×ðÁú¿­Ê±

֤ȯ¼ò³Æ£º×ðÁú¿­Ê± ֤ȯ´úÂ룺002212
È«Ììºò7x24Сʱ·þÎñ£º 400-777-0777

¹¤¾ß|ºì¶Ó¿ìËÙÅúÁ¿´òµã

×î½ü¿´µ½Á˹ØÓÚÐí¶àºì¶Ó·½ÃæµÄÎÄÕ£¬ÔõÑù¾ÙÐÐÐÅÏ¢ÍøÂ磬´Ó¼òµ¥Ä¿µÄ»ò¶à¸öÄ¿µÄÖоÙÐпìËÙ²éÕÒÎó²î¡£½ñÌìÌṩһÖÖÕë¶Ô½Ï¶à×ʲú»òÄ¿µÄµÄÇéÐÎϾÙÐÐÅúÁ¿Ê¶±ðÄ¿µÄ¿ò¼Ü¾ÙÐÐÕë¶ÔÐÔÎó²îÍÚ¾òµÄ·½·¨¡£ÓõúÿÉÄÜÆäËü²½¶Ó»¹ÔÚÐÁÐÁÇÚ¿à´òµãµÄʱ¼ä£¬ÄãÒѾ­½øÄÚÍøÁË¡£

¹¤¾ß|ºì¶Ó¿ìËÙÅúÁ¿´òµã

Ðû²¼Ê±¼ä£º2022-09-06
ä¯ÀÀ´ÎÊý£º4932
·ÖÏí£º

ÎÄÕÂȪԴ£ºÏÈÖªÉçÇø£¨Å£°®»¨£©

Ô­Îĵص㣺https://xz.aliyun.com/t/10442

0x01 ǰÑÔ

×î½ü¿´µ½Á˹ØÓÚÐí¶àºì¶Ó·½ÃæµÄÎÄÕ£¬ÔõÑù¾ÙÐÐÐÅÏ¢ÍøÂ磬´Ó¼òµ¥Ä¿µÄ»ò¶à¸öÄ¿µÄÖоÙÐпìËÙ²éÕÒÎó²î¡£½ñÌìÌṩһÖÖÕë¶Ô½Ï¶à×ʲú»òÄ¿µÄµÄÇéÐÎϾÙÐÐÅúÁ¿Ê¶±ðÄ¿µÄ¿ò¼Ü¾ÙÐÐÕë¶ÔÐÔÎó²îÍÚ¾òµÄ·½·¨¡£ÓõúÿÉÄÜÆäËü²½¶Ó»¹ÔÚÐÁÐÁÇÚ¿à´òµãµÄʱ¼ä£¬ÄãÒѾ­½øÄÚÍøÁË¡£

0x02 ÕýÎÄ

×î½ü EHole ¸üÐÂÁË3.0°æ±¾£¬ÌṩÁË finger Óë fofaext ²ÎÊý£¬fofaext²ÎÊýÖ÷Òª´Ófofa¾ÙÐÐÅúÁ¿»ñÈ¡ IP µÄ¶Ë¿ÚÇéÐΣ¬¶ø finger Ôò¾ÙÐÐÅúÁ¿¾ÙÐÐÖ¸ÎÆÑé֤ʶ±ð¡£ÏÖÔÚ¿ªÔ´µÄÖ¸ÎÆ¿ìÒª1000Ìõ£¬»ù±¾É϶¼ÊǽÏÁ¿³£Óöµ½µÄϵͳ£¬ÁíÍâ finger ²ÎÊýÔò¿ÉÒÔÖ±½Óʶ±ðÏÂÃæÃûÌõĵص㣺

IP:PORT

HTTP(s)://URL

HTTP(s)://IP

HTTP(s)://IP:PORT

ÔÚºì¶Ó³¡¾°ÏÂÊ×ÏȶԶà¸öÄ¿µÄ¾ÙÐÐÁË×ʲúÍøÂ磬ÓÌÈçʱ¼¸Ç§ÉÏÍò¸öIP£¬ÔõÑù¿ìËٵĴÓÕâЩ×ʲúÖоÙÐлñÈ¡Ö÷ÒªµÄϵͳ»òÕßÖ±½ÓÄÜ RCE µÄÏµÍ³ÄØ£¿

¿ÉÒÔÏÈ´Ófofa¾ÙÐÐÅúÁ¿ÌáÈ¡IP+PORT£º

./Ehole-darwin fofaext -l /Users/r1ng/Downloads/ip.txt

²âÊÔÁùÍò¸öIP´ÓFOFAÌáȡԼĪÐèÒª15-20·ÖÖÓ×óÓÒ¡£ÌáÈ¡ºó»á×Ô¶¯ÌìÉú results.xlsx Îļþ¡£

Ëæºó¿ÉÖ±½Ó½« host ÁÐ copy ÖÁ txt Îı¾ÖоÙÐÐʶ±ðÖ÷ÒªµÄϵͳ£¨×îÖÕ»ñÈ¡HTTP·þÎñ½«3ÍòÌõ£¬Ê¶±ð10·ÖÖÓ×óÓÒ£©£º

PS£ºÖ¸ÎÆ¿É×Ô½ç˵Ìí¼Ó£¬ÈçÊÖÀïÓÐij¸öϵͳµÄ 0day ¿ÉÖ¸¶¨Ìí¼ÓÖ¸ÎÆ¾ÙÐÐʶ±ð¡£

./Ehole-darwin finger -l /Users/r1ng/Downloads/url.txt

×îÖÕÊä³öµÄЧ¹ûÈçÏ£º

ÖÖÖÖÖØµãϵͳ¿ÉÖ±½Ó¾ÙÐÐɸѡºó°´Ö¸¶¨Ä¿µÄ¾ÙÐй¥»÷»ñȡȨÏÞ£¬ºÃ±Èshiro£º

ijOA£º

º£¿µÍþÊÓ rceµÈ£º

........

½ÓÏÂÀ´¾Í¿ÉÒÔ½øÈëÄÚÍøËæÒâʩչÁË~

0x03 ×ܽá

ÔÚºì¶Ó×÷Õ½ÖУ¬ÐÅÏ¢ÍøÂçÊDZز»¿ÉÉٵĻ·½Ú¡£EHole¿ÉÒÔ×ÊÖúºì¶ÓÖ°Ô±¿ìËÙ´ÓÍøÂçÖÐÒÔ¼°´ó×ÚÔÓÂÒµÄ×ʲúÖо«×¼¶¨Î»µ½Ò×±»¹¥»÷µÄϵͳºÍųÈõ×ʲú£¬´Ó¶øÊµÑé½øÒ»²½¹¥»÷¡£

EHoleÏîÄ¿µØµã£º

https://github.com/EdgeSecurityTeam/EHole

Òªº¦´Ê±êÇ©£º
×ðÁú¿­Ê± Íø°²¹¤¾ß ºì¶Ó¿ìËÙÅúÁ¿´òµã
¿Í»§·þÎñÈÈÏß

400-777-0777
7*24Сʱ·þÎñ

ÁªÏµÓÊÏä

servicing@topsec.com.cn

ɨÂë¹Ø×¢
ÍøÕ¾µØÍ¼