Hackone 环境搭建
网络环境 Vmware PIN1Group_FW -> openwrt-x86-64-generic-squashfs-combined-efi -> StarWind V2V Converter -> vmwre_new -> 其他linux64位 -> 2h2g -> 桥接 -> vi_network_config@Router -> vist -> 防火墙全部接受 -> 接口修改 -> 不桥接接口-> 博客 passwall -> 订阅 -> 全局 -> 高级设置 kali -> 修改网络配置文件 -> 网络测试 windows 同理 # kali 网络修改 sudo vi /etc/network/interfaces auto eth0 iface eth0 inet static address 192.168.11.145 netmask 255.255.255.0 gateway openwrt_ip cat /etc/resolv.conf nameserv ...
Git 优化三连击
本文不做过多讲解,不懂的内容请留言 Git.HTTP/S 加速1234567891011121314151617➜ cat ~/.gitconfig[user] email = github-actions[bot]@users.noreply.github.com name = github-actions[bot][http] proxy = socks5://127.0.0.1:7890 proxy = http://127.0.0.1:7890[https] proxy = socks5://127.0.0.1:7890 proxy = https://127.0.0.1:7890[core] excludesfile = /Users/xr/.gitignore[filter "lfs"] clean = git-lfs clean -- %f smudge = git-lfs smudge -- %f process = git-lfs filter-process required = true Git.SSH 加速1234567➜ ...
个人隐私保护-Bitwarden
背景Bitwarden 是一个类似 1Password 和 LastPass 的开源密码管理软件,Bitwarden RS 是基于 Rust 语言的一个实现,更轻量一些,可能效率也会更高一点点,并且是完全兼容官方 App 的,比如各种浏览器扩展,手机 App 等。[ 摘抄 ] 不想折腾可以直接官网注册使用即可,网速有点慢 准备工作 一台公网 linux 服务器( Ubuntu / Centos ) docker 域名和证书 可以通过腾讯云购买服务器和域名并申请免费证书 安装 Docker1234curl -fsSL https://get.docker.com | bash -s docker --mirror Aliyunsudo systemctl enable dockersudo systemctl start dockersudo usermod -aG docker $USER 修改配置文件12345678910111213141516171819202122{ // 镜像加速 "registry-mirrors": [ ...
没有标题
这是一个 vscode 这是一个 code-server 这是一个 jupyter 这是一个魔改版的 jupyter 我只是比较 爱学习 ,这没什么问题吧 我不仅 爱学习 ,我还喜欢 进内网 我的博客即将同步至腾讯云+社区,邀请大家一同入驻:https://cloud.tencent.com/developer/support-plan?invite_code=ocmvc23gvwxt XRSec has the right to modify and interpret this article. If you want to reprint or disseminate this article, you must ensure the integrity of this article, including all contents such as copyright notice. Without the permission of the author, the content of this article shall not be modified or ...
狗东西的防黑之路
本文章基于 SSH 出发 作者很随性,随缘写文 涉及知识面:openssh ,proxy ,fwknop ,docker OPENSSHOpenSSH (also known as OpenBSD Secure Shell[a]) is a suite of secure networking utilities based on the Secure Shell (SSH) protocol, which provides a secure channel over an unsecured network in a client–server architecture.[4][5] OpenSSH started as a fork of the free SSH program developed by Tatu Ylönen; later versions of Ylönen’s SSH were proprietary software offered by SSH Communications Security.[6] OpenSSH was first release ...
HackSudo
靶机介绍目标介绍 :Debian Linux (目标是个网上在线银行系统) 攻击主机 : kali Linux 利用技术: shellshock破壳漏洞<–cgi-bin–> GTFOBins提权 github开源源码泄露 打靶开始1.信息收集(偷个懒直接上命令了) 12345678910111213141516171819sudo arp-scan -lStarting arp-scan 1.9.7 with 256 hosts (https://github.com/royhills/arp-scan)192.168.0.102 08:00:27:c5:88:8d PCS Systemtechnik GmbH$ nmap -p- -sC -sV 192.168.0.102Starting Nmap 7.91 ( https://nmap.org ) at 2021-10-30 02:53 EDTNmap scan report for localhost (192.168.0.102)Host is up (0.0015s latency).Not show ...
Docker Action IniT
Dockerfile12345678910111213141516171819LABEL maintainer="xrsec"LABEL mail="Jalapeno1868@outlook.com"LABEL Github="https://github.com/XRSec/Code-Server-Update"RUN apt update -y && apt upgrade -y \ && apt install -y ncurses-bin \ && apt clean -y \RUN yum update -y && yum upgrade -y \ && yum install ncurses -y \ && yum clean all -y \WORKDIRENTRYPOINT ["/goby.sh"]EXPOSE 80ENV TZ='Asia/Shanghai ...
Centos init
Centos init12345678910111213141516171819202122yum update -y && yum upgrade -yyum install wget unzip git util-linux-user net-tools iputils util-linux-user zsh ncurses -ycurl -s curl -s https://ghproxy.com/https://gist.githubusercontent.com/Ran-Xing/0e47c9b793887d201bab9de2a07a740c/raw/3a63ca4fe9b775c5a8e141f05ddb35cc1ea09334/zsh_init.sh | bash -source ~/.zshrcsudo yum install -y yum-utilssudo yum remove docker \ docker-client \ docker-client-latest \ ...
Docker Centos init
1docker run -it --name server centos:latest 12345678yum update -y && yum upgrade -y && yum install wget git curl sudo net-tools iputils util-linux-user zsh ncurses -ychsh -s /usr/bin/zshsh -c "$(wget https://raw.github.com/ohmyzsh/ohmyzsh/master/tools/install.sh -O -)"git clone https://github.com/zsh-users/zsh-syntax-highlighting.git ${ZSH_CUSTOM:-~/.oh-my-zsh/custom}/plugins/zsh-syntax-highlightinggit clone https://github.com/zsh-users/zsh-autosuggestions.gi ...
趣玩Github Action
在 GitHub Actions 的仓库中自动化、自定义和执行软件开发工作流程。 您可以发现、创建和共享操作以执行您喜欢的任何作业(包括 CI/CD),并将操作合并到完全自定义的工作流程中。 Action 能干啥?都能干,前段时间还有人挖矿 下面所有的用户名和仓库用 laowang 和 zhangshan 代替 Actions secrets一些不方便的隐私的东西可以放进去,然后用环境变量代替 https://github.com/laowang/zhangshan/settings/secrets/actions 12345# 推荐变量名DOCKERHUB_PASSWORD 123456 ${{ secrets.DOCKERHUB_PASSWORD }}DOCKERHUB_TOKEN 123456 ${{ secrets.DOCKERHUB_TOKEN }}DOCKERHUB_USERNAME laowang ${{ secrets.DOCKERHUB_ ...
Github Action Public_Private
This is a set of communication interactions between Github open source and privacyFunction: Synchronize README.md Sync hub.docker Overview The private warehouse is successfully constructed and the information is sent to the public warehouse to complete the construction Build containers and push to Aliyun, Hub.docker, etc. Open source warehouse receives signal to update README 这是一套关于Github 开源和隐私之间的通信交互功能: 同步 README.md 同步 hub.docker 的 Overview 私有仓库构建成功发送信息到公有仓库完成构建 构建容器并推送到 Aliyun, Hub.docker ...
DRIFTINGBLUES:6
靶机介绍下载地址:https://download.vulnhub.com/driftingblues/driftingblues6_vh.ova难度:Easy运行环境:VirtualBox 攻击主机:kali 2021 目标主机:DRIFTINGBLUES: 6 打靶开始1.主机发现使用ARP扫描可以快速的发现当前网段所有的开启主机 2.端口扫描还是老套路 1234567891011nmap -sV -sC -p- 192.168.0.104Starting Nmap 7.91 ( https://nmap.org ) at 2021-10-10 02:06 EDTNmap scan report for 192.168.0.104Host is up (0.0019s latency).Not shown: 65534 closed portsPORT STATE SERVICE VERSION80/tcp open http Apache httpd 2.2.22 ((Debian))| http-robots.txt: 1 disallowed entry|_/t ...
PHP FPM Docker
Please compile manually, github action may time out USE123FROM xrsec/php:latest | FROM xrsec/php:5.6 | FROM xrsec/php:7.4 | FROM xrsec/php:initLABEL From="xrsec"ARG TARGETPLATFORM 123RUN mkdir -p /www /www/server /www/bak /www/server/php74 /www/server/php56COPY --from=xrsec/php:7.4 /www/server/php74 /www/server/php74COPY --from=xrsec/php:5.6 /www/server/php56 /www/server/php56 123456789101112131415161718RUN ln -sf /www/server/php74/bin/php /www/env/php74 \ && ln -s ...
Oracle Java Docker
README This warehouse code and container are prohibited from commercial use OracleJava Dockerfile official Oracle Java Step Download Split 1234567891011split -b 50m jdk-8u301-linux-x64.rpm jdk-8u301-linux-amd64-split -b 50m jdk-11.0.12_linux-x64_bin.rpm jdk-11.0.12_linux-amd64-split -b 50m jdk-11.0.12_linux-aarch64_bin.rpm jdk-11.0.12_linux-arm64-split -b 50m jdk-16.0.2_linux-x64_bin.rpm jdk-16.0.2_linux-amd64-split -b 50m jdk-16.0.2_linux-aarch64_bin.rpm jdk-16.0.2_linux-arm64-split -b 5 ...
微信公众号 Markdown 排版工具
用于格式化 Markdown,粘贴到微信公众号的工具。 在线使用地址https://wxweb.zygd.site/ Docker 部署1docker run -it -d --restart=always -p 5052:80 --name wxweb wxweb:latest 问题反馈 & 建议https://github.com/softwarefly/online-markdown/issues/new 致谢 @Phodal @barretlee @dyc87112 @softwarefly XRSec has the right to modify and interpret this article. If you want to reprint or disseminate this article, you must ensure the integrity of this article, including all contents such as copyright notice. Without the permission of t ...