Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Mongodb未授权访问 #26

Open
PyxYuYu opened this issue Mar 26, 2016 · 0 comments
Open

Mongodb未授权访问 #26

PyxYuYu opened this issue Mar 26, 2016 · 0 comments

Comments

@PyxYuYu
Copy link
Owner

PyxYuYu commented Mar 26, 2016

To be close to your friend, but closer to your enemy.

0x01 Wooyun

  • 挖了一天的Mongodb未授权访问,乌云提交了10来个漏洞
  • 之前乌云忽略的漏洞,提交给补天成功了
  • 今后用Python写点自动化测试的未授权或者弱口令访问工具
    • mysql msssql oracle ftp redis mongodb

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant