Parallel DNS resolution of 1 host. at 11:51, 10.34s elapsed Initiating Connect Scan at 11:51 Scanning 10.10.10.180 [1000 ports] Discovered open port 111/tcp on 10.10.10.180 Discovered open port 80/tcp on 10.10.10.180

在windows 编译 jsvc

图片
一、下载项目 http://commons.apache.org/proper/commons-daemon/jsvc.html 二、安装 cygwin64  https://cygwin.com/install.html gcc-core、gcc-g++、make、gcc-objc、gcc-objc++ 三、开始编译 Cannot find jni_md.h in C:\Program Files\Java\jdk1.8.0_231/Windows_NT ./configure LIBS="C:\Program Files\Java\jdk1.8.0_231\include\win32" ./configure LIBS="/cygdrive/d/Java/jdk1.8.0_231/include/win32" checking for JDK os include directory... Cannot find jni_md.h in D:\Java\jdk1.8.0_231/Windows_NT finally: $ ./configure --with-os-type=/include/win32 四、移动代码文件 五·、编译成功 configure tianq@DESKTOP-GNQ5792 /cygdrive/d/project/work/commons-daemon-1.2.2-src/src/native/unix $ ./configure --with-os-type=/include/win32 *** Current host *** checking build system type... x86_64-pc-cygwin checking host system type... x86_64-pc-cygwin checking cached host system type... ok *** C-Language compilation tools *** checking for gcc... gcc checking whether the C compiler works... yes checking for C compiler default outp