Harbor Tactics

Harbor 容器镜像仓库攻击。当发现目标运行 Harbor 实例、默认凭据 admin/Harbor12345 未修改、Harbor API 暴露、或需要从 Harbor 窃取镜像或注入后门时使用。覆盖未授权访问与公开仓库枚举、默认凭据攻击、镜像后门注入(供应链攻击)、Webhook 滥用、复制策略利用(跨仓库数据窃取)、镜像扫描绕过

wgpsec b9378f8 2 files · 34.7 KB Updated

File contents

wgpsec/aboutsecurity/tree/main/skills/postexploit/product/harbor-tactics commit b9378f8856

Frequently asked questions

npx skillmds@latest add wgpsec/harbor-tactics