<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Doonsec's feed</title><link>http://wechat.doonsec.com/MzkyMzcyMjgwNA.xml</link><description>The latest security articles about WeChat official account</description><language>zh-CN</language><lastBuildDate>Thu, 11 Dec 2025 08:35:53 GMT</lastBuildDate><generator>PyRSS2Gen-1.1.0</generator><docs>http://blogs.law.harvard.edu/tech/rss</docs><image><url>http://wechat.doonsec.com/</url><title>Doonsec</title><link>http://wechat.doonsec.com/static/front/img/doonsec_bak3.png</link></image><item><title>获取linux登录密码</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247484012&amp;idx=1&amp;sn=e43a45ebb52b78ebcc503e15ad324274</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-12-11T02:30:38</pubDate></item><item><title>自研的c2</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483994&amp;idx=1&amp;sn=bd1ac74e565753a1258b2fdf7e1fb46c</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-05-14T02:30:51</pubDate></item><item><title>Wordpress SureTriggers插件漏洞（CVE-2025-3102）创建未经身份验证的管理用户</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483985&amp;idx=1&amp;sn=cfbade59a9a0c0c5625511c1b1198691</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-18T23:24:24</pubDate></item><item><title>Teamview安装版密码提取免杀（最新版）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483980&amp;idx=1&amp;sn=b6b674ad2ccd90b691ac4a205d7c71c2</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-17T23:09:23</pubDate></item><item><title>Todesk密码提取免杀（最新版）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483968&amp;idx=1&amp;sn=7ea838f1187864cf80092d0496c3967b</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-14T21:49:52</pubDate></item><item><title>LangFlow低代码平台rce漏洞（CVE-2025-3248）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483956&amp;idx=1&amp;sn=5ca8231305d6a72923a453b9999aa6e5</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-14T02:30:00</pubDate></item><item><title>GeoServer-Tools-CVE-2024-36401内存马利用工具</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483951&amp;idx=1&amp;sn=a2682aafbaf36a8d13f230de07e070e2</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-13T02:30:00</pubDate></item><item><title>nextjs中间件权限绕过漏洞（CVE-2025-29927）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483941&amp;idx=1&amp;sn=800f2091e3d20945c642bb27c098819e</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-13T00:08:36</pubDate></item><item><title>浅入解析Linux密码存储方式与利用技巧</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483935&amp;idx=1&amp;sn=5e68aa86e0e02eebdb2593ac7fef3202</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-04-03T19:07:57</pubDate></item><item><title>上古神器Pwnkit提权检测：如何排除它的踪迹，守护系统安全（CVE-2021-4034）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483914&amp;idx=1&amp;sn=c8315e7348b64b2db11e467ea90888a7</link><description>什么是 pkexec？Linux 中有个工具叫 pkexec ，它的作用是允许普通用户以管理员（root）身份运行命令。</description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-29T16:24:06</pubDate></item><item><title>Koha CVE-2025-22954：lateissues-export.pl  SQL 注入</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483899&amp;idx=1&amp;sn=2919ed10e40b56be56a33a6bdaa48792</link><description>漏洞获取地址在文章末尾概述Koha是网页界面的图书馆自动化管理系统，使用 MariaDB 或 MySQL 等S</description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-21T02:31:05</pubDate></item><item><title>Metasploit 利用CVE-2025-24071（NTLM Hash Leak via .library-ms File）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483894&amp;idx=1&amp;sn=c06baefca204bea6479a5b7541691193</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-20T00:02:48</pubDate></item><item><title>poc难找？无问AI来帮你</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483882&amp;idx=1&amp;sn=b5e4c934610b742b1a66c27dfdabc7a6</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-19T22:23:05</pubDate></item><item><title>Wazuh RCE漏洞CVE-2025-24016</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483872&amp;idx=1&amp;sn=31b810718d480ba119f67d3e1712ba07</link><description>漏洞批量nuclei验证获取地址在文章末尾漏洞概述该漏洞允许具有 API 访问权限的远程攻击者（受感染的仪表板</description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-18T22:06:40</pubDate></item><item><title>nakivo-任意文件读取（CVE-2024-48248）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483864&amp;idx=1&amp;sn=eaf0d54456e96445a3d8631fae219d46</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-17T23:30:38</pubDate></item><item><title>使用SUSFS隐藏你的设备环境</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483858&amp;idx=1&amp;sn=f9698a27ff303e6102635e533baf1ef5</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-16T20:07:38</pubDate></item><item><title>KSU完美过环境</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483857&amp;idx=1&amp;sn=5a8ee944dbb7db6265b18dacfa03ce28</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-15T17:20:42</pubDate></item><item><title>原版Ksu(LKM)转Ksu Next(GKI)并隐藏过牛头人教程</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483856&amp;idx=1&amp;sn=1621cb0cd7b0cdae824fdb8b2494da50</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-14T18:42:12</pubDate></item><item><title>tomcat-CVE-2025-24813批量检测脚本</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483801&amp;idx=1&amp;sn=adcb2d4cabb8a6d28d6ecd1169bb6986</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-13T21:56:01</pubDate></item><item><title>Ivanti Unauthenticated RCE（CVE-2024-8190）</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483795&amp;idx=1&amp;sn=9f3a6f1b4943c35a1feeabd78e93e029</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-11T22:11:25</pubDate></item><item><title>linux权限维持-udev后门</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483789&amp;idx=1&amp;sn=1623fb76939d09902a19e383a3e3fa16</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-10T22:08:11</pubDate></item><item><title>轮询代理池-让你每次请求的ip都不一样</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483781&amp;idx=1&amp;sn=15fd25798b4b73c40ef3423ac59866f6</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-03-05T22:46:09</pubDate></item><item><title>exchange邮件账号密码爆破</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483746&amp;idx=1&amp;sn=e78efb4b159ca2b8d17b61b2e42d97ea</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-02-08T23:28:17</pubDate></item><item><title>Linux用户权限捕获并解析任意http/https流量-超级无敌好用</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483741&amp;idx=1&amp;sn=7586140fa1f0670d86c2e37f9ec93a0d</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-02-07T20:43:45</pubDate></item><item><title>Windows权限维持-保姆级</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483694&amp;idx=1&amp;sn=9a6a6d8ed58cffbe6cec4685b67ed083</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-02-06T20:53:54</pubDate></item><item><title>Linux权限维持-保姆级</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483688&amp;idx=1&amp;sn=ef19db8ffa3567e28a2afec8e57daa60</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-02-05T20:48:51</pubDate></item><item><title>Linux提权之Capabilities提权</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483682&amp;idx=1&amp;sn=5fbd36de98e3798e1bc10a3960cc25cb</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-01-22T23:42:05</pubDate></item><item><title>保姆级Havoc搭建教程</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483670&amp;idx=1&amp;sn=97a1d8b7d4da68c7c3149a0075eb3143</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-01-21T23:32:04</pubDate></item><item><title>CVE-2025-0282  Ivanti Connect Secure RCE 漏洞复现</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483660&amp;idx=1&amp;sn=019e2577a4f383a58234f8fb5e334b7f</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2025-01-14T23:42:17</pubDate></item><item><title>Palo CVE-2024-0012漏洞利用</title><link>https://mp.weixin.qq.com/s?__biz=MzkyMzcyMjgwNA==&amp;mid=2247483654&amp;idx=1&amp;sn=54117615219fc5eae78a56c748c36bf5</link><description></description><author>爱坤sec</author><category>爱坤sec</category><pubDate>2024-11-22T01:31:02</pubDate></item></channel></rss>