> For the complete documentation index, see [llms.txt](https://hacking-notes.jord4n.pro/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://hacking-notes.jord4n.pro/zh/writeups-ctf/vulnhub.md).

# VulnHub

面向独立易受攻击虚拟机和本地实验环境练习的 VulnHub 复现文章。

## VulnHub 方法论

1. 导入虚拟机，识别目标 IP，并枚举所有暴露的服务。
2. 识别 Web 应用、服务、凭据、共享，以及仅本地可访问的管理界面。
3. 利用第一个可靠的立足点并稳定 shell 访问。
4. 通过本地错误配置、弱权限、内核问题或凭据提升到 root 或管理员。

## 靶机分类

<table data-view="cards" data-full-width="false" data-search="false"><thead><tr><th></th><th></th><th></th><th data-hidden data-card-target data-type="content-ref"></th></tr></thead><tbody><tr><td><h3><i class="fa-linux" style="color:$primary;">:linux:</i></h3></td><td><h4>VulnHub Linux</h4></td><td>VulnHub Linux 机器复现文章，涵盖本地实验环境枚举、Web 漏洞利用、文件上传、phpMyAdmin 滥用、凭据破解以及 Linux 权限提升。</td><td><a href="/pages/f97eda4ef96beb8636d6fe585bbf52995c9d12dd">/pages/f97eda4ef96beb8636d6fe585bbf52995c9d12dd</a></td></tr><tr><td><h3><i class="fa-windows" style="color:$primary;">:windows:</i></h3></td><td><h4>VulnHub Windows</h4></td><td>VulnHub Windows 机器笔记，适用于本地易受攻击虚拟机练习、Windows 服务枚举、漏洞利用和权限提升。</td><td><a href="/pages/7bbd2d1d73b621a0ded1140dced98210ece4183b">/pages/7bbd2d1d73b621a0ded1140dced98210ece4183b</a></td></tr></tbody></table>


---

# Agent Instructions
This documentation is published with GitBook. GitBook is the documentation platform designed so that both humans and AI agents can read, navigate, and reason over technical content effectively. Learn more at gitbook.com.

## Querying This Documentation
If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter, and the optional `goal` query parameter:

```
GET https://hacking-notes.jord4n.pro/zh/writeups-ctf/vulnhub.md?ask=<question>&goal=<endgoal>
```

`ask` is the immediate question: it should be specific, self-contained, and written in natural language.
`goal` is optional and describes the broader end goal you are ultimately trying to accomplish on behalf of the user. GitBook uses it to tailor the answer towards what is most useful for that goal.

The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
