基于Python3的漏洞检测工具 ( Python3 插件式框架 )

网友投稿 288 2022-10-10


基于Python3的漏洞检测工具 ( Python3 插件式框架 )

[TOC]

Python3 漏洞检测工具 -- lance

lance, a simple version of the vulnerability detection framework based on Python3.

基于Python3的简单版漏洞检测框架 -- lance

可以自定义poc或exp插件,可以指定要加载的poc或exp。

代码已经上传到Github : loadPlugin(url, poc=None): """load all plugins. """ if "://" not in url: url = "+ url url = url.strip("/") print("[*] Target url: %s" % url) plugin_path = os.path.join(os.path.dirname(os.path.dirname(os.path.realpath(__file__))),"plugins") if not os.path.isdir(plugin_path): print("[!] %s is not a directory! " % plugin_path) raise EnvironmentError print("[*] Plugin path: %s " % plugin_path) items = os.listdir(plugin_path) if poc: print("[*] Loading %s plugins." % poc) for item in items: if item.endswith(".py") and not item.startswith('__'): plugin_name = item[:-3] if poc in plugin_name: print("[*] Loading plugin: %s" % plugin_name) module = importlib.import_module("plugins." + plugin_name) try: result = module.run(url) if result: print("[+] " + result) else: print("[-] Not Vulnerable %s " % plugin_name) except: print("[!] ConnectionError ") else: continue else: for item in items: if item.endswith(".py") and not item.startswith('__'): plugin_name = item[:-3] print("[*] Loading plugin: %s" % plugin_name) module = importlib.import_module("plugins." + plugin_name) try: result = module.run(url) if result: print("[+] " + result) else: print("[-] Not Vulnerable %s " % plugin_name) except: print("[!] ConnectionError ") print("[*] Finished")

usage

please run python3 lance.py -h for help.

root@kali:~/lance# python3 lance.py usage: python lance.py lance. By b4zinga@outlook.com optional arguments: -h, --help show this help message and exit Target: -u URL target url. Module: -m module poc or exp to be loaded. defaul is all.

documents

Any advice or sugggestions

Please mail to b4zinga@outlook.com

代码已经上传到Github : https://github.com/b4zinga/lance


版权声明:本文内容由网络用户投稿,版权归原作者所有,本站不拥有其著作权,亦不承担相应法律责任。如果您发现本站中有涉嫌抄袭或描述失实的内容,请联系我们jiasou666@gmail.com 处理,核实后本网站将在24小时内删除侵权内容。

上一篇:java实现对excel文件的处理合并单元格的操作
下一篇:DH 与RSA的区别(东华大学)
相关文章

 发表评论

暂时没有评论,来抢沙发吧~