
python
Z000000Y
这个作者很懒,什么都没留下…
展开
-
文件递归 迁移 查找指定类型的文件
# -*- coding: utf-8 -*-import osimport sysimport shutilimport subprocessimport uuidimport hashlibdefaultencoding = 'gbk's=os.seproot="D:\code\\test"dst="E:\test"list= os.listdir(root)def原创 2017-04-26 12:30:30 · 217 阅读 · 0 评论 -
Java RMI 反序列化代码执行
#-*- encoding:utf-8 -*-import socketimport binasciiimport timedef check(ip,port,timeout): try: address=(ip,port) socket.setdefaulttimeout(timeout) sock=socket.socket(socket.AF_IN原创 2017-05-10 14:41:13 · 1110 阅读 · 0 评论 -
各种应用服务指纹探测
import socketdef main(host,port): socket.setdefaulttimeout(5) http="GET \r\n" smb= '\x00\x00\x00\xa4\xff\x53\x4d\x42\x72\x00\x00\x00\x00\x08\x01\x40\x00\x00\x00\x00\x00\x00\x00\x00\x00\x0原创 2017-05-10 14:48:42 · 1499 阅读 · 0 评论 -
mssql弱口令检测
import socketimport binasciidef check(host,port,username,password,timeout): try: socket.setdefaulttimeout(timeout) sock = socket.socket(socket.AF_INET, socket.SOCK_STREAM) sock.conne原创 2017-05-10 14:52:09 · 1270 阅读 · 0 评论 -
postgresql 弱口令检测
import socketimport binasciiimport hashlibdef make_response(buf,username,password,salt): pu=hashlib.md5(password+username).hexdigest() buf=hashlib.md5(pu+salt).hexdigest() return 'md5'原创 2017-05-10 14:44:59 · 2036 阅读 · 0 评论 -
Jenkins反序列化代码执行
# -*- encoding:utf-8 -*-import socketimport base64import randomimport urllib2import timeimport binasciidef random_str(len): str1="" for i in range(len): str1+=(random.choice(原创 2017-05-10 14:55:45 · 1527 阅读 · 0 评论 -
zip解密
import zipfileimport optparsefrom threading import Threaddef extractFile(zFile,password): try: zFile.extractall(pwd=password) print '[+] Found password '+password+'\n' ex原创 2017-05-10 15:13:07 · 1606 阅读 · 0 评论 -
grafana弱口令检测
#-*- encoding:utf-8 -*-import urllibimport urllib2def get_plugin_info(): plugin_info = { "name": "grafana 弱口令", "info": "Administrator Access to grafana with default credentials", "level":原创 2017-05-10 15:17:31 · 5616 阅读 · 0 评论