diff --git a/http/technologies/cleo-detect.yaml b/http/technologies/cleo-detect.yaml new file mode 100644 index 00000000000..876107c8219 --- /dev/null +++ b/http/technologies/cleo-detect.yaml @@ -0,0 +1,40 @@ +id: cleo-detect + +info: + name: Cleo Technology - Detect + author: rxerium + severity: info + description: | + This template detects Cleo technologies, including VLTrader, Harmony, and LexiCom, by inspecting response headers.It also extracts version information for each identified technology. + reference: + - https://www.cleo.com + metadata: + max-request: 1 + verified: true + shodan-query: 'Server: Cleo' + tags: tech,detect,cleo + +http: + - method: GET + path: + - '{{BaseURL}}' + + host-redirects: true + max-redirects: 2 + + matchers: + - type: word + part: server + words: + - "Cleo VLTrader" + - "Cleo Harmony" + - "Cleo LexiCom" + condition: or + + extractors: + - type: regex + part: server + regex: + - "Cleo VLTrader/([0-9.]+)" + - "Cleo Harmony/([0-9.]+)" + - "Cleo LexiCom/([0-9.]+)"