{"id":91,"date":"2022-02-08T22:44:48","date_gmt":"2022-02-08T14:44:48","guid":{"rendered":"https:\/\/www.hm-zy.cn\/?p=91"},"modified":"2022-09-01T22:46:21","modified_gmt":"2022-09-01T14:46:21","slug":"%e4%bf%a1%e6%81%af%e6%94%b6%e9%9b%86","status":"publish","type":"post","link":"https:\/\/www.hm-zy.cn\/?p=91","title":{"rendered":"\u4fe1\u606f\u6536\u96c6"},"content":{"rendered":"<h1>\u5e38\u89c4\u6e17\u900f<\/h1>\n<h2>\u4fe1\u606f\u6536\u96c6\u601d\u8def(\u7f51\u7ad9)<\/h2>\n<pre><code>\u7ed5CDN\u627e\u51fa\u76ee\u6807\u6240\u6709\u771f\u5b9eip\u6bb5\n\u627e\u76ee\u6807\u7684\u5404\u79cdWeb\u7ba1\u7406\u540e\u53f0\u767b\u5f55\u53e3\n\u6279\u91cf\u6293\u53d6\u76ee\u6807\u6240\u6709\u771f\u5b9eC\u6bb5 Web banner\n\u6279\u91cf\u5bf9\u76ee\u6807\u6240\u6709\u771f\u5b9eC\u6bb5 \u8fdb\u884c\u57fa\u7840\u670d\u52a1\u7aef\u53e3\u626b\u63cf\u63a2\u6d4b\u8bc6\u522b\n\u5c1d\u8bd5\u76ee\u6807DNS\u662f\u5426\u5141\u8bb8\u533a\u57df\u4f20\u9001\uff0c\u5982\u679c\u4e0d\u5141\u8bb8\u5219\u7ee7\u7eed\u5c1d\u8bd5\u5b50\u57df\u7206\u7834\n\u6279\u91cf\u6293\u53d6\u76ee\u6807\u6240\u6709\u5b50\u57dfWeb banner\n\u6279\u91cf\u5bf9\u76ee\u6807\u6240\u6709\u5b50\u57df\u96c6\u4e2d\u8fdb\u884c\u57fa\u7840\u670d\u52a1\u7aef\u53e3\u63a2\u6d4b\u8bc6\u522b\n\u6279\u91cf\u8bc6\u522b\u76ee\u6807\u6240\u6709\u5b58\u6d3bWeb\u7ad9\u70b9\u7684Web\u7a0b\u5e8f\u6307\u7eb9\u53ca\u5176\u8be6\u7ec6\u7248\u672c\n\u4ece Git\u4e2d\u67e5\u627e\u76ee\u6807\u6cc4\u9732\u7684\u5404\u7c7b\u654f\u611f\u6587\u4ef6\u53ca\u8d26\u53f7\u5bc6\u7801\uff0c\u5076\u5c14\u751a\u81f3\u8fd8\u80fd\u78b0\u5230\u76ee\u6807\u4e0d\u5c0f\u5fc3\u6cc4\u9732\u7684\u5404\u79cd\u4e91\u7684&quot;AccessKey&quot;\n\u4ece\u7f51\u76d8\/\u767e\u5ea6\u6587\u5e93\u4e2d\u67e5\u627e\u76ee\u6807\u6cc4\u9732\u7684\u5404\u7c7b\u654f\u611f\u6587\u4ef6\u53ca\u8d26\u53f7\u5bc6\u7801\n\u4ece\u5404\u7b2c\u4e09\u65b9\u5386\u53f2\u6f0f\u6d1e\u5e93\u4e2d\u67e5\u627e\u76ee\u6807\u66fe\u7ecf\u6cc4\u9732\u7684 \u5404\u79cd\u654f\u611f\u8d26\u53f7\u5bc6\u7801\uff3b\u56fd\u5185\u76ee\u6807\u5f88\u597d\u4f7f\uff3d\n\u76ee\u6807Svn\u91cc\u6cc4\u9732\u7684\u5404\u7c7b\u654f\u611f\u6587\u4ef6\n\u7f51\u7ad9\u76ee\u5f55\u626b\u63cf\uff3b\u67e5\u627e\u76ee\u6807\u7f51\u7ad9\u6cc4\u9732\u7684\u5404\u7c7b\u654f\u611f\u6587\u4ef6\uff0c\u7f51\u7ad9\u5907\u4efd\u6587\u4ef6\uff0c\u654f\u611f\u914d\u7f6e\u6587\u4ef6\uff0c\u6e90 \u7801 \uff0c\u522b\u4eba\u7684webshell,\u7b49\u7b49\u7b49...\uff3d \u76ee\u6807\u7ad9\u70b9\u81ea\u8eab\u5728\u524d\u7aef\u4ee3\u7801\u4e2d\u6cc4\u9732\u7684\u5404\u79cd\u654f\u611f\u4fe1\u606f\nfofa \/ shodan \/ bing \/ google hacking \u6df1\u5ea6\u5229\u7528\n\u641c \u96c6 \u76ee \u6807 \u5b66 \u751f \u5b66 \u53f7 \/\u5458 \u5de5 \u5de5 \u53f7 \/\u76ee \u6807 \u90ae \u7bb1 \uff3b\u5e76\u987a\u624b\u5230\u5404\u4e2a\u793e\u5de5\u5e93\u4e2d\u53bb\u6279\u91cf\u67e5\u8be2\u8fd9\u4e9b\u90ae\u7bb1\u66fe\u7ecf\u662f\u5426\u6cc4\u9732\u8fc7\u5bc6\u7801\uff3d\n\u76ee\u6807\u81ea\u5df1\u5bf9\u5916\u63d0\u4f9b\u7684\u5404\u79cd\u6280\u672f\u6587\u6863\/ wiki\u91cc\u6cc4\u9732\u7684\u5404\u79cd\u8d26\u53f7\u5bc6\u7801\u53ca\u5176\u5b83\u654f\u611f\u4fe1\u606f\n\u76ee\u6807\u5fae\u4fe1\u5c0f\u7a0b\u5e8f\n\u5206\u6790\u76ee\u6807app Web\u8bf7\u6c42\n\u501f\u52a9js\u63a2\u9488\u641c\u96c6\u76ee\u6807\u5185\u7f51\u4fe1\u606f\n\u60f3\u529e\u6cd5\u6df7\u5165\u76ee\u6807\u7684\u5404\u79cd \u5185\u90e8QQ\u7fa4 \/\u5fae \u4fe1 \u7fa4\n\u5206\u6790\u76ee\u6807\u76f4\u63a5\u4f9b\u5e94\u5546\uff3b\u5c24\u5176\u662f\u6280\u672f\u5916\u5305\uff3d\n\u6839\u636e\u524d\u9762\u5df2\u641c\u96c6\u5230\u7684\u5404\u7c7b\u4fe1\u606f\u5236\u4f5c\u6709\u9488\u5bf9\u6027\u7684\u5f31\u53e3\u4ee4\u5b57\u5178<\/code><\/pre>\n<h2>\u6253\u70b9\u7aef\u53e3<\/h2>\n<pre><code>\nMssql \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 1433\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u8d26\u53f7\u5bc6\u7801\u6cc4\u9732\uff0c\u63d0\u6743\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nSMB \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 445\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nWMI \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 135\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nWinRM \uff3b \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 5985\u7aef\u53e3\uff0c\u6b64\u9879\u4e3b\u8981\u9488\u5bf9\u67d0\u4e9b\u9ad8\u7248\u672cWindows,\u5f31\u53e3\u4ee4\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nRDP \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 3389\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u522b\u4eba\u7559\u7684shift\u7c7b \u540e \u95e8 \uff3d \nSSH \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 22\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nORACLE \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 1521\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u8d26\u53f7\u5bc6\u7801\u6cc4\u9732\uff0c\u63d0\u6743\uff0c\u8fdc\u7a0b\u6267\u884c\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nMysql \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 3306\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u8d26\u53f7\u5bc6\u7801\u6cc4\u9732\uff0c\u63d0\u6743\uff08\u53ea\u9002\u7528\u4e8e\u90e8\u5206\u8001\u7cfb\u7edf\uff09\uff3d \nREDIS \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 6379\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u672a\u6388\u6743\u8bbf\u95ee\uff0c\u5199\u6587\u4ef6\uff08webshell,\u542f\u52a8\u9879\uff0c\u8ba1\u5212\u4efb\u52a1\uff09\uff0c\u63d0 \u6743 \uff3d\nPOSTGRESQL[ \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 5432\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732 \uff3d\nLDAP \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 389\u7aef\u53e3\uff0c\u672a\u6388\u6743\u8bbf\u95ee\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u8d26\u53f7\u5bc6\u7801\u6cc4\u9732\uff3d \nSMTP \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 25\u7aef\u53e3\uff0c\u670d\u52a1\u9519\u8bef\u914d\u7f6e\u5bfc\u81f4\u7684\u7528\u6237\u540d\u679a\u4e3e\u6f0f\u6d1e\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d \nPOP3 \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 110\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d \nIMAP \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 143\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d\nExchange \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 443\u7aef\u53e3\uff0c\u63a5\u53e3\u5f31\u53e3\u4ee4\u7206\u7834 eg: Owa,ews,oab,AutoDiscover... pth\u8131\u90ae\u4ef6, \u654f \u611f \u4fe1 \u606f \u6cc4 \u9732 . . . \uff3d\nVNC \uff3b \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 590\u3002\u7aef\u53e3\uff0c\u5f31 \u53e3 \u4ee4 \uff3d \nFTP \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 21\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u533f\u540d\u8bbf\u95ee\/\u53ef\u5199\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d \nRsync \uff3b \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 873\u7aef\u53e3\uff0c\u672a\u6388\u6743\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d \nMongodb \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 27017\u7aef\u53e3\uff0c\u672a\u6388\u6743\uff0c\u5f31 \u53e3 \u4ee4 \uff3d \nTELNET \uff3b \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 23\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u540e \u95e8 \u690d \u5165 \uff3d \nSVN \uff3b\u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 3690\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\uff0c\u654f\u611f\u4fe1\u606f\u6cc4\u9732\uff3d \nJAVA RMI \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 1099\u7aef\u53e3\uff0c\u53ef\u80fd\u5b58\u5728\u53cd\u5e8f\u5217\u5316\u5229\u7528\uff3d\nCouchDB [ \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 5984\u7aef\u53e3\uff0c\u672a \u6388 \u6743 \u8bbf \u95ee \uff3d\nWEBLOGIC [ \u9ed8\u8ba4\u5de5\u4f5c\u5728tcp 7001\u7aef\u53e3\uff0c\u5f31\u53e3\u4ee4\u90e8\u7f72war\u5305\uff0c\u547d\u4ee4\u6267\u884c\uff0c\u53cd\u5e8f\u5217\u5316\uff3d<\/code><\/pre>\n","protected":false},"excerpt":{"rendered":"\u5e38\u89c4\u6e17\u900f \u4fe1\u606f\u6536\u96c6\u601d\u8def(\u7f51\u7ad9) \u7ed5CDN\u627e\u51fa\u76ee\u6807\u6240\u6709\u771f\u5b9eip\u6bb5 \u627e\u76ee\u6807\u7684\u5404\u79cdWeb\u7ba1\u7406\u540e\u53f0\u767b\u5f55\u53e3 \u6279\u91cf\u6293\u53d6\u76ee\u6807\u6240\u6709\u771f\u5b9eC\u6bb5 Web banner \u6279\u91cf\u5bf9\u76ee\u6807\u6240\u6709\u771f\u5b9eC\u6bb5 \u8fdb\u884c\u57fa\u7840\u670d\u52a1\u7aef\u53e3\u626b\u63cf\u63a2\u6d4b\u8bc6\u522b \u5c1d\u8bd5\u76ee\u6807DNS\u662f\u5426\u5141\u8bb8\u533a\u57df\u4f20\u9001\uff0c\u5982\u679c\u4e0d\u5141&#8230;<a rel=\"nofollow\" class=\"more-link\" href=\"https:\/\/www.hm-zy.cn\/?p=91\">Read more \u00bb<\/a>","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[12],"tags":[],"class_list":["post-91","post","type-post","status-publish","format-standard","hentry","category-12"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/posts\/91","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=91"}],"version-history":[{"count":1,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/posts\/91\/revisions"}],"predecessor-version":[{"id":92,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=\/wp\/v2\/posts\/91\/revisions\/92"}],"wp:attachment":[{"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=91"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=91"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.hm-zy.cn\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=91"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}