<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/" version="2.0"><channel><title>一叶小舟</title><link>https://gotarget.top/</link><atom:link href="https://gotarget.top/rss.xml" rel="self" type="application/rss+xml"/><description>一叶小舟</description><generator>Halo v2.21.8</generator><language>zh-cn</language><lastBuildDate>Wed, 17 Jun 2026 09:21:18 GMT</lastBuildDate><item><title><![CDATA[NTDS提取与利用]]></title><link>https://gotarget.top/archives/ddb474d6-0340-4849-927f-d599b0e253c7</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=NTDS%E6%8F%90%E5%8F%96%E4%B8%8E%E5%88%A9%E7%94%A8&amp;url=/archives/ddb474d6-0340-4849-927f-d599b0e253c7" width="1" height="1" alt="" style="opacity:0;">本文介绍了如何通过卷影复制服务从NTDS.dit文件中提取并解密域内用户密码哈希值的方法，包括使用vssadmin创建快照、复制NTDS.dit文件及利用IMPACKET或NTDSDumpEX工具解密数据。还提到了PTH攻击的实施方式和事件溯源的关键日志ID。]]></description><guid isPermaLink="false">/archives/ddb474d6-0340-4849-927f-d599b0e253c7</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202402281424779.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Wed, 24 Sep 2025 09:26:37 GMT</pubDate></item><item><title><![CDATA[Vcenter——CVE-2021-21985]]></title><link>https://gotarget.top/archives/8a280eb0-7ed5-4d6c-8cb3-b4faa505baac</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=Vcenter%E2%80%94%E2%80%94CVE-2021-21985&amp;url=/archives/8a280eb0-7ed5-4d6c-8cb3-b4faa505baac" width="1" height="1" alt="" style="opacity:0;">CVE-2021-21985漏洞存在于vSphere Client中，允许攻击者通过未验证的输入远程执行命令。文章提供了漏洞利用的具体步骤和所需工具下载链接。]]></description><guid isPermaLink="false">/archives/8a280eb0-7ed5-4d6c-8cb3-b4faa505baac</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202211041819114.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:16:20 GMT</pubDate></item><item><title><![CDATA[Windows漏洞攻击记录（MS17-010）]]></title><link>https://gotarget.top/archives/c42ed8f8-b3b6-4da5-b1cb-da55963d0393</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=Windows%E6%BC%8F%E6%B4%9E%E6%94%BB%E5%87%BB%E8%AE%B0%E5%BD%95%EF%BC%88MS17-010%EF%BC%89&amp;url=/archives/c42ed8f8-b3b6-4da5-b1cb-da55963d0393" width="1" height="1" alt="" style="opacity:0;">永恒之蓝是2017年被黑客团体Shadow Brokers公布的利用Windows SMB漏洞的攻击工具，可获取系统最高权限。不法分子改造其制作了WannaCry勒索病毒，影响全球多个机构。实验中使用Kali对Windows 7系统进行了攻击测试，成功获取系统权限并进行会话交互。]]></description><guid isPermaLink="false">/archives/c42ed8f8-b3b6-4da5-b1cb-da55963d0393</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202211041819114.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:15:39 GMT</pubDate></item><item><title><![CDATA[Zerologon]]></title><link>https://gotarget.top/archives/5f217a65-80b7-4f00-b0a9-41ad95addb69</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=Zerologon&amp;url=/archives/5f217a65-80b7-4f00-b0a9-41ad95addb69" width="1" height="1" alt="" style="opacity:0;">Zerologon (CVE-2020-1472) 是一种针对Windows DC的攻击，利用NetLogon认证缺陷将DC机器账户密码置空，进而通过DCSync和PTH获取域管权限，影响范围从Windows 2008到2019。]]></description><guid isPermaLink="false">/archives/5f217a65-80b7-4f00-b0a9-41ad95addb69</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202402171640929.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:14:49 GMT</pubDate></item><item><title><![CDATA[WEB端Android控制台搭建及总结]]></title><link>https://gotarget.top/archives/62c315e1-21a0-4b5f-af36-00c5eed34715</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=WEB%E7%AB%AFAndroid%E6%8E%A7%E5%88%B6%E5%8F%B0%E6%90%AD%E5%BB%BA%E5%8F%8A%E6%80%BB%E7%BB%93&amp;url=/archives/62c315e1-21a0-4b5f-af36-00c5eed34715" width="1" height="1" alt="" style="opacity:0;">L3MON是一款基于Web的远程安卓管理工具，可监控手机短信、通话记录、文件、程序、GPS定位及浏览记录等。需安装Node.js和Java环境，并通过配置启动服务。因涉及隐私安全问题，已被多数手机厂商标记为恶意软件。]]></description><guid isPermaLink="false">/archives/62c315e1-21a0-4b5f-af36-00c5eed34715</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=http%3A%2F%2Fpicture.gotarget.top%2F%25E5%259B%25BE%25E7%2589%2587%2Ftypero%2Fimage-20220519111559409.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:13:58 GMT</pubDate></item><item><title><![CDATA[WinRM攻击手法]]></title><link>https://gotarget.top/archives/4b5ac3a1-2651-488a-965d-ac05be5b9455</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=WinRM%E6%94%BB%E5%87%BB%E6%89%8B%E6%B3%95&amp;url=/archives/4b5ac3a1-2651-488a-965d-ac05be5b9455" width="1" height="1" alt="" style="opacity:0;">本文介绍了WinRM服务及其在Windows系统远程管理中的应用，包括环境准备、攻击机与受害机设置、WinRM服务的启用与配置步骤，以及如何利用相关工具进行远程连接和操作。]]></description><guid isPermaLink="false">/archives/4b5ac3a1-2651-488a-965d-ac05be5b9455</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202308201526430.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:13:01 GMT</pubDate></item><item><title><![CDATA[局域网攻击——DNS投毒]]></title><link>https://gotarget.top/archives/7bec4bb5-0223-47f0-b8c6-eabdd9e1130c</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E5%B1%80%E5%9F%9F%E7%BD%91%E6%94%BB%E5%87%BB%E2%80%94%E2%80%94DNS%E6%8A%95%E6%AF%92&amp;url=/archives/7bec4bb5-0223-47f0-b8c6-eabdd9e1130c" width="1" height="1" alt="" style="opacity:0;">DNS缓存投毒攻击通过伪造DNS响应，将用户重定向至恶意网站，常见于钓鱼攻击。示例展示了ARP欺骗过程及防御措施，如设置静态ARP缓存和清除DNS缓存。]]></description><guid isPermaLink="false">/archives/7bec4bb5-0223-47f0-b8c6-eabdd9e1130c</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202212041514199.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:05:07 GMT</pubDate></item><item><title><![CDATA[恶意PDF使用实践]]></title><link>https://gotarget.top/archives/7b89a252-1c9b-4397-addb-996dc8f4ba99</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E6%81%B6%E6%84%8FPDF%E4%BD%BF%E7%94%A8%E5%AE%9E%E8%B7%B5&amp;url=/archives/7b89a252-1c9b-4397-addb-996dc8f4ba99" width="1" height="1" alt="" style="opacity:0;">文章介绍了PDF文件可能被用来执行恶意代码的风险，特别是通过Adobe工具打开时。建议避免使用浏览器或Adobe作为默认PDF阅读器，并警惕版本较低的Adobe软件带来的安全隐患。]]></description><guid isPermaLink="false">/archives/7b89a252-1c9b-4397-addb-996dc8f4ba99</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202308270036866.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:03:45 GMT</pubDate></item><item><title><![CDATA[文件上传攻击]]></title><link>https://gotarget.top/archives/18b13487-3d86-4774-aa39-7858d4026ebd</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E6%96%87%E4%BB%B6%E4%B8%8A%E4%BC%A0%E6%94%BB%E5%87%BB&amp;url=/archives/18b13487-3d86-4774-aa39-7858d4026ebd" width="1" height="1" alt="" style="opacity:0;">文件上传攻击通过上传恶意文件获取系统信息或控制权，常见于WEB攻击。前端JS校验易被绕过，后端基于黑白名单和MIME类型限制也存在漏洞。攻击者可利用双扩展名、字符注入等方法绕过后端限制，并通过修改文件签名绕过MIME检查。]]></description><guid isPermaLink="false">/archives/18b13487-3d86-4774-aa39-7858d4026ebd</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202405101741667.png&amp;size=m" type="image/jpeg" length="0"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 16:02:45 GMT</pubDate></item><item><title><![CDATA[票据攻击——Golden Ticket-piao-ju-gong-ji-goldenticket]]></title><link>https://gotarget.top/archives/99496f5a-b8c3-4e97-ae2f-98ff4fffb870</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E7%A5%A8%E6%8D%AE%E6%94%BB%E5%87%BB%E2%80%94%E2%80%94Golden%20Ticket-piao-ju-gong-ji-goldenticket&amp;url=/archives/99496f5a-b8c3-4e97-ae2f-98ff4fffb870" width="1" height="1" alt="" style="opacity:0;">本文介绍了通过Kerberos协议伪造TGT以重新获得域控权限的方法，包括获取域名称、SID值、krbtgt账号HASH及伪造用户名等前置条件，并详细说明了如何使用mimikatz工具注入票据和维持权限的具体步骤。]]></description><guid isPermaLink="false">/archives/99496f5a-b8c3-4e97-ae2f-98ff4fffb870</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=https%3A%2F%2Fpicture.gotarget.top%2F202308052032098.png&amp;size=m" type="image/jpeg" length="0"/><pubDate>Tue, 23 Sep 2025 16:01:06 GMT</pubDate></item><item><title><![CDATA[给你一台陌生电脑，你能登录他的账户吗？]]></title><link>https://gotarget.top/archives/8e7b2cb4-3bf6-40af-9ef5-49d960fc6277</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E7%BB%99%E4%BD%A0%E4%B8%80%E5%8F%B0%E9%99%8C%E7%94%9F%E7%94%B5%E8%84%91%EF%BC%8C%E4%BD%A0%E8%83%BD%E7%99%BB%E5%BD%95%E4%BB%96%E7%9A%84%E8%B4%A6%E6%88%B7%E5%90%97%EF%BC%9F&amp;url=/archives/8e7b2cb4-3bf6-40af-9ef5-49d960fc6277" width="1" height="1" alt="" style="opacity:0;">本文介绍了如何使用U盘和Hiren's BootCD PE工具来创建系统启动盘，进而修改或重设Windows本地账户密码，并可添加新管理员账号。适用于未使用BitLocker加密的电脑，整个过程大约需要5-6分钟。请注意合法使用。]]></description><guid isPermaLink="false">/archives/8e7b2cb4-3bf6-40af-9ef5-49d960fc6277</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F202306121435034.png&amp;size=m" type="image/jpeg" length="373001"/><category>IT</category><pubDate>Tue, 23 Sep 2025 15:58:45 GMT</pubDate></item><item><title><![CDATA[获取解锁你电脑的第三方目标照片]]></title><link>https://gotarget.top/archives/6b56d593-b070-4d6c-865a-abe49edf8cca</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E8%8E%B7%E5%8F%96%E8%A7%A3%E9%94%81%E4%BD%A0%E7%94%B5%E8%84%91%E7%9A%84%E7%AC%AC%E4%B8%89%E6%96%B9%E7%9B%AE%E6%A0%87%E7%85%A7%E7%89%87&amp;url=/archives/6b56d593-b070-4d6c-865a-abe49edf8cca" width="1" height="1" alt="" style="opacity:0;">本文介绍了一种在他人尝试解锁你的电脑失败后自动拍摄并邮件发送照片的方法，包括脚本下载、环境配置及任务计划设置等步骤。]]></description><guid isPermaLink="false">/archives/6b56d593-b070-4d6c-865a-abe49edf8cca</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F5971449_21475.jpg&amp;size=m" type="image/jpeg" length="70694"/><category>IT</category><pubDate>Tue, 23 Sep 2025 15:57:03 GMT</pubDate></item><item><title><![CDATA[简单网络管理协议（SNMP）]]></title><link>https://gotarget.top/archives/35e6e569-572c-4642-b69b-0adba7373512</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E7%AE%80%E5%8D%95%E7%BD%91%E7%BB%9C%E7%AE%A1%E7%90%86%E5%8D%8F%E8%AE%AE%EF%BC%88SNMP%EF%BC%89&amp;url=/archives/35e6e569-572c-4642-b69b-0adba7373512" width="1" height="1" alt="" style="opacity:0;">本文介绍了SNMP协议及其三个版本的特点，系统组成，并详细说明了如何在XC208工控交换机上配置SNMP，包括初始设置、启用Trap功能及用户群组配置等步骤，最后通过MIBBrowse工具进行了测试。]]></description><guid isPermaLink="false">/archives/35e6e569-572c-4642-b69b-0adba7373512</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2Fsnmp.jpg&amp;size=m" type="image/jpeg" length="7086"/><category>IT</category><pubDate>Tue, 23 Sep 2025 15:54:24 GMT</pubDate></item><item><title><![CDATA[记一次ADCS攻击测试]]></title><link>https://gotarget.top/archives/91815934-5aa3-408b-aba5-ac387a584721</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E8%AE%B0%E4%B8%80%E6%AC%A1ADCS%E6%94%BB%E5%87%BB%E6%B5%8B%E8%AF%95&amp;url=/archives/91815934-5aa3-408b-aba5-ac387a584721" width="1" height="1" alt="" style="opacity:0;">文章介绍了通过网络投毒、创建机器账户、利用ADCS漏洞等步骤，最终获取目标主机控制权的过程。具体包括修改Responder配置防止SMB与HTTP开启、使用certipy和ntlmrelayx等工具进行证书申请及中继攻击，并通过强制验证取得域内对象SID以生成白银票据，最后借助psexec.py取得目标主机shell。]]></description><guid isPermaLink="false">/archives/91815934-5aa3-408b-aba5-ac387a584721</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F8374831_3877921-KkmH.jpg&amp;size=m" type="image/jpeg" length="39534"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 15:47:39 GMT</pubDate></item><item><title><![CDATA[记2021年12月16日DDOS测试]]></title><link>https://gotarget.top/archives/fa022dc0-e0cc-489f-bea9-caaaa223151b</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E8%AE%B02021%E5%B9%B412%E6%9C%8816%E6%97%A5DDOS%E6%B5%8B%E8%AF%95&amp;url=/archives/fa022dc0-e0cc-489f-bea9-caaaa223151b" width="1" height="1" alt="" style="opacity:0;">本文测试了阿里云和腾讯云的基础防护性能，指出短时间内超出流量阈值可导致长时间封锁。建议使用CDN等方法防御DDOS、CC攻击，并强调了综合防御的重要性。]]></description><guid isPermaLink="false">/archives/fa022dc0-e0cc-489f-bea9-caaaa223151b</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2FDDOS.jpg&amp;size=m" type="image/jpeg" length="11914"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 15:46:39 GMT</pubDate></item><item><title><![CDATA[记一次对微信公众号的爬虫]]></title><link>https://gotarget.top/archives/9ffcb775-f36d-4f4b-adef-a14ae7a60aba</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E8%AE%B0%E4%B8%80%E6%AC%A1%E5%AF%B9%E5%BE%AE%E4%BF%A1%E5%85%AC%E4%BC%97%E5%8F%B7%E7%9A%84%E7%88%AC%E8%99%AB&amp;url=/archives/9ffcb775-f36d-4f4b-adef-a14ae7a60aba" width="1" height="1" alt="" style="opacity:0;">为追踪安全厂商公众号发布的关键信息，项目通过微信公众号文章查询接口及特定的Cookie和Token参数实现数据抓取。尽管存在Cookie有效期短、Token每日变动等挑战，该方案仍能有效批量处理多个公众号的文章，并筛选出关键内容。未来计划利用API调用或Playwright模拟浏览器操作来优化持久运行问题。]]></description><guid isPermaLink="false">/archives/9ffcb775-f36d-4f4b-adef-a14ae7a60aba</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F%25E4%25B8%258B%25E8%25BD%25BD.png&amp;size=m" type="image/jpeg" length="5271"/><category>IT</category><pubDate>Tue, 23 Sep 2025 15:44:32 GMT</pubDate></item><item><title><![CDATA[蚁剑安装配置及踩坑解决]]></title><link>https://gotarget.top/archives/1952efe6-2131-47a0-98ed-c5dbbd9a3958</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E8%9A%81%E5%89%91%E5%AE%89%E8%A3%85%E9%85%8D%E7%BD%AE%E5%8F%8A%E8%B8%A9%E5%9D%91%E8%A7%A3%E5%86%B3&amp;url=/archives/1952efe6-2131-47a0-98ed-c5dbbd9a3958" width="1" height="1" alt="" style="opacity:0;">AntSword是一款开源、跨平台的网站管理工具，适用于渗透测试人员及网站管理员。安装仅需加载器部分，并以管理员权限运行。对于HTTPS连接问题，可在设置中选择忽略证书解决。]]></description><guid isPermaLink="false">/archives/1952efe6-2131-47a0-98ed-c5dbbd9a3958</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F8246837_3849156.jpg&amp;size=m" type="image/jpeg" length="54178"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 15:42:26 GMT</pubDate></item><item><title><![CDATA[闲余笔记本==>服务器]]></title><link>https://gotarget.top/archives/f51f5c55-4a4b-4416-936b-8c1ed41eb722</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E9%97%B2%E4%BD%99%E7%AC%94%E8%AE%B0%E6%9C%AC%3D%3D%3E%E6%9C%8D%E5%8A%A1%E5%99%A8&amp;url=/archives/f51f5c55-4a4b-4416-936b-8c1ed41eb722" width="1" height="1" alt="" style="opacity:0;">文章介绍了将家用计算机转变为服务器的方法，包括更改操作系统为Linux、安装宝塔面板、设置远程桌面及内网穿透等步骤，使设备可24小时持续运行并支持多种应用。]]></description><guid isPermaLink="false">/archives/f51f5c55-4a4b-4416-936b-8c1ed41eb722</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F24600855_sl_031420_28950_10.jpg&amp;size=m" type="image/jpeg" length="51774"/><category>IT</category><pubDate>Tue, 23 Sep 2025 10:18:15 GMT</pubDate></item><item><title><![CDATA[使用Quasar远控Windows设备]]></title><link>https://gotarget.top/archives/c785b3a8-8cd3-4464-be92-ee2d564c586c</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%E4%BD%BF%E7%94%A8Quasar%E8%BF%9C%E6%8E%A7Windows%E8%AE%BE%E5%A4%87&amp;url=/archives/c785b3a8-8cd3-4464-be92-ee2d564c586c" width="1" height="1" alt="" style="opacity:0;">Quasar是一款针对Windows的开源远程访问木马，通过钓鱼邮件传播。它最初为合法用途开发，后被用于网络间谍活动。文章介绍了其生成、伪装及使用方法，强调了非法使用的法律责任，并提供了进阶使用建议。]]></description><guid isPermaLink="false">/archives/c785b3a8-8cd3-4464-be92-ee2d564c586c</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F8374831_3877921-BeJW.jpg&amp;size=m" type="image/jpeg" length="39534"/><category>hacker</category><pubDate>Tue, 23 Sep 2025 10:14:55 GMT</pubDate></item><item><title><![CDATA[ GlassFish任意文件读取]]></title><link>https://gotarget.top/archives/a566ffcf-b250-47c7-a273-90d481322286</link><description><![CDATA[<img src="https://gotarget.top/plugins/feed/assets/telemetry.gif?title=%20GlassFish%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96&amp;url=/archives/a566ffcf-b250-47c7-a273-90d481322286" width="1" height="1" alt="" style="opacity:0;">GlassFish服务器存在目录穿越漏洞，攻击者可利用特定URL编码绕过限制，访问任意文件如/etc/passwd，并可能进一步获取敏感信息。]]></description><guid isPermaLink="false">/archives/a566ffcf-b250-47c7-a273-90d481322286</guid><dc:creator>Adil</dc:creator><enclosure url="https://gotarget.top/apis/api.storage.halo.run/v1alpha1/thumbnails/-/via-uri?uri=%2Fupload%2F8374831_3877921-BeJW.jpg&amp;size=m" type="image/jpeg" length="39534"/><pubDate>Mon, 22 Sep 2025 16:25:00 GMT</pubDate></item></channel></rss>