
log4shell (CVE-2021-44228) scanning tool
This tool will help you identify remote code execution vulnerability (log4j) on your systems.
You will need to install httpx, subfinder, assetfinder, curl and amass in order to run the bash script.
git clone https://github.com/shamo0/CVE-2021-44228.gitchmod +x log4j_scanner.sh./log4j_scanner.sh./log4j_scanner.sh -l subdomains.txt -i c6wvp482vtc10xx5bhnggdqp5neyyyyyb.interact.sh
./log4j_scanner.sh -d vulnsite.com -i c6wvp482vtc10xx5bhnggdqp5neyyyyyb.interact.sh
-h, --help Help menu
-l, --url-list List of domain/subdomain/ip to be used for scanning.
-d, --domain The domain name to which all subdomains and itself will be checked with Subfinder & Assetfinder.
-i, --inteactshdomain interactsh domain address.
But also please note that