<?xml version="1.0" standalone="yes"?>
<?xml-stylesheet type="text/xsl" href="css/rss.xslt"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:trackback="http://madskills.com/public/xml/rss/module/trackback/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/"><channel><title>神秘小强&amp;amp;１９４３ - 八卦工具</title><link>http://www.smxiaoqiang.cn/</link><description>社会工程学|0day - </description><generator>RainbowSoft Studio Z-Blog 1.8 Arwen Build 90619</generator><language>zh-CN</language><copyright>本站关键字：社会工程学,小强,0dayCopyright 2008-2010 小强 All Rights Reserved.鲁ICP备09002898号</copyright><pubDate>Thu, 09 Sep 2010 11:02:45 +0800</pubDate><item><title>dedecms 5.5 0day</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Mon, 08 Mar 2010 17:50:35 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>DEDECMS5.5的GETSHELL漏洞，危害不小，前几天得到。</p><p>EXP利用：</p><p>CMD里执行：&nbsp; dedeexp <a href="http://www.smxiaoqiang.cn/">www.smxiaoqiang.cn</a> /</p><p>成功后在目标网站产生DATA/CACHE/T.PHP文件，一句话木马连接，密码是t</p><p>示意图：</p><p><img title="" alt="" src="http://www.smxiaoqiang.cn/upload/2010/3/201003081754217216.jpg" onload="ResizeImage(this,520)" /></p><p>EXP下载：</p><p><a href="http://www.smxiaoqiang.cn//UPLOAD/2010/3/dede5.5exp.rar">http://www.smxiaoqiang.cn//UPLOAD/2010/3/dede5.5exp.rar</a></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=285</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=285&amp;key=e5ea3dec</trackback:ping></item><item><title>360安全卫士本地提权webshell下测试程序</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Tue, 02 Feb 2010 16:35:20 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>服务器安装360的应该大于rising，手头里WEBSHELL发毛的哥们有福了</p><p>测试方法：<br />在webshell下运行360.exe<br /><br />成功后，3389连接到服务器，按5下shift，得到一个cmd。<br />&nbsp;</p><p><img title="" alt="" src="http://www.smxiaoqiang.cn/upload/2010/2/201002021637520444.bmp" onload="ResizeImage(this,520)" /></p><p>&nbsp;测试程序：</p><p><a target="_blank" href="http://www.smxiaoqiang.cn/upload/2010/2/201002021638452287.rar">360.exe</a></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=279</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=279&amp;key=30d16ce8</trackback:ping></item><item><title>破解MD5工具</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Sun, 27 Dec 2009 10:25:49 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>常用的MD5破解工具（暴力破解、在线破解）</p><p>收集者：神秘小强</p><p>一、MD5Cracksp v2.3(速度增强版)</p><p><img width="500" height="354" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/md5crack2.3.jpg" /></p><p>说明：暴力破解MD5推荐这款软件，速度比较快</p><p>点击下载<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/md5crack2.3.rar">MD5Cracksp v2.3</a></p><p>二、md5crack 4.1 又名MD5Crack.exe</p><p>&nbsp;<img width="500" height="400" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/md5crack4.jpg" /></p><p>说明：阿呆出品的最新版，开发平台: Microsoft Visual Studio.NET 2003 <br />软件简介: 修改了4.0 中16位密码破解结果输出错误的 BUG <br />从界面也可以看出是上个软件的改进版。<br />点击下载：<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/mdcrk41.rar">MD5Crack.exe</a></p><p>三、Hashq</p><p><img width="600" height="451" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/Hashq.jpg" /></p><p>说明：国外32位MD5在线破解。网站可以自行添加，比较省事。</p><p>点击下载：<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/Hashq.rar">hashq</a></p><p>四、多线程MD5在线破解器V0.1</p><p><img width="500" height="274" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/32md5.jpg" /></p><p>说明：多线程MD5在线破解器汉化版。</p><p>点击下载：<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/32md5.rar">多线程MD5在线破解器.rar</a></p><p>五、MD5Seacrh v1.8</p><p><img width="500" height="580" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/md5search1.8.jpg" /></p><p>说明：最新版本v1.8 版权by mass,收集的网站比较多，而且都可用。20091227</p><p>点击下载：<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/MD5Search.rar">MD5Seacrh1.8</a></p><p>六、Benchmark v1_2</p><p><img width="600" height="412" alt="" src="http://www.smxiaoqiang.cn/upload/image/md5/Fast%20MD5%20Cracker.jpg" /></p><p>说明：超级MD5破解工具,不过吃CPU很厉害，推荐到服务器上用。</p><p>点击下载：<a target="_blank" href="http://www.smxiaoqiang.cn/upload/image/md5/Fast%20MD5%20Cracker.rar">Fast MD5 Cracker</a></p><p>特此共享以上MD5破解工具。</p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=274</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=274&amp;key=34fcce63</trackback:ping></item><item><title>cmd.jsp</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Wed, 28 Oct 2009 10:35:43 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>点击下载： <a target="_blank" href="http://www.smxiaoqiang.cn/upload/2009/10/200910281036158331.zip">cmd.jsp</a></p><p><a href="http://victim:8080/cmd/cmd.jsp">http://victim:8080/cmd/cmd.jsp</a></p><p>Happy Hacking <img alt="" src="http://www.smxiaoqiang.cn/image/face/Cool.gif" /></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=256</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=256&amp;key=0fa510ce</trackback:ping></item><item><title>Bsqlbf v2.4</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Sun, 25 Oct 2009 12:18:09 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p style="text-align: left">This is an updated version of bsqlbf. This now has the VALIDATE_REMOTE_RC() exploit which David Litchfield discussed in his <a href="http://www.databasesecurity.com/oracle/plsql-injection-create-session.pdf"><font color="#21759b">paper</font></a></p><blockquote><p style="text-align: left">6: Type 6 is O.S code execution [ORACLE DBMS_REPCAT_RPC.VALIDATE_REMOTE_RC exploit]</p></blockquote><p style="text-align: left">This vulnerability was patched by Oracle in July 2009 Critical Patch Update. In a nutshell, if you have identified a SQL injection as &lsquo;SYS&rsquo; user than this version of bsqlbf will let you execute OS code on remote Oracle database host.</p><p style="text-align: left">I will be giving a demo of this at Sec-T on 11th September.<br />Download it <a href="http://code.google.com/p/bsqlbf-v2/downloads/list"><font color="#21759b">Here</font></a></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=255</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=255&amp;key=dce12386</trackback:ping></item><item><title>rcracki_mt_彩虹表破解MD5</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Mon, 17 Aug 2009 11:27:55 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p><span style="font-size: small">rcracki_mt下载</span></p><p><span style="font-size: small">rcracki_mt是我们的修改后的版本rcrack支持混合和索引表。<span onmouseover="_tipon(this)" onmouseout="_tipoff()">此外，它还增加了多核心的支持</span></span><span onmouseover="_tipon(this)" onmouseout="_tipoff()"><a href="http://203.208.37.132/download/rcracki.zip"><span style="font-size: small"><font color="#000000">下载</font></span></a><a href="http://203.208.37.132/download/rcracki-src.zip"><span style="font-size: small"><font color="#000000">源</font></span></a></span></p><p><span style="font-size: small"><img title="" alt="" onload="ResizeImage(this,520)" src="http://www.smxiaoqiang.cn/upload/2009/8/200908171132543665.jpg" /></span></p><p><span style="font-size: small">&nbsp;</span></p><h1><span style="font-size: small">关于rcracki_mt不能运行的问题，下载</span><span style="font-size: x-small"><a target="_blank" href="http://www.microsoft.com/downloadS/details.aspx?familyid=9B2DA534-3E03-4391-8A4D-074B9F2BC1BF&amp;displaylang=en"><span style="font-size: small">Microsoft Visual C++ 2008 Redistributable Package (x86)</span></a></span></h1><p>&nbsp;</p><p><span style="font-size: small"><span onmouseover="_tipon(this)" onmouseout="_tipoff()"><span style="text-align: left; direction: ltr" class="google-src-text"><b>rti2rto</b></span> <b>rti2rto</b></span>&nbsp;<br /><span onmouseover="_tipon(this)" onmouseout="_tipoff()">rti2rto是一个工具转换索引表到原彩虹表来使用其它工具不支持。 RTI的文件，如CAIN。 </span></span><span onmouseover="_tipon(this)" onmouseout="_tipoff()"><a href="http://203.208.37.132/download/rti2rto.zip"><span style="font-size: small"><font color="#000000">下载</font></span></a><a href="http://203.208.37.132/download/rti2rto_src.zip"><span style="font-size: small"><font color="#000000">源</font></span></a></span></p><p><span style="font-size: small"><img title="" alt="" onload="ResizeImage(this,520)" src="http://www.smxiaoqiang.cn/upload/2009/8/200908171134501202.jpg" /></span></p><p><span style="font-size: small">&nbsp;//www.smxiaoqiang.cn</span></p><p>&nbsp;</p><p>&nbsp;</p><p><span style="display: none" id="1250479471316E">&nbsp;</span></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=247</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=247&amp;key=be96053b</trackback:ping></item><item><title>Adobe Flash Player 0day </title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Wed, 05 Aug 2009 11:12:57 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>Just for education,do not do evil.<br /><br />Vulnerable: RedHat Enterprise Linux WS Extras 4<br />RedHat Enterprise Linux WS Extras 3<br />RedHat Enterprise Linux Supplementary 5 server<br />RedHat Enterprise Linux Extras 4<br />RedHat Enterprise Linux Extras 3<br />RedHat Enterprise Linux ES Extras 4<br />RedHat Enterprise Linux ES Extras 3<br />RedHat Enterprise Linux Desktop Supplementary 5 client<br />RedHat Enterprise Linux AS Extras 4<br />RedHat Enterprise Linux AS Extras 3<br />RedHat Desktop Extras 4<br />RedHat Desktop Extras 3<br />Adobe Flash Player 10.0.22 .87<br />Adobe Flash Player 10.0.15 .3<br />Adobe Flash Player 10.0.12 .36<br />Adobe Flash Player 10.0.12 .35<br />Adobe Flash Player 9.0.159 0<br />Adobe Flash Player 9.0.152 .0<br />Adobe Flash Player 9.0.151 .0<br />Adobe Flash Player 9.0.124 .0<br />Adobe Flash Player 9.0.48.0<br />Adobe Flash Player 9.0.47.0<br />Adobe Flash Player 9.0.45.0<br />Adobe Flash Player 9.0.31.0<br />Adobe Flash Player 9.0.28.0<br />Adobe Flash Player 9.0.115.0<br />Adobe Flash Player 9<br />Adobe Flash Player 10<br />Adobe AIR 1.5.1<br />Adobe AIR 1.5<br />Adobe AIR 1.1<br />Adobe AIR 1.01<br />Adobe AIR 1.0<br /><br />Not Vulnerable: Adobe Flash Player 9.0.246 0<br />Adobe Flash Player 10.0.32.18<br />Adobe AIR 1.5.2 <br /><br /><span style="color: #ff0000"><strong>Exploit:</strong></span><br /><a target="_blank" href="http://www.smxiaoqiang.cn/flash0day.zip">点击下载Flash 0day</a></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=242</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=242&amp;key=e5e45e1e</trackback:ping></item><item><title>取证大师FM2008 (V3118版)</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Mon, 27 Jul 2009 09:01:23 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>提供取证大师FM2008 (V3118版)下载</p><p><a target="_blank" href="http://www.smxiaoqiang.cn/fm2008.rar">点击下载</a></p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=238</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=238&amp;key=7d8a3408</trackback:ping></item><item><title>sablog1.6的CSRF漏洞POC</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Mon, 20 Jul 2009 16:40:29 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>发布时间:2009-07-20</p><p><a target="_blank" href="http://sebug.net/local/2009-exploits/0907-exploits/sablog1.6的CSRF漏洞POC.pdf">点击下载<u><font color="#0000ff">sablog1.6的CSRF漏洞POC</font></u></a></p><p>&nbsp;</p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=235</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=235&amp;key=5cba1aae</trackback:ping></item><item><title>中国菜刀</title><author>498849111@qq.com (小强)</author><link>http://www.smxiaoqiang.cn/</link><pubDate>Sat, 18 Jul 2009 08:36:10 +0800</pubDate><guid>http://www.smxiaoqiang.cn/</guid><description><![CDATA[<p>老兵的杀人武器&ldquo;中国菜刀&rdquo;</p><p>详细了解请到&nbsp; <a href="http://www.maicaidao.com/caidao.html">http://www.maicaidao.com/caidao.html</a></p><p>------------------------------------------------------------------------</p><p>顺便恭喜DM大牛喜得贵子。</p>]]></description><category>八卦工具</category><comments>http://www.smxiaoqiang.cn/#comment</comments><wfw:comment>http://www.smxiaoqiang.cn/</wfw:comment><wfw:commentRss>http://www.smxiaoqiang.cn/feed.asp?cmt=233</wfw:commentRss><trackback:ping>http://www.smxiaoqiang.cn/cmd.asp?act=tb&amp;id=233&amp;key=c3c49384</trackback:ping></item></channel></rss>
