当前位置:网站首页>Remember to get the password of college student account once, from scratch
Remember to get the password of college student account once, from scratch
2022-07-24 06:18:00 【Ant view network security】
Statement : My original intention is to share and popularize network knowledge , If readers do any harm to network security, they will bear the consequences , It has nothing to do with Hetian Wangan laboratory and the original author , This article is the original work of Hutian network security laboratory , If you want to reprint , Please indicate the source !
This record , It is intended to show the strength of information collection and arouse the attention of colleges and universities to network security ..…, See how to get student accounts from scratch …
After understanding the idea , You may be blown away by your masters …
0x01: Look at this window first
Http://xxx.xxx.xxx.xxx/login

If you find your password, you can either retrieve it by email , Or the cell phone is retrieved ….

0x02 Up to now , Probably
1. The mobile phone verification code exploded , Premise : Know the student number + cell-phone number + Resetting the password is to send a verification code, not to connect
2. Mailbox verification code burst , Premise : Know the student number + mailbox + Resetting the password is to send a verification code, not to connect
The above two ideas , Mostly hanging ….
( Because I dug the hole first , Just wrote the article ,
So I know the student number in advance + cell-phone number ….)


The verification code is verified …. The road is blocked ….
0x03: See how to do information gathering
The process of collecting information , Be sure to learn the common excel To clean the data , Find our useful accounts …
Google Dafa …



After half an hour of searching , I found such an announcement , Yes, this is the announcement , Let me have a breakthrough direction …
3、 The email user name is : Student number @xxx.xxx.xxx.cn, The initial password is :xxxx+ Birthday on the ID card 8 position ( Specific date ).Xxxx.xxx..xxx.
4、 The email in the account information of the online service hall has been bound to the student's email account by default

It is not necessary to find the user's password to obtain the account , Changing the password is also a way of thinking , As long as you can log in , Then there is nothing to say …
From seeing this announcement , Our general idea has been established ….

Specific ideas :
Look for sensitive information --- Then reset her password by email --- Finally get the account with unified identity
continue google, Found a sensitive information leak …. Number of leaks 100 Bar or so

Here is a reminder : Many students may change the password of unified identity authentication , But many students will never change the password of their email , Often used to use the mobile phone number to obtain the verification code and change the password …
And we changed her password Use email to change password ….
Find its mailbox , Log in, good guy , Login successful ….

0x04: Unified identity authentication ….





Then we went into unified identity authentication ….
summary :
1. in general , The method is still the original method
2. Don't underestimate the harm of an account , Even low privileged accounts , It can also collect all its hair , Such as this ….
3. There are many ways to change your password , But it is recommended to use the mobile phone number to change the password , Never publish the password rules , Who knows what will happen ?
4. information gathering yyds, From a master, he set up such a view : The process of penetration testing , It's the process of collecting information to fight . Intranet is no exception ! If you collect the account passwords of many hosts , The horizontal process becomes the process of constantly entering the account password … And the movement is very small …
边栏推荐
- Use intranet penetration to realize public network access to the Intranet
- 快速简单搭建FTP服务器,并内网穿透实现公网访问【无需公网IP】
- Data warehouse and data warehouse modeling
- 异地远程连接在家里的群晖NAS【无公网IP,免费内网穿透】
- Do not rent servers, build your own personal business website (4)
- How to build a website full of ritual sense and publish it on the public website 2-2
- MySQL从基础到入门到高可用
- 【217】#!/usr/bin/env 的意义
- 【226】wireshark的参数使用说明
- 【219】app 测试和web测试的区别点?
猜你喜欢

Leetcode剑指offer JZ9 双栈实现队列

UE4 reload system 2. Scene capture of reload system

ue4 瞄准偏移
![Remote connection to Qunhui NAS at home [no public IP, free intranet penetration]](/img/bf/cda5a28f0aabb28b2fc56a79480347.png)
Remote connection to Qunhui NAS at home [no public IP, free intranet penetration]

不租服务器,自建个人商业网站(4)

IP课笔记(4)

Using keras and LSTM to realize time series prediction of long-term trend memory -lstnet

【218】CS架构和BS架构以及数据放在服务端和客户端的利与弊?

Hololens 2 development: use MRTK and simulate gesture input in unity

Openpose2d转换3d姿态识别
随机推荐
MySQL数据库—SQL汇总(记得关注我!中国加油!)
Unity shader: realize diffuse reflection and specular reflection
Public access intranet IIS website server [no public IP required]
IP job (6)
Configure a fixed remote desktop address [intranet penetration, no need for public IP]
MeterSphere一站式开源持续测试平台
不租服务器,自建个人商业网站(2)
Using keras to realize multidimensional (multivariable) time series prediction of cnn+bilstm+attention
什么是单调栈
Dameng database_ Various methods of connecting databases and executing SQL and scripts under disql
HoloLens 2 开发:开发环境部署
Dameng database_ Trigger, view, materialized view, sequence, synonym, auto increment, external link and other basic operations
Flink function (1): rich function
IP笔记(11)
【226】wireshark的参数使用说明
leetcode剑指offer jz5 替换空格字符串
LuckyFrameWeb测试平台(一款支持接口自动化、WEB UI自动化、APP自动化,并且支持分布式测试的全纬度免费开源测试平台)
简单三步快速实现内网穿透
IP notes (7)
ue4 瞄准偏移