{"repo":"AabyssZG/FindEverything","free":true,"listed":false,"github":"https://github.com/AabyssZG/FindEverything","clone":"git clone https://github.com/AabyssZG/FindEverything.git","description":"内网渗透过程中搜寻指定文件内容，从而找到突破口的一个小工具","language":"Python","stars":368,"topics":["cybersecurity","cybersecurity-tools","everything","everything-search","find-files","intranet","intranet-penetration"],"license":"MIT","category":"security-tools","readme_excerpt":"✈️ 工具概述 当对内网束手无策的时候，入口机器上面说不定藏着突破口，翻找本地的文件和建立的网络连接就是手法 这里也提供一个文件内容敏感词的字典，需要可以自己去整理，如下: 通过快速遍历机器文件，去寻找这些关键词，可以找到突破口，这个代码我之前也分享给好几个朋友，在实战阶段效果不错，具体可以看公众号文章：内网渗透信息搜集骚姿势 🚨 项目优势 有其他敏感文件搜索工具，这个项目的优势在哪？ - Linux基本都自带 Python2/Python3 环境，可以直接用来跑脚本 - 本项目没有使用到额外的pip库，运行 .py 脚本不需要执行额外的动作 - 其他项目基本需要编译成可执行文件使用（比如采用 go 语言编写的项目），如果编译后的文件不兼容或者无法执行就寄了 - 原理简单，输出文件方便清晰更加直观，有时最简单的就是最稳定的 - 可自定义性强，可以自由指定文件后缀名、搜寻内容以及搜寻目录 🐉 工具使用 Python的默认安装路径是 /usr/bin/python 或 /usr/local/bin/python 通过以下命令可以尝试常见Python变量并查看版本 -V Python3环境 Python3环境但没有tqdm包 Python2环境 没有Python环境则使用sh 其他小技巧 🙏 感谢各位师傅","default_branch":null,"files":null,"tree":[],"storefront":"/r/AabyssZG","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/AabyssZG/FindEverything/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}