搜索 “takeover”

不再关注网络安全

takeover

  • 2022-03-20
  • tools
  • 809 阅读

inurl:"dcwp_twitter.php"

  • 2021-02-22
  • shdb
  • 1782 阅读

Google dork description: Dork to find sites likely running Social Network Tabs plugin 1.7.1 for WordPress and likely affected by CVE-2018-20555 which allows remote attackers to discover Twitter access_token, access_token_secret, consumer_key, and ...

inurl:/forgotpassword intext:"enter username and email"

  • 2020-03-26
  • shdb
  • 2091 阅读

# Google Dork: inurl:/forgotpassword intext:"enter username and email" # The search results found from this dork, are potentially vulnerable sites to account takeover. If attacker inserts victim's username along with attacker's...

intext:"this login can be used only once" inurl:user intitle:"reset password"

  • 2018-05-11
  • shdb
  • 1799 阅读

This dork can hunt out vulnerable drupal websites with their password reset pages of various accounts for account takeover. *Description*: Drupal users using PRLP (Password Reset Landing Page) module. When this module is installed, If a user reque...

国外很棒的渗透测试资源集合

国外很棒的渗透测试资源集合

一组很棒的渗透测试资源,网络安全工具包,包括工具、书籍、会议、杂志和其他的东西 渗透测试工具 Awesome Penetration Testing A collection of awesome penetration testing resources Online Resources Penetration Testing Resources Exploit development Social Engineering Resources Lock Picking Resources Tools Pe...

"Cyphor (Release:" -www.cynox.ch

  • 2005-10-08
  • shdb
  • 1628 阅读

Cyphor 0.19 (possibly prior versions) SQL Injection / Board takeover / cross site scriptingmy advisory & poc exploit:http://rgod.altervista.org/cyphor019.htmlrgodModerator PS: The software is longer maintained.

"Powered by FunkBoard"

  • 2005-08-08
  • shdb
  • 2364 阅读

FunkBoard V0.66CF (possibly prior versions) cross site scripting, possible database username/password disclosure & board takeover, possible remote code execution software: author site: http://www.[path_to_funkboard].co.uk/ xss: http://[target]...