[Meachines] [Easy] Horizontall Strapi RCE+KTOR-HTTP扫描+Laravel Monolog 权限提升
# Horizontall 靶机渗透测试教学文档
## 1. 信息收集阶段
### 1.1 初始扫描
```bash
ip='10.10.11.105'
itf='tun0'
if nmap -Pn -sn "$ip" | grep -q "Host is up"; then
echo -e "\e[32m[+] Target $ip is up, scanning ports...\e[0m"
ports=$(sudo masscan -p1-65535,U:1-6553
2025-08-28 13:43:27
0