
Diese Arbeit umfasst Test- und Verbesserungswerkzeuge für CVE-2021-44228 (log4j).
Der Zweck dieser Studie ist es, nützliche Werkzeuge aufzulisten, die das Blue und Red Team gegen die Log4j-Schwachstelle einsetzen können. Github-Links zu Bypass-Tools, Scannern, Erkennungsmechanismen usw. können verwendet werden.
Scannen oder POC
🔴 Titel: log4j-shell-poc
🔴 Beschreibung: Ein Proof-of-Concept für die kürzlich entdeckte Schwachstelle CVE-2021-44228.
🔴 URL: https://github.com/kozmer/log4j-shell-poc
🔴 Titel: Log4j2-RCE
🔴 Beschreibung: Log4j2 CVE-2021-44228 Reproduktion und Echo-Nutzung
🔴 URL: https://github.com/binganao/Log4j2-RCE
🔴 Titel: jndi-ldap-test-server
🔴 Beschreibung: Ein minimalistischer LDAP-Server, der zum Testen der Anfälligkeit für JNDI+LDAP-Injection-Angriffe in Java gedacht ist, insbesondere CVE-2021-44228
🔴 URL: https://github.com/rakutentech/jndi-ldap-test-server
🔴 Titel: Logout4Shell
🔴 Beschreibung: Verwenden Sie die Log4Shell-Schwachstelle, um einen Opfer-Server gegen Log4Shell zu impfen
🔴 URL: https://github.com/Cybereason/Logout4Shell
🔴 Titel: sample-ldap-exploit
🔴 Beschreibung: Eine kurze Demo von CVE-2021-44228
🔴 URL: https://github.com/phoswald/sample-ldap-exploit
🔴 Titel: Log4j RCE CVE-2021-44228 Exploitation Detection
🔴 URL: https://gist.github.com/Neo23x0/e4c8b03ff8cdf1fa63b7d15db6e3860b
🔴 Titel: Python-Skript zur Erkennung, ob ein HTTP-Server potenziell anfällig für die log4j 0day RCE ist
🔴 URL: https://gist.github.com/byt3bl33d3r/46661bc206d323e6770907d259e009b6
🔴 Titel: log4j2burpscanner
🔴 Beschreibung: CVE-2021-44228, log4j2 Burp-Plug-in Java-Version, dnslog wählte Nicht-dnslog.cn-Domänennamen
🔴 URL: https://github.com/f0ng/log4j2burpscanner
🔴 Titel: log4shelldetect
🔴 Beschreibung: Scannt Dateien auf .jars, die potenziell anfällig für Log4Shell (CVE-2021-44228) sind, indem die Klassenpfade innerhalb der .jar untersucht werden.
🔴 URL: https://github.com/1lann/log4shelldetect
🔴 Titel: Nmap Log4Shell
🔴 Beschreibung: Nmap Log4Shell NSE-Skript zur Erkennung von Apache Log4j RCE (CVE-2021-44228)
🔴 URL: https://github.com/giterlizzi/nmap-log4shell
🔴 Titel: LOG4J-POC
🔴 Beschreibung: LOG4J Batch-Erkennungswerkzeug -- Red Team Tool -- Unverzichtbar für den Netzschutz -- Redteam --
🔴 URL: https://github.com/XiaoBai-12138/LOG4J-POC
🔴 Titel: CVE-2021-44228-PoC-log4j-bypass-words
🔴 Beschreibung: CVE-2021-44228 - LOG4J Java-Exploit - Ein Trick, um Wortblockierungs-Patches zu umgehen
🔴 URL: https://github.com/Puliczek/CVE-2021-44228-PoC-log4j-bypass-words
🔴 Titel: Log4Shell Mitigation tester
🔴 Beschreibung: Log4Shell CVE-2021-44228 Mitigation-Tester
🔴 URL: https://github.com/lhotari/log4shell-mitigation-tester
🔴 Titel: log4j-rce-detect-waf-bypass
🔴 Beschreibung: Eine Nuclei-Vorlage für Apache Log4j RCE (CVE-2021-44228) Erkennung mit WAF-Bypass-Payloads
🔴 URL: https://github.com/toramanemre/log4j-rce-detect-waf-bypass
🔴 Titel: jndiRep - CVE-2021-44228
🔴 Beschreibung: Scannt Ihre Logs auf CVE-2021-44228-bezogene Aktivitäten und meldet die Angreifer
🔴 URL: https://github.com/js-on/jndiRep
🔴 Titel: CVE-2021-44228 checker
🔴 Beschreibung: Prüfung auf Schwachstelle CVE-2021-44228
🔴 URL: https://github.com/greymd/CVE-2021-44228
🔴 Titel: noPac
🔴 Beschreibung: CVE-2021-42287/CVE-2021-42278 Scanner & Exploiter
🔴 URL: https://github.com/cube0x0/noPac
🔴 Titel: log4j-scan
🔴 Beschreibung: Ein vollautomatischer, genauer und umfangreicher Scanner zum Auffinden von log4j RCE CVE-2021-44228
🔴 URL: https://github.com/fullhunt/log4j-scan
🔴 Titel: CVE-2021-44228-Scanner
🔴 Beschreibung: Schwachstellen-Scanner für Log4j2 CVE-2021-44228
🔴 URL: https://github.com/logpresso/CVE-2021-44228-Scanner
🔴 Titel: Log4J lab
🔴 Beschreibung: Ein Labor zum Herumspielen mit dem Log4J CVE-2021-44228
🔴 URL: https://github.com/tuyenee/Log4shell
🔴 Titel: log4j-scanner
🔴 Beschreibung: Einfaches Werkzeug zum Scannen ganzer Verzeichnisse auf Versuche von CVE-2021-44228
🔴 URL: https://github.com/kek-Sec/log4j-scanner-CVE-2021-44228
🔴 Titel: Log4j-Windows-Scanner
🔴 Beschreibung: CVE-2021-44228-Schwachstelle in der Apache Log4j-Bibliothek | Log4j-Schwachstellen-Scanner auf Windows-Rechnern.
🔴 URL: https://github.com/Joefreedy/Log4j-Windows-Scanner
🔴 Titel: log4j-detector
🔴 Beschreibung: Erkennt Log4J-Versionen auf Ihrem Dateisystem in jeder Anwendung, die anfällig für CVE-2021-44228 und CVE-2021-45046 sind. Funktioniert auf #Linux, #Windows und #Mac und überall dort, wo Java läuft!
🔴 URL: https://github.com/mergebase/log4j-detector
🔴 Titel: Log4JHunt
🔴 Beschreibung: Ein automatisierter, zuverlässiger Scanner für die Log4Shell CVE-2021-44228-Schwachstelle
🔴 URL: https://github.com/redhuntlabs/Log4JHunt
🔴 Titel: CVE-2021-44228 (Apache Log4j Remote Code Execution)
🔴 Beschreibung: Die Version 1.x hat andere Schwachstellen, es wird empfohlen, auf die neueste Version zu aktualisieren.
🔴 URL: https://github.com/roxas-tan/CVE-2021-44228
Defensive Maßnahmen
🔵 Titel: log4j-patcher
🔵 Beschreibung: Java-Agent, der die JNDI-Lookup von Apache Log4J deaktiviert. Schnellkorrektur für CVE-2021-44228
🔵 URL: https://github.com/alerithe/log4j-patcher
🔵 Titel: CVE-2021-44228 DFIR-Notes
🔵 URL: https://github.com/Azeemering/CVE-2021-44228-DFIR-Notes
🔵 Titel: cloudrasp-log4j2
🔵 Beschreibung: Ein Runtime Application Self-Protection-Modul, das speziell für die log4j2 RCE (CVE-2021-44228)-Abwehr entwickelt wurde
🔵 URL: https://github.com/boundaryx/cloudrasp-log4j2
🔵 Titel: Minecraft Log4j Honeypot
🔵 Beschreibung: Minecraft-Honeypot für den Log4j-Exploit. CVE-2021-44228 Log4Shell LogJam
🔵 URL: https://github.com/Adikso/minecraft-log4j-honeypot
🔵 Titel: CVE-2021-44228 a.k.a. LOG4J
🔵 Beschreibung: Dies ist ein öffentliches Repository von Wortell, das Informationen, Links, Dateien und andere Elemente im Zusammenhang mit CVE-2021-44228 enthält
🔵 URL: https://github.com/wortell/log4j
🔵 Titel: L4J-Vuln-Patch
🔵 Beschreibung: Dieses Werkzeug patcht die CVE-2021-44228 Log4J-Schwachstelle, die in allen Minecraft-Versionen vorhanden ist. HINWEIS: DIESES WERKZEUG MUSS nach dem Herunterladen oder Aktualisieren von Minecraft-Versionen ERNEUT AUSGEFÜHRT WERDEN, da es kein dauerhafter Patch ist
🔵 URL: https://github.com/jacobtread/L4J-Vuln-Patch
🔵 Titel: log4j-vulnerability-patcher-agent
🔵 Beschreibung: Behebt CVE-2021-44228 in log4j durch Patchen der JndiLookup-Klasse
🔵 URL: https://github.com/saharNooby/log4j-vulnerability-patcher-agent
🔵 Titel: log4jail
🔵 Beschreibung: Ein schneller Firewall-Reverse-Proxy mit TLS (HTTPS) und Swarm-Unterstützung zur Verhinderung von Log4J-Angriffen (Log4Shell aka CVE-2021-44228)
🔵 URL: https://github.com/mufeedvh/log4jail