Coder Social home page Coder Social logo

tr0uble-maker / poc-bomber Goto Github PK

View Code? Open in Web Editor NEW
2.2K 38.0 370.0 52.49 MB

利用大量高威胁poc/exp快速获取目标权限,用于渗透和红队快速打点

License: GNU General Public License v3.0

Python 100.00%
poc vulnerability-scanner poc-bomber cve rce getshell redteam exp

poc-bomber's Introduction

    红队评估

poc-bomber's People

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

poc-bomber's Issues

【优化】s2_009漏洞优化

大佬可以优化一下s2_009的漏洞判断,有些没有这个漏洞的,他网页响应会包含请求的内容就是整个payload的链接都包含进去,因此网页返回内容包含也包含hash_flag这个串字符串。

为什么工具中requests.post发出的http版本为1.0呢?

BP捕获的数据包中http协议版本为1.0,没有host头,导致在漏洞探测时,回显404,加上host头正常。大家有遇到这种问题吗?怎么把HTTP版本设置为1.1呢?
POST / HTTP/1.0
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:92.0) Gecko/20100101 Firefox/92.0
Accept-Encoding: gzip, deflate
Accept: /
Connection: close

bug反馈

今天跑了两次,都是跑了两小时左右就卡住了。
image
image
异常终止,是我主动结束的。
最后谢谢师傅写的程序,很好用。😄

【需求】

  1. 除了线程外,能否继续增加delay参数,指定延时(因为单线程有时候还是有点快,会被封ip)。
  2. 是否能引进vulmap的扫描显示的类似功能,检测某个漏洞的时候输出就删了重新输出不换行输出,只有检测到漏洞或者报错时才单行显示(第一是显示的结果太多,二是当检测到某个漏洞的时候容易被哗哗的顶上去了,还得慢慢拉上去看),检测到时,如果有payload信息就可以输出漏洞使用的payload信息,方便测试,而不是等着扫描完成后才能看到。
  3. 能否引入指纹识别后漏扫,因为比如我是thinkphp的网站,根本不可能会有struct2或者spring的漏洞,检测这些漏洞完全是浪费时间,特别是poc很多之后,就算检测到某个也基本是误报,明确目标cms或者框架的情况下没必要完全扫描所有poc漏洞。

dnslog问题

已经在配置文件中设置DNSLOG为TRUE ,但是还是无法回显
image

image

image

扫描时卡住

致远OA6 sql注入和通达OA任意用户登录,扫描时会卡住

找了好久,求个好友位一起完善POC

找了好久的框架,都准备写nuclei的yaml格式的POC来用了,今晚突然翻到一个你这个框架,真是我所需要的,求个好友位,QQ已添加,望回复

师傅好,提交了1个pr

因为是一些产品存在多个漏洞,我习惯会把某个产品的漏洞放在同一文件夹,修改代码后调用的时候直接传入文件夹名称即可调用,代码改动很小,见pr
效果如图
image

感谢师傅提供的工具

dnslog问题

vps上如何启动dnslog服务,这里没有说明

功能增强

建议添加POC模糊识别搜索利用,比如我需要利用jboss漏洞的时候,只需要 --poc="jboss"即可利用jboss所有的exp进行检测和利用

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.