Skip to content

Commit fad1984

Browse files
committed
0.4
0.4
1 parent 1a34dbf commit fad1984

File tree

60 files changed

+4456
-4456
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

60 files changed

+4456
-4456
lines changed

.DS_Store

6 KB
Binary file not shown.

.gitignore

Lines changed: 7 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
1-
#idea
2-
.idea
3-
*.iml
4-
5-
6-
#maven编译
7-
target
1+
#idea
2+
.idea
3+
*.iml
4+
5+
6+
#maven编译
7+
target

README.md

Lines changed: 21 additions & 21 deletions
Original file line numberDiff line numberDiff line change
@@ -16,77 +16,77 @@ e-cology WorkflowServiceXml-RCE (默认写入内存马 冰蝎 3.0 beta11)
1616
e-office logo_UploadFile.php-RCE (默认写入冰蝎4.0.3aes)
1717
e-office10 OfficeServer.php-RCE (默认写入冰蝎4.0.3aes)
1818
e-office doexecl.php-RCE (写入phpinfo,需要getshell请自行利用)
19-
e-mobile_6.6 messageType.do-SQlli (sqlmap利用,暂无直接shell的exp)
19+
e-mobile_6.6 messageType.do-SQlli (sqlmap利用,暂无直接shell的exp)
2020

2121
蓝凌:
2222
landray_datajson-RCE (可直接执行系统命令)
2323
landray_treexmlTmpl-RCE (可直接执行系统命令)
24-
landray_sysSearchMain-RCE (多个payload,写入哥斯拉 3.03 密码 yes)
24+
landray_sysSearchMain-RCE (多个payload,写入哥斯拉 3.03 密码 yes)
2525

2626
用友:
2727
yongyou_chajet_RCE (用友畅捷通T+ rce 默认写入哥斯拉 Cshap/Cshap_aes_base64)
2828
yongyou_NC_FileReceiveServlet-RCE 反序列化rce (默认写入冰蝎4.0.3aes)
2929
yongyou_NC_bsh.servlet.BshServlet_RCE (可直接执行系统命令)
3030
yongyou_NC_NCFindWeb 目录遍历漏洞 (可查看是否存在历史遗留webshell)
3131
yongyou_GRP_UploadFileData-RCE(默认写入冰蝎4.0.3aes)
32-
yongyou_KSOA_imageUpload-RCE (默认写入冰蝎4.0.3aes)
32+
yongyou_KSOA_imageUpload-RCE (默认写入冰蝎4.0.3aes)
3333

3434
万户:
3535
wanhuoa_OfficeServer-RCE(默认写入冰蝎4.0.3aes)
3636
wanhuoa_OfficeServer-RCE(默认写入哥斯拉4.0.1 jsp aes 默认密码密钥)
3737
wanhuoa_DocumentEdit-SQlli(mssql数据库 可 os-shell)
3838
wanhuoa_OfficeServerservlet-RCE(默认写入冰蝎4.0.3aes)
39-
wanhuoa_fileUploadController-RCE(默认写入冰蝎4.0.3aes)
39+
wanhuoa_fileUploadController-RCE(默认写入冰蝎4.0.3aes)
4040

4141
致远:
4242
seeyonoa_main_log4j2-RCE (仅支持检测,自行开启ladp服务利用)
4343
seeyonoa_wpsAssistServlet-RCE(默认写入冰蝎4.0.3aes)
4444
seeyonoa_htmlofficeservlet-RCE(默认写入冰蝎4.0.3aes)
45-
seeyonoa_ajaxBypass-RCE(写入天蝎 密码sky)
46-
45+
seeyonoa_ajaxBypass-RCE(写入天蝎 密码sky)
46+
4747
通达:
4848
tongdaoa_getdata-RCE (直接执行系统命令)
49-
tongdaoa_apiali-RCE (默认写入冰蝎4.0.3aes)
50-
49+
tongdaoa_apiali-RCE (默认写入冰蝎4.0.3aes)
50+
5151
中间件:
52-
IIS_PUT_RCE (emm暂时没办法getshell 仅支持检测 java没有MOVE方法)
52+
IIS_PUT_RCE (emm暂时没办法getshell 仅支持检测 java没有MOVE方法)
5353

5454
安全设备:
5555
综合安防_applyCT_fastjson-RCE(仅支持检测,自行使用ladp服务利用)
5656
网康下一代防火墙_ngfw_waf_route-RCE(写入菜刀shell 密码:nishizhu)
57-
网御星云账号密码泄露
58-
57+
网御星云账号密码泄露
58+
5959
使用截图:
6060
![QQ截图20221014202028](https://user-images.githubusercontent.com/100954709/195846430-84bfff61-2c7b-4027-abcc-76d5910b76e4.png)
6161
![QQ截图20221014202151](https://user-images.githubusercontent.com/100954709/195846449-cbf2d0c2-e0f6-4567-b0d4-d9ead527d459.png)
62-
![3](https://user-images.githubusercontent.com/100954709/193958439-cdaf1a64-55f4-4afb-9a44-cfec5e237208.png)
62+
![3](https://user-images.githubusercontent.com/100954709/193958439-cdaf1a64-55f4-4afb-9a44-cfec5e237208.png)
6363

6464
---
65-
## 工具模块:
65+
## 工具模块:
6666

6767
文件上传指令生成
68-
![upload](https://user-images.githubusercontent.com/100954709/195846198-3133fd70-3849-4dfe-862c-c42dd865b214.png)
68+
![upload](https://user-images.githubusercontent.com/100954709/195846198-3133fd70-3849-4dfe-862c-c42dd865b214.png)
6969

7070

7171
Tasklist敏感进程检测
72-
![tasklist](https://user-images.githubusercontent.com/100954709/195846255-b06e35e9-718b-4b69-a203-cadb88338858.png)
73-
72+
![tasklist](https://user-images.githubusercontent.com/100954709/195846255-b06e35e9-718b-4b69-a203-cadb88338858.png)
73+
7474
反弹shell命令生成
7575
![shell](https://user-images.githubusercontent.com/100954709/195846331-474bdd57-ef97-45a5-b872-5b39de592c70.png)
7676

7777

7878
---
79-
## 配置相关
79+
## 配置相关
8080

8181
部分漏洞使用dnslog检测 请自行修改 Apt_config/dnslog下内容
82-
本工具使用CEYE.IO 只需修改为自己的地址及tokent即可
82+
本工具使用CEYE.IO 只需修改为自己的地址及tokent即可
8383

8484
---
8585
## 问题反馈
8686
可直接提Issu
87-
或加我wx进群交流,微信请备注apt
88-
89-
![my](https://user-images.githubusercontent.com/100954709/193801691-df73fec6-284a-450a-943a-09fe023bcde0.png)
87+
或加我wx进群交流,微信请备注apt
88+
89+
![my](https://user-images.githubusercontent.com/100954709/193801691-df73fec6-284a-450a-943a-09fe023bcde0.png)
9090

9191
---
9292
## 免责声明

img.png

49.9 KB
Loading

img_1.png

49.9 KB
Loading

pom.xml

Lines changed: 89 additions & 89 deletions
Original file line numberDiff line numberDiff line change
@@ -1,90 +1,90 @@
1-
<?xml version="1.0" encoding="UTF-8"?>
2-
<project xmlns="http://maven.apache.org/POM/4.0.0"
3-
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
4-
xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 http://maven.apache.org/xsd/maven-4.0.0.xsd">
5-
<modelVersion>4.0.0</modelVersion>
6-
7-
<groupId>cn.luckyh</groupId>
8-
<artifactId>apt_tools</artifactId>
9-
<version>1.0-SNAPSHOT</version>
10-
<packaging>jar</packaging>
11-
12-
<properties>
13-
<maven.compiler.source>8</maven.compiler.source>
14-
<maven.compiler.target>8</maven.compiler.target>
15-
<maven.compiler.encoding>UTF-8</maven.compiler.encoding>
16-
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
17-
</properties>
18-
<dependencies>
19-
<dependency>
20-
<groupId>cn.hutool</groupId>
21-
<artifactId>hutool-all</artifactId>
22-
<version>5.8.8</version>
23-
</dependency>
24-
<!-- https://mvnrepository.com/artifact/com.jfoenix/jfoenix-->
25-
<dependency>
26-
<groupId>com.jfoenix</groupId>
27-
<artifactId>jfoenix</artifactId>
28-
<version>9.0.10</version>
29-
</dependency>
30-
<!-- <dependency>-->
31-
<!-- <groupId>org.yaml</groupId>-->
32-
<!-- <artifactId>snakeyaml</artifactId>-->
33-
<!-- <version>1.33</version>-->
34-
<!-- </dependency>-->
35-
<!-- <dependency>-->
36-
<!-- <groupId>com.alibaba</groupId>-->
37-
<!-- <artifactId>fastjson</artifactId>-->
38-
<!-- <version>2.0.14</version>-->
39-
<!-- </dependency>-->
40-
<dependency>
41-
<groupId>com.jfoenix</groupId>
42-
<artifactId>jfoenix</artifactId>
43-
<version>8.0.10</version>
44-
</dependency>
45-
<dependency>
46-
<groupId>org.junit.jupiter</groupId>
47-
<artifactId>junit-jupiter-api</artifactId>
48-
<version>5.9.0</version>
49-
</dependency>
50-
51-
52-
</dependencies>
53-
54-
55-
<build>
56-
<finalName>${project.artifactId}</finalName><!--修改编译出来的jar包名,仅为{artifactId}.jar-->
57-
<plugins>
58-
59-
<!-- 打包依赖包到jar中 -->
60-
<plugin>
61-
<groupId>org.apache.maven.plugins</groupId>
62-
<artifactId>maven-assembly-plugin</artifactId>
63-
<version>3.3.0</version>
64-
<configuration>
65-
<archive>
66-
<manifest>
67-
<mainClass>Main</mainClass>
68-
</manifest>
69-
</archive>
70-
<!-- get all project dependencies -->
71-
<descriptorRefs>
72-
<descriptorRef>jar-with-dependencies</descriptorRef>
73-
</descriptorRefs>
74-
<!-- MainClass in mainfest make a executable jar -->
75-
<!-- 运行文件名 -->
76-
</configuration>
77-
<executions>
78-
<execution>
79-
<id>make-assembly</id>
80-
<phase>package</phase>
81-
<goals>
82-
<goal>single</goal>
83-
</goals>
84-
</execution>
85-
</executions>
86-
</plugin>
87-
88-
</plugins>
89-
</build>
1+
<?xml version="1.0" encoding="UTF-8"?>
2+
<project xmlns="http://maven.apache.org/POM/4.0.0"
3+
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"
4+
xsi:schemaLocation="http://maven.apache.org/POM/4.0.0 http://maven.apache.org/xsd/maven-4.0.0.xsd">
5+
<modelVersion>4.0.0</modelVersion>
6+
7+
<groupId>cn.luckyh</groupId>
8+
<artifactId>apt_tools</artifactId>
9+
<version>1.0-SNAPSHOT</version>
10+
<packaging>jar</packaging>
11+
12+
<properties>
13+
<maven.compiler.source>8</maven.compiler.source>
14+
<maven.compiler.target>8</maven.compiler.target>
15+
<maven.compiler.encoding>UTF-8</maven.compiler.encoding>
16+
<project.build.sourceEncoding>UTF-8</project.build.sourceEncoding>
17+
</properties>
18+
<dependencies>
19+
<dependency>
20+
<groupId>cn.hutool</groupId>
21+
<artifactId>hutool-all</artifactId>
22+
<version>5.8.8</version>
23+
</dependency>
24+
<!-- https://mvnrepository.com/artifact/com.jfoenix/jfoenix-->
25+
<!-- <dependency>-->
26+
<!-- <groupId>com.jfoenix</groupId>-->
27+
<!-- <artifactId>jfoenix</artifactId>-->
28+
<!-- <version>9.0.10</version>-->
29+
<!-- </dependency>-->
30+
<!-- <dependency>-->
31+
<!-- <groupId>org.yaml</groupId>-->
32+
<!-- <artifactId>snakeyaml</artifactId>-->
33+
<!-- <version>1.33</version>-->
34+
<!-- </dependency>-->
35+
<!-- <dependency>-->
36+
<!-- <groupId>com.alibaba</groupId>-->
37+
<!-- <artifactId>fastjson</artifactId>-->
38+
<!-- <version>2.0.14</version>-->
39+
<!-- </dependency>-->
40+
<dependency>
41+
<groupId>com.jfoenix</groupId>
42+
<artifactId>jfoenix</artifactId>
43+
<version>8.0.10</version>
44+
</dependency>
45+
<dependency>
46+
<groupId>org.junit.jupiter</groupId>
47+
<artifactId>junit-jupiter-api</artifactId>
48+
<version>5.9.0</version>
49+
</dependency>
50+
51+
52+
</dependencies>
53+
54+
55+
<build>
56+
<finalName>${project.artifactId}</finalName><!--修改编译出来的jar包名,仅为{artifactId}.jar-->
57+
<plugins>
58+
59+
<!-- 打包依赖包到jar中 -->
60+
<plugin>
61+
<groupId>org.apache.maven.plugins</groupId>
62+
<artifactId>maven-assembly-plugin</artifactId>
63+
<version>3.3.0</version>
64+
<configuration>
65+
<archive>
66+
<manifest>
67+
<mainClass>Main</mainClass>
68+
</manifest>
69+
</archive>
70+
<!-- get all project dependencies -->
71+
<descriptorRefs>
72+
<descriptorRef>jar-with-dependencies</descriptorRef>
73+
</descriptorRefs>
74+
<!-- MainClass in mainfest make a executable jar -->
75+
<!-- 运行文件名 -->
76+
</configuration>
77+
<executions>
78+
<execution>
79+
<id>make-assembly</id>
80+
<phase>package</phase>
81+
<goals>
82+
<goal>single</goal>
83+
</goals>
84+
</execution>
85+
</executions>
86+
</plugin>
87+
88+
</plugins>
89+
</build>
9090
</project>

src/main/java/Main.java

Lines changed: 24 additions & 24 deletions
Original file line numberDiff line numberDiff line change
@@ -1,24 +1,24 @@
1-
import cn.hutool.core.io.resource.ResourceUtil;
2-
import java.util.Objects;
3-
import javafx.application.Application;
4-
import javafx.fxml.FXMLLoader;
5-
import javafx.scene.Parent;
6-
import javafx.scene.Scene;
7-
import javafx.stage.Stage;
8-
9-
public class Main extends Application {
10-
11-
@Override
12-
public void start(Stage primaryStage) throws Exception{
13-
Parent root = FXMLLoader.load(ResourceUtil.getResource("fxml/Main.fxml"));
14-
primaryStage.setTitle("APT");
15-
Scene scene = new Scene(root,1280,910);
16-
scene.getStylesheets().add(Objects.requireNonNull(Main.class.getResource("/css/main.css")).toExternalForm());
17-
primaryStage.setScene(scene);
18-
primaryStage.show();
19-
}
20-
21-
public static void main(String[] args) {
22-
launch(args);
23-
}
24-
}
1+
import cn.hutool.core.io.resource.ResourceUtil;
2+
import java.util.Objects;
3+
import javafx.application.Application;
4+
import javafx.fxml.FXMLLoader;
5+
import javafx.scene.Parent;
6+
import javafx.scene.Scene;
7+
import javafx.stage.Stage;
8+
9+
public class Main extends Application {
10+
11+
@Override
12+
public void start(Stage primaryStage) throws Exception{
13+
Parent root = FXMLLoader.load(ResourceUtil.getResource("fxml/Main.fxml"));
14+
primaryStage.setTitle("APT");
15+
Scene scene = new Scene(root,1280,910);
16+
scene.getStylesheets().add(Objects.requireNonNull(Main.class.getResource("/css/main.css")).toExternalForm());
17+
primaryStage.setScene(scene);
18+
primaryStage.show();
19+
}
20+
21+
public static void main(String[] args) {
22+
launch(args);
23+
}
24+
}

src/main/java/SimpleTest.java

Lines changed: 23 additions & 23 deletions
Original file line numberDiff line numberDiff line change
@@ -1,24 +1,24 @@
1-
import cn.hutool.core.util.RandomUtil;
2-
3-
import java.io.UnsupportedEncodingException;
4-
import java.util.concurrent.ExecutionException;
5-
import sun.misc.BASE64Encoder;
6-
import utils.shell;
7-
8-
public class SimpleTest {
9-
10-
private static Object pop;
11-
12-
public static void main(String[] args) throws InterruptedException, ExecutionException {
13-
try {
14-
BASE64Encoder encoder = new BASE64Encoder();
15-
String text = "file_put_contents('../../fb6790f4.php','" + shell.readFile(shell.Phppath) +"');";
16-
byte[] textByte = text.getBytes("UTF-8");
17-
String encodedText = encoder.encode(textByte).replace("\r\n","");
18-
System.out.println(encodedText);
19-
} catch (UnsupportedEncodingException e) {
20-
e.printStackTrace();
21-
}
22-
23-
}
1+
import cn.hutool.core.util.RandomUtil;
2+
3+
import java.io.UnsupportedEncodingException;
4+
import java.util.concurrent.ExecutionException;
5+
import sun.misc.BASE64Encoder;
6+
import utils.shell;
7+
8+
public class SimpleTest {
9+
10+
private static Object pop;
11+
12+
public static void main(String[] args) throws InterruptedException, ExecutionException {
13+
try {
14+
BASE64Encoder encoder = new BASE64Encoder();
15+
String text = "file_put_contents('../../fb6790f4.php','" + shell.readFile(shell.Phppath) +"');";
16+
byte[] textByte = text.getBytes("UTF-8");
17+
String encodedText = encoder.encode(textByte).replace("\r\n","");
18+
System.out.println(encodedText);
19+
} catch (UnsupportedEncodingException e) {
20+
e.printStackTrace();
21+
}
22+
23+
}
2424
}

0 commit comments

Comments
 (0)