<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"><channel><title>Doonsec's feed</title><link>http://wechat.doonsec.com/MzkzNzg4MTI0NQ.xml</link><description>The latest security articles about WeChat official account</description><language>zh-CN</language><lastBuildDate>Wed, 18 Feb 2026 22:42:54 GMT</lastBuildDate><generator>PyRSS2Gen-1.1.0</generator><docs>http://blogs.law.harvard.edu/tech/rss</docs><image><url>http://wechat.doonsec.com/</url><title>Doonsec</title><link>http://wechat.doonsec.com/static/front/img/doonsec_bak3.png</link></image><item><title>Mysqljs的一个小trick</title><link>https://mp.weixin.qq.com/s/iLA6aKabJvFeP8K46es_1Q</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-16T18:50:13</pubDate></item><item><title>【工具】一款图形化Jenkins综合漏洞利用工具</title><link>https://mp.weixin.qq.com/s/BQw7wUrAVuW1Y6P0wVEGYA</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-14T22:03:28</pubDate></item><item><title>【工具】自动化提取webpack打包前端接口</title><link>https://mp.weixin.qq.com/s/HJe9u0it-ol4ae3BqtXD4g</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-11T13:57:02</pubDate></item><item><title>【工具】Spring-boot框架扫描工具</title><link>https://mp.weixin.qq.com/s/or5MeN_eKbRXUS5Rtq2-cg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-09T13:33:35</pubDate></item><item><title>【工具】Heapdump图形化解密工具</title><link>https://mp.weixin.qq.com/s/BBwLIrfKoBuZQTICzhxvDw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-07T12:59:58</pubDate></item><item><title>【工具】Burp自动化SSRF检测插件</title><link>https://mp.weixin.qq.com/s/AOmLCkOyh76llsKzxUcKNQ</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-06T13:29:17</pubDate></item><item><title>【工具】VueCrack-一键检测Vue站点未授权漏洞</title><link>https://mp.weixin.qq.com/s/dbJhEjVo6RkT82HHY39iew</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-05T13:09:58</pubDate></item><item><title>2025年度总结</title><link>https://mp.weixin.qq.com/s/J1kNhMba9J1XzhYB-77Nmw</link><description>\\x0a\\x0a\\x26lt;a class=\\x26quot;wx_topic_link\\x26quot; data-topic=\\x26quot;1\\x26quot; style=\\x26quot;color: #7D90A9;\\x26quot;\\x26gt;#我的2025公众号总结\\x26lt;/a\\x26gt;\\x0a</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-04T12:55:29</pubDate></item><item><title>【工具】Burp插件DouSql，自动化检测sql注入</title><link>https://mp.weixin.qq.com/s/A3Jx89eDpkbBENYF4im__w</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-03T16:47:28</pubDate></item><item><title>深度实例分析：攻防视角下的AI框架组件中的注入漏洞</title><link>https://mp.weixin.qq.com/s/jLY9wEB2GjGVOoMHBDrFQg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-02-02T17:51:27</pubDate></item><item><title>隧道代理攻防技术战争手册</title><link>https://mp.weixin.qq.com/s/8zJpJHGaa6hTfaUTMHnZ-g</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-23T23:16:13</pubDate></item><item><title>【工具】Hikvision海康威视综合漏洞利用工具</title><link>https://mp.weixin.qq.com/s/yy93HOymGEFwwmK41wm6qg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-22T09:37:30</pubDate></item><item><title>hw中用到的某云waf绕过技巧</title><link>https://mp.weixin.qq.com/s/uf67V4B3nXP14OySwsSuWg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-20T17:28:13</pubDate></item><item><title>【好靶场】云安全专场-WP</title><link>https://mp.weixin.qq.com/s/HiGlt_27wdKU8GZoSS8sSA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-19T20:32:45</pubDate></item><item><title>【工具】Shiro反序列化利用工具</title><link>https://mp.weixin.qq.com/s/XpaK0jTBaHVjz4PBz79NSw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-18T17:56:22</pubDate></item><item><title>【工具】Sqlmap中文汉化版</title><link>https://mp.weixin.qq.com/s/v4z0IIwacbPlSGaknr5cgw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-16T17:05:02</pubDate></item><item><title>若依(RuoYi)框架漏洞战争手册</title><link>https://mp.weixin.qq.com/s/Zq4GNRjWh2TOEa1-3lbsNQ</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-15T22:39:27</pubDate></item><item><title>白嫖超级会员｜寒假弯道超车，好靶场喊你学习啦</title><link>https://mp.weixin.qq.com/s/43pCm1UoFxcUdaJH_8NOxg</link><description>.5 💡 好靶场我们是一个专门为所有网络安全人员制作网络安全靶场的团队，我们立志于制作出让所有安全同好都能学</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-14T11:22:31</pubDate></item><item><title>信息搜集之边缘资产和隐形资产的发掘</title><link>https://mp.weixin.qq.com/s/391oHtoYz0ec9ww8gfxlYA</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-13T21:25:12</pubDate></item><item><title>【AI】以小白视角看大模型数据投毒——关于大模型数据投毒的学习心得与技巧分享</title><link>https://mp.weixin.qq.com/s/gYcHrmFuldbzV8e_IENQQw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-12T17:31:13</pubDate></item><item><title>【工具】多平台GUI图形化资产测绘工具，支持一键导出</title><link>https://mp.weixin.qq.com/s/J2OSg_jkFW876efv-dtY1Q</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-10T22:49:43</pubDate></item><item><title>【SRC】记某次未授权导致的20多w敏感信息泄露</title><link>https://mp.weixin.qq.com/s/aW-FKpUFt_Dy9sUSCAn0cw</link><description>声明！本文章所有的文章和工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-09T19:29:01</pubDate></item><item><title>众测环境下被忽视的“水洞”攻击面</title><link>https://mp.weixin.qq.com/s/0qNQRE3Z9ohWvTajDDYhNg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-08T21:58:36</pubDate></item><item><title>【SRC】金融场景挖掘技巧</title><link>https://mp.weixin.qq.com/s/Qyt-pRtH1ZTs2gxTyOFKWw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2026-01-07T19:34:39</pubDate></item><item><title>【cyberstricklab】lab-6 wp</title><link>https://mp.weixin.qq.com/s/LyzyhzhYf1GiDyF6Pvhr9w</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队以及工具开发者无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-25T15:03:31</pubDate></item><item><title>【工具】红队集成工具箱-One-Fox-T00ls</title><link>https://mp.weixin.qq.com/s/tXXXNQQohvKIOilU-5dX4A</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-20T11:48:09</pubDate></item><item><title>【cyberstricklab】 lab-4 内网渗透</title><link>https://mp.weixin.qq.com/s/i5pfaGDcCdJzrSgOz4rvyA</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队以及工具开发者无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-18T20:51:53</pubDate></item><item><title>【工具】Nacos综合漏洞利用工具</title><link>https://mp.weixin.qq.com/s/cR7P5gv6-6F8b4AKgei6vw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队以及工具开发者无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-15T23:50:20</pubDate></item><item><title>【cyberstrikelab】lab3-内网渗透，NetLogon特权提升</title><link>https://mp.weixin.qq.com/s/FqDF4MWxl0pabLcibeX8Yg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-13T17:55:20</pubDate></item><item><title>【cyberstrikelab】lab2</title><link>https://mp.weixin.qq.com/s/Sv7UZ1tue67SXU0JK9cHiA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-12T17:52:10</pubDate></item><item><title>【cyberstrikelab】PT14+PT15</title><link>https://mp.weixin.qq.com/s/6udpHugEzG8Z0ezRWjWmUA</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-06T17:26:23</pubDate></item><item><title>【cyberstrikelab】PT-17 CVE-2025-24813</title><link>https://mp.weixin.qq.com/s/kum1e5Tt2SAjW70KEWA_ug</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-05T19:27:25</pubDate></item><item><title>【cyberstrikelab】database系列</title><link>https://mp.weixin.qq.com/s/D-XmUeeU9vRJDgqgk7qeUQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-04T17:18:48</pubDate></item><item><title>【工具】图形化nmap扫描工具FastNamp</title><link>https://mp.weixin.qq.com/s/OHTsuBs6gV9k-afMH5bRgg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-03T18:03:41</pubDate></item><item><title>【工具】MDUT-轻量级数据库管理工具</title><link>https://mp.weixin.qq.com/s/T1TuLYlY1Gy9m9FkAvyLQw</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-02T22:39:54</pubDate></item><item><title>【cyberstrikelab】PT-7,PT-13</title><link>https://mp.weixin.qq.com/s/L9Ef9c7DqFBlzokrkkmZcg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-11-01T13:08:18</pubDate></item><item><title>【cyberstrikelab】PT-4</title><link>https://mp.weixin.qq.com/s/IE1G-yQOBwVYNey2z03OAg</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-10-31T17:52:56</pubDate></item><item><title>【cyberstrikelab】PT-12</title><link>https://mp.weixin.qq.com/s/-QK-Bw164ako-g4ifWhWyQ</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-10-30T18:09:26</pubDate></item><item><title>【cyberstrikelab】PT-2</title><link>https://mp.weixin.qq.com/s/RFJngRcEuVC3Vwez0ZZLtQ</link><description>声明！本文章所有的工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-10-29T20:10:54</pubDate></item><item><title>【cyberstrikelab】PT-8</title><link>https://mp.weixin.qq.com/s/SOcDp9tGVjkQ6KnbHWSYfQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-10-28T21:44:36</pubDate></item><item><title>【cyberstrikelab】PT-3</title><link>https://mp.weixin.qq.com/s/u5ruWOQNmtXbYXJBxhsfuQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-10-26T20:26:17</pubDate></item><item><title>【cyberstrikelab】PRIV-7靶机渗透</title><link>https://mp.weixin.qq.com/s/a_l-q901kWOVhOfcAxB5PA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-06-14T16:37:10</pubDate></item><item><title>【cyberstrikelab】PT-1</title><link>https://mp.weixin.qq.com/s/wJ7LVOZDgKkjiph5wVVA2A</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-06-11T20:28:24</pubDate></item><item><title>【HTB】Planning靶机</title><link>https://mp.weixin.qq.com/s/x8bqPTB0Fxs_0Cj5SEIByQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-06-08T17:29:15</pubDate></item><item><title>【CTF】PWN梭哈工具-pwnsasi-帮助小白快速上手</title><link>https://mp.weixin.qq.com/s/R3EJ5GJhRLTRETW5zTySVw</link><description>声明！本公众号及团队所做的文章及工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-05-16T17:00:30</pubDate></item><item><title>【CTF】2025御网杯wp Misc全解+Web全解+Crypto全解+Re3</title><link>https://mp.weixin.qq.com/s/X_C_qFwnViFp6vGCq5IDrw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-05-14T18:45:33</pubDate></item><item><title>【工具】CF-Hero：自动化绕过DNS查询真实ip</title><link>https://mp.weixin.qq.com/s/z0UfywJiNYHzuNipK4J0Ig</link><description>CF-Hero 是一种侦察工具，它使用多个数据源来发现受 Cloudflare 保护的 Web 应用程序的源 IP 地址</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-05-05T17:23:52</pubDate></item><item><title>【HTB】Sauna-WindowsAD域</title><link>https://mp.weixin.qq.com/s/2UZnwE6gmksZmlWV_D_HRg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-20T11:28:58</pubDate></item><item><title>【弱口令爆破工具】week-passwd一款图形化弱口令检测工具</title><link>https://mp.weixin.qq.com/s/PM-S-kUe31bfi9JKHFvVHg</link><description>一款专门为安全研究人员设计的图形化弱口令检测工具，集成支持FTP,SSH,MYSQL,MSSQL等多种类型的弱口令爆破工具！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-13T13:37:28</pubDate></item><item><title>【蓝队】BlueTeamTools 蓝队分析研判工具箱</title><link>https://mp.weixin.qq.com/s/-Z2dzMI6Ta6iwL3CILFLQQ</link><description>声明！本公众号及团队所做的文章及工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-08T16:02:04</pubDate></item><item><title>【HTB】PermX靶机渗透</title><link>https://mp.weixin.qq.com/s/5lWnt0GtpqJBLis_4laSAA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-07T20:52:55</pubDate></item><item><title>【HTB】Code靶机渗透</title><link>https://mp.weixin.qq.com/s/dCbkFtJxXYwHGtqWuhkIWQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-06T20:47:31</pubDate></item><item><title>【HTB】UnderPass靶机渗透</title><link>https://mp.weixin.qq.com/s/wmFIP3anQfoeXyOu225YQw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-05T16:13:42</pubDate></item><item><title>【HTB】Titanic靶机渗透</title><link>https://mp.weixin.qq.com/s/JUf2CGBZS1qCK_98j28HkA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-04T21:26:49</pubDate></item><item><title>【OA漏洞综合工具】I-Wanna-Get-All-一款综合OA系统漏洞利用工具</title><link>https://mp.weixin.qq.com/s/j2we_Z9E_iJ2oMTdtk3dnw</link><description>常见OA系统漏洞监测图形化工具</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-03T17:13:25</pubDate></item><item><title>守护网络安全的另一种战场：为什么我们选择「笨方法」</title><link>https://mp.weixin.qq.com/s/R6fewMyLmWBvV7cFJUI9cw</link><description>一、写在前面：我们为何要「卷」漏洞提交？近期补天漏洞榜单的竞争引发热议，当一家安全团队单月提交超2000个漏</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-03T16:46:07</pubDate></item><item><title>【HTB】Bashed靶机渗透</title><link>https://mp.weixin.qq.com/s/YpeiIBU6f98snKGAVQDTfQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-02T19:42:54</pubDate></item><item><title>恭喜榜首！来聊聊刷榜“漏洞”背后的技术坚持</title><link>https://mp.weixin.qq.com/s/NSuTsQ422oTS2u8HrR5xqQ</link><description>补天平台榜单截图（截至4月1日9点）image-202504012112232061️⃣ 先道一声“恭喜”近期补</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-02T13:42:54</pubDate></item><item><title>【HTB】Shocker靶机渗透</title><link>https://mp.weixin.qq.com/s/wzYnXDEDOdW69UAlJm3qDg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-04-01T11:25:35</pubDate></item><item><title>【反序列化】Shior漏洞复现</title><link>https://mp.weixin.qq.com/s/uer2SLhFxYdj2I5S-Tiumw</link><description>声明！本公众号及团队所做的文章及工具分享仅仅只是供大家学习交流为主，切勿用于非法用途，如有任何触犯法律的行为，均与本人及团队无关！</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-31T10:22:09</pubDate></item><item><title>【HTB】Windows-Active靶机渗透(AD域基础)</title><link>https://mp.weixin.qq.com/s/OD21FLDasZ_abnVfM9jsgg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-30T14:04:20</pubDate></item><item><title>CVE-2025-30208-Vite任意文件读取漏洞服批量漏洞扫描</title><link>https://mp.weixin.qq.com/s/uUQWuwD2F6QckpZA5FovVg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-29T10:37:02</pubDate></item><item><title>【HTB】dog靶机渗透</title><link>https://mp.weixin.qq.com/s/2j_Lqdc85pqAB09AZaPPlw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-28T18:10:06</pubDate></item><item><title>【HTB】Alert靶机渗透</title><link>https://mp.weixin.qq.com/s/lpiDfizQvjbRq8zUMIYlpg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-27T23:06:44</pubDate></item><item><title>【HTB】Cap靶机渗透</title><link>https://mp.weixin.qq.com/s/-ScYJVyEcD6erLtK1Tw5sA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-26T22:34:46</pubDate></item><item><title>【htb】Chemistry(化学)-靶机渗透</title><link>https://mp.weixin.qq.com/s/zY85Til9FM9SKVJhgJgkfg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-25T21:59:01</pubDate></item><item><title>【CTF】UTCTF2025 wp</title><link>https://mp.weixin.qq.com/s/4dhXSLdAHMl-6pq0FWMi7w</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-18T15:41:36</pubDate></item><item><title>【OSCP】NullByte靶机渗透-sql注入-权限利用</title><link>https://mp.weixin.qq.com/s/hMvUuiunx7S5wDP40WLO_Q</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-17T21:39:45</pubDate></item><item><title>网络安全新风向-嵌入式安全</title><link>https://mp.weixin.qq.com/s/G1HzsNciSE29uQnip-7JIw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-14T14:37:22</pubDate></item><item><title>分享几个CVE漏洞复现</title><link>https://mp.weixin.qq.com/s/lr9y9DFWMpUjsc-bFLlNgQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-12T21:36:24</pubDate></item><item><title>Vulnhub-election靶机，多重信息收集+suid提权</title><link>https://mp.weixin.qq.com/s/vzZE3Euihl2E9kJYgxYCCA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-09T23:14:28</pubDate></item><item><title>DecryptTools-一款集成多数据库的综合加解密工具</title><link>https://mp.weixin.qq.com/s/cSSoSO9r_IairuqZzGj6Ug</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-05T16:35:09</pubDate></item><item><title>Vulnhub-Hackme靶机-sql注入+文件上传+反弹shell</title><link>https://mp.weixin.qq.com/s/uLM0F6LP9ZpdOry44uipEw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-04T20:30:09</pubDate></item><item><title>铲子SATST-一款自动化代码审计工具</title><link>https://mp.weixin.qq.com/s/a7whv-Rb0bULpK-GNRjwzg</link><description>铲子是一个简单易用的 JAVA SAST 工具，它利用了污点分析技术，内置了常用漏洞规则，支持反编译、自定义规则，旨在为安全工程师提供一款简单、好用、价格厚道的代码安全扫描产品。</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-03T21:36:51</pubDate></item><item><title>VulnHub-FristiLeaks_1.3靶机-泄露加解密+文件上传+反向shell</title><link>https://mp.weixin.qq.com/s/8DBVHj_VW7D2RZJJLvv_QQ</link><description>信息泄露，通过加解密得到提示+文件上传漏洞利用反弹shell+反向shell监听</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-02T21:33:57</pubDate></item><item><title>Vulnhub-Zico2靶机-漏扫弱口令数据库+文件包含反弹shell+zip,tar提权</title><link>https://mp.weixin.qq.com/s/hS-MvPCHF38htnVj-fs2CA</link><description>首先利用目录扫描拿到数据库文件，然后弱口令进入，利用文件包含反弹shell，最终信息收集到无root权限执行，利用zip,tar命令提权</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-03-01T16:58:28</pubDate></item><item><title>Jsmoke-一款强大的js检测工具，浏览器部署即用,使用方便且高效</title><link>https://mp.weixin.qq.com/s/vdV-0Y6NltsNM-AlkekY9w</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-28T22:59:16</pubDate></item><item><title>Vulnhub-Troll-1靶机-ftp匿名登录+流量包分析+hydra爆破+ssh登录脚本提权</title><link>https://mp.weixin.qq.com/s/B2uoKdWGAxG_lntCd0oHDA</link><description>信息收集利用ftp匿名登录+流量包分析得到路径+hydra爆破得到账户密码+ssh登录脚本提权</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-27T21:19:34</pubDate></item><item><title>Vulnhub-DC-9靶机-SQL注入拿到账户+利用端口敲门连接ssh+信息泄露利用root脚本追加提权</title><link>https://mp.weixin.qq.com/s/BIMxAIDtTqHjpm4xORCGdA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-26T18:43:29</pubDate></item><item><title>OSCP-靶机DC-6-wpscan爆破+命令注入反弹shell+nmap提权</title><link>https://mp.weixin.qq.com/s/wFuJsToJbnQHPRHwUbMhyA</link><description>利用wpscan枚举账号信息，爆破账号登后台命令注入反弹shell，利用shell脚本切换账号，最后使用nmap命令提权</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-24T19:55:40</pubDate></item><item><title>Slack渗透工具箱-一款安全服务集成化工具平台，内置多工具集，支持导入自定义poc</title><link>https://mp.weixin.qq.com/s/vmP4_rpPAzqZ5G7nwaDvQQ</link><description>一款安全服务集成化工具平台，希望能帮助你少开几个应用测试  ，内置多个工具，支持自定义poc</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-21T18:22:47</pubDate></item><item><title>OSCP备考-Vulnhub靶机-kioptix2014-三种方法getshell及提权</title><link>https://mp.weixin.qq.com/s/Tbtg8XUriOsnopEKw6P_Jw</link><description>利用prel反弹shell，三种方法getshell，无wget命令改用fetch命令</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-19T18:04:01</pubDate></item><item><title>渗透工具工具箱-EasyTools，具备GUI界面,网址导航,工具导航,信息查询,信息处理,编码解码,随机生成,免杀生成等功能</title><link>https://mp.weixin.qq.com/s/1GEy3xKfoTJfjeknW6bHFA</link><description>本工具目前糅合了网址导航、工具导航、信息查询、信息处理、编码解码、随机生成、免杀生成等功能</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-17T21:32:08</pubDate></item><item><title>CTFHub-RCE题目wp</title><link>https://mp.weixin.qq.com/s/PTkLcgMC_gywjYkR0saejg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-02-09T17:47:42</pubDate></item><item><title>xray图形化工具-Super Xray,支持自定义导入poc库</title><link>https://mp.weixin.qq.com/s/p9KvGVcujxNvN6NkiKg8jg</link><description>一款Web漏洞扫描工具XRAY的GUI启动器，xray是一款优秀的漏洞扫描工具</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-25T17:24:18</pubDate></item><item><title>YongYouNcTool-一款高效利用用友NC系列漏洞检测利用工具</title><link>https://mp.weixin.qq.com/s/nrik_SaLyT8WXh2kmMvc4w</link><description>一款高效漏洞检测工具：用友NC系列漏洞检测利用工具，支持一键检测、命令执行回显、文件落地、一键打入内存马、文件读取等功能</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-24T20:43:51</pubDate></item><item><title>2024春秋杯冬季赛部分wp</title><link>https://mp.weixin.qq.com/s/0zwc8GSCOjHNqytPi6r0vg</link><description>本次春秋杯冬季赛不仅是一场技术竞技，更是网络安全领域人才培养和创新发展的重要契机</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-20T21:46:20</pubDate></item><item><title>强力工具助你一臂之力：XXECheck–全面提升XML安全，防护XXE漏洞！</title><link>https://mp.weixin.qq.com/s/GKpP_leqPF0EvLJ6L8byQQ</link><description>一款XXE漏洞检测工具，支持 DoS 检测（DoS 检测默认开启）和 DNSLOG 两种检测方式，能对普通 xml 请求和 xlsx 文件上传进行 XXE 漏洞检测。</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-18T19:07:46</pubDate></item><item><title>2024Goby红队版工具-附2024年poc合集，支持导入自定义poc库</title><link>https://mp.weixin.qq.com/s/UyLIKs_cuEEfyA2Q8lLx5g</link><description>Goby是基于网络空间映射技术的下一代网络安全工具，通过为 目标网络 建立全面的资产知识库，生成网络安全事件和漏洞的应急响应。</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-17T19:33:18</pubDate></item><item><title>渗透测试必刷的14个靶场推荐-包含十大漏洞靶场以及真实环境下的渗透靶场</title><link>https://mp.weixin.qq.com/s/i8kv-sy-EBbf78bYtkCfaw</link><description>给大家推荐一些适合从事渗透测试工作练习的靶场，包含一些基础靶场以及难度较高的靶场，希望对大家学习渗透测试有一定帮助</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-16T13:33:17</pubDate></item><item><title>一款功能强大的红蓝对抗工具Potato Tool-具备免杀,提权,漏扫,内存马生成,ai分析,溯源等高效的网络安全综合工具</title><link>https://mp.weixin.qq.com/s/nPRRb7qe5hBFVaBHKdREtg</link><description>这是一款功能强大的红蓝对抗工具，具备免杀,提权,漏扫,内存马生成,ai分析,溯源,解密,信息生成等功能且非常高效网络安全综合工具</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-15T17:44:53</pubDate></item><item><title>API扫描利器-APIKit1.0二开工具-增加了扫描开关并修复了输出页面卡死的问题</title><link>https://mp.weixin.qq.com/s/AknduupejHgJn2A7JWTBYA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-13T23:20:24</pubDate></item><item><title>一键生成常见中间件框架内存马工具-MemShellParty-支持在线使用，使内存马测试变得简单高效</title><link>https://mp.weixin.qq.com/s/8OuRpMnN1SAYn1C0a6jovw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-09T18:56:18</pubDate></item><item><title>红队单兵作战渗透利器-DudeSuite，一款集成漏洞验证,安全工具,信息收集的图形化工具</title><link>https://mp.weixin.qq.com/s/vR0H8pk45Jzljc5Uxyvz0w</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-06T17:26:14</pubDate></item><item><title>渗透必备工具-Burpsuite最新专业版中文破解安装教程及代理配置，附鼠标光标错位移位解决教程</title><link>https://mp.weixin.qq.com/s/nOte1mjSRZFigY2xDrkUiA</link><description>burpsuite作为渗透测试必备工具，分为社区版和专业版，社区版免费功能有限，这里给大家提供专业版破解教程</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-04T12:21:41</pubDate></item><item><title>免杀工具JoJoLoader-助力红队成员一键生成免杀木马，可过360，火绒等</title><link>https://mp.weixin.qq.com/s/49cPuB5tf8nGjPP7jrNDUg</link><description>助力红队成员一键生成免杀木马，可以免杀360，火绒等防护软件</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-03T14:09:34</pubDate></item><item><title>一文学会白嫖Typora最新专业版(只需几分钟即可搞定)</title><link>https://mp.weixin.qq.com/s/AOC0JBLdP382xq7lQXBubQ</link><description>考虑到很多朋友需要写微信公众号，想要使用本地编辑器trpora却需要花钱，这里给大家分享一下破解教程，让你写文章快人一步</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2025-01-02T21:47:53</pubDate></item><item><title>震惊！！美国某计算机女博士OnlyFans创业，年入千万</title><link>https://mp.weixin.qq.com/s/1gCp7913deFeBfEltxVyUQ</link><description>她在得克萨斯大学攻读计算机科学博士学位。和其他优秀的学生一样，她梦想着成为一名教授。但当她认清现实后，发现这注定只能是一场梦</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-31T11:39:32</pubDate></item><item><title>一款功能强大且精准的互联网资产测绘引擎-CyberEdge</title><link>https://mp.weixin.qq.com/s/B0xXN5PcDhOJnkjcn9sUBQ</link><description>CyberEdge 是一款精心设计的互联网资产测绘工具，为网络安全专业人士提供精准、高效的扫描体验。</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-30T22:31:00</pubDate></item><item><title>一款高效处理fscan输出结果的小工具</title><link>https://mp.weixin.qq.com/s/cj5U3cqODMM_Zmm4X8ecXA</link><description>一个用于处理fsacn输出结果的图形化工具（尤其面对大量资产的fscan扫描结果做输出优化，让你打点快人五步！！！），五天的工作5个小时搞定，剩下4天半摸鱼。</description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-29T22:33:06</pubDate></item><item><title>打造属于你的图像化漏洞利用工具</title><link>https://mp.weixin.qq.com/s/dlo1eNLtCldO1wX4A3P1bA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-27T21:09:44</pubDate></item><item><title>渗透测试工具：dalfox-一款自动化XSS漏洞扫描工具</title><link>https://mp.weixin.qq.com/s/ouK2d3bUQM_4YSMslATPVA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-23T22:56:43</pubDate></item><item><title>#oscp SolidState1靶机通关详细解析</title><link>https://mp.weixin.qq.com/s/Q_D1hdNTXuxf4KGBgxyaEA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-22T22:46:13</pubDate></item><item><title>#红队全栈 powershell-简单使用</title><link>https://mp.weixin.qq.com/s/COHR8EUQKAsSVx7i_Zrq6g</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-19T23:00:08</pubDate></item><item><title>\"瑞士军刀\"-netcat命令基本使用</title><link>https://mp.weixin.qq.com/s/uObmU14nBhxt4hYYOFG72A</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-17T22:20:15</pubDate></item><item><title>一款高效渗透测试工具--mitan</title><link>https://mp.weixin.qq.com/s/qINxCB49yWtYKI1LTjshdw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-15T22:55:02</pubDate></item><item><title>oscp-电子取证1</title><link>https://mp.weixin.qq.com/s/axmFQ4bL1IeZTnGeHq-b8g</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-14T14:44:44</pubDate></item><item><title>kioptix level 3靶机getshell及提权详细教程</title><link>https://mp.weixin.qq.com/s/Ce7PnxGdNHqrJKBqBnXpaQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-13T16:04:22</pubDate></item><item><title>微信防撤回插件部署及使用</title><link>https://mp.weixin.qq.com/s/_UFLogHm7WajCktFo0NJ_w</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-12T16:43:00</pubDate></item><item><title>kali美化-定时更换桌面背景以及登录背景</title><link>https://mp.weixin.qq.com/s/ZPsLC0k-jb16XM9eo09BkA</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-11T15:06:35</pubDate></item><item><title>渗透测试-kioptix level 2靶机getshell及提权</title><link>https://mp.weixin.qq.com/s/rolp2sog7bV90cHvB5JFBg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-10T11:00:21</pubDate></item><item><title>BurpSuite-暴力破解以及验证码识别绕过</title><link>https://mp.weixin.qq.com/s/O8IuYEFodSZQ2njTMDY9rw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-07T11:12:02</pubDate></item><item><title>渗透测试常用-火狐浏览器插件一键部署</title><link>https://mp.weixin.qq.com/s/-oB7mO-IflbdeNHmEBWf3A</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-06T16:55:14</pubDate></item><item><title>渗透测试-Kioptix Level 1靶机getshell及提权</title><link>https://mp.weixin.qq.com/s/q_2o0lz-xwBAM_Ha8fFuFQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-05T23:16:19</pubDate></item><item><title>渗透测试-登录密码重置技巧</title><link>https://mp.weixin.qq.com/s/vWrZku8qF1xJbdU9mpwAoQ</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-04T21:38:27</pubDate></item><item><title>信息收集技巧-谷歌语法使用大全</title><link>https://mp.weixin.qq.com/s/1H05q5LVuju8kki4Kqmncg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-12-02T12:44:57</pubDate></item><item><title>2024web漏洞扫描辅助神器xray安装和使用</title><link>https://mp.weixin.qq.com/s/o35bOtIDJNac_bP63DWVLg</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-11-28T12:38:11</pubDate></item><item><title>博客园最新美化教程</title><link>https://mp.weixin.qq.com/s/N2gmIwZqO3qGFOmEH-volw</link><description></description><author>泷羽Sec-track</author><category>泷羽Sec-track</category><pubDate>2024-11-25T13:15:05</pubDate></item></channel></rss>