不再关注网络安全
Google dork description: Dork to find sites likely running Social Network Tabs plugin 1.7.1 for WordPress and likely affected by CVE-2018-20555 which allows remote attackers to discover Twitter access_token, access_token_secret, consumer_key, and ...
# Google Dork: inurl:/forgotpassword intext:"enter username and email" # The search results found from this dork, are potentially vulnerable sites to account takeover. If attacker inserts victim's username along with attacker's...
This dork can hunt out vulnerable drupal websites with their password reset pages of various accounts for account takeover. *Description*: Drupal users using PRLP (Password Reset Landing Page) module. When this module is installed, If a user reque...
一组很棒的渗透测试资源,网络安全工具包,包括工具、书籍、会议、杂志和其他的东西 渗透测试工具 Awesome Penetration Testing A collection of awesome penetration testing resources Online Resources Penetration Testing Resources Exploit development Social Engineering Resources Lock Picking Resources Tools Pe...
Cyphor 0.19 (possibly prior versions) SQL Injection / Board takeover / cross site scriptingmy advisory & poc exploit:http://rgod.altervista.org/cyphor019.htmlrgodModerator PS: The software is longer maintained.
FunkBoard V0.66CF (possibly prior versions) cross site scripting, possible database username/password disclosure & board takeover, possible remote code execution software: author site: http://www.[path_to_funkboard].co.uk/ xss: http://[target]...