Skip to content
KitploitKITPLOIT
OutilsBlog
Soumettre
OutilsBlog
Soumettre

Outils de Hacking, PenTest et Cybersécurité pour votre Arsenal de Sécurité !

Kitploit est un répertoire d'outils de hacking, de cybersécurité et de pentesting. Découvrez les dernières mises à jour des projets pour trouver des vulnérabilités, analyser des systèmes, automatiser les tests et renforcer votre sécurité.

··Flux·Contact·Confidentialité·© 2026 Kitploit

Répertoire d'outils

Catégories

Voir toutes les catégories
Loading categories
canTot — framework de h4xing canbus rapide et sale | Kitploit
Outils/GitHubGitHub/shipcod3/cantot
Frameworks d'ExploitationFuzzingTests d'Intrusion
GitHubshipcod3/cantot

canTot

framework de h4xing canbus rapide et sale

Voir le dépôt
15027il y a 2 ansVérifié par Kitploit

Populaires

Voir tout →

Découvrez les outils les plus utilisés par notre communauté.

Explorer tous les outils

Parcourez notre collection d'outils

Voir tous les outils →
Partager

canTot

canTot est un framework CLI basé sur Python, basé sur sploitkit et facile à utiliser car il ressemble au travail avec Metasploit. Ceci est similaire à un framework d'exploitation mais axé sur les vulnérabilités connues du bus CAN ou des hacks amusants du bus CAN. Il peut également être utilisé comme guide pour le pentest de véhicules et pour apprendre Python pour le Car Hacking de manière plus facile. Ce n'est pas pour réinventer la roue des fuzzers CAN connus, des outils d'exploration de voitures comme caring caribou, ou d'autres excellents analyseurs CAN existants. Mais pour combiner toutes les vulnérabilités connues et les hacks amusants du bus CAN dans la sécurité automobile.

Un projet réalisé par Car Hacking Village Philippines.

Installation

root@kitploit:~
git clone https://github.com/shipcod3/canTot
cd canTot
pip3 install -r requirements.txt

Remarque : Fonctionne mieux avec Kali et Ubuntu

Exemple d'utilisation du framework :

root@kitploit:~
─$ python3 main.py 

                                                                                                                                                                                                                  
                                                                             @@@@@@@   @@@@@@   @@@  @@@  @@@@@@@   @@@@@@   @@@@@@@                                                                              
                                                                            @@@@@@@@  @@@@@@@@  @@@@ @@@  @@@@@@@  @@@@@@@@  @@@@@@@                                                                              
                                                                            !@@       @@!  @@@  @@!@!@@@    @@!    @@!  @@@    @@!                                                                                
                                                                            !@!       !@!  @!@  !@!!@!@!    !@!    !@!  @!@    !@!                                                                                
                                                                            !@!       @!@!@!@!  @!@ !!@!    @!!    @!@  !@!    @!!                                                                                
                                                                            !!!       !!!@!!!!  !@!  !!!    !!!    !@!  !!!    !!!                                                                                
                                                                            :!!       !!:  !!!  !!:  !!!    !!:    !!:  !!!    !!:                                                                                
                                                                            :!:       :!:  !:!  :!:  !:!    :!:    :!:  !:!    :!:                                                                                
                                                                             ::: :::  ::   :::   ::   ::     ::    ::::: ::     ::                                                                                
                                                                             :: :: :   :   : :  ::    :      :      : :  :      :                                                                                 
                                                                                                                                                                                                                  
                                                                                                                                                                                                                  
                                                                                                         ███████████           █████                                                                              
                                                                                                        ░█░░░███░░░█          ░░███                                                                               
                                                                            ██████   ██████   ████████  ░   ░███  ░   ██████  ███████                                                                             
                                                                           ███░░███ ░░░░░███ ░░███░░███     ░███     ███░░███░░░███░                                                                              
                                                                          ░███ ░░░   ███████  ░███ ░███     ░███    ░███ ░███  ░███                                                                               
                                                                          ░███  ███ ███░░███  ░███ ░███     ░███    ░███ ░███  ░███ ███                                                                            
                                                                          ░░██████ ░░████████ ████ █████    █████   ░░██████   ░░█████                                                                             
                                                                           ░░░░░░   ░░░░░░░░ ░░░░ ░░░░░    ░░░░░     ░░░░░░     ░░░░░                                                                              
                                                                                                                                                                                                                  
                                                                                                                                                                                                                  
                                                                                    >> quick and dirty canbus h4xing framework                                                                                    
                                                                                                   >> @shipcod3                                                                                                   
                                                                                                                                                                                                                  
                                                                                                                                                                                                                  
 
        -=[ 13 uncategorized ]=-                                                                                                                                                                                  
                                                                                                                                                                                                                  
cantot > show modules                                                                                                                                                                                             

Uncategorized modules
=====================

   Name                         Path  Enabled  Description                                                                                                                                                     
   ----                         ----  -------  -----------                                                                                                                                                     
   cherokee_kill_brakes         .     Y        This module will bleed all the brakes on the 2014 Jeep Cherokee while the car is moving. This has the result that the brakes will not work during this time and 
                                               has significant safety issues, even if it only works if you are driving slowly.                                                                                 
   cherokee_kill_engine         .     Y        This module will kill the engine on the 2014 Jeep Cherokee while the car is moving at low speed by killing a particular fuel injector.                          
   cherokee_turn_steering       .     Y        This module will put the Parking Assist Module(PAM) in diagnostic session and send a CAN message to tell the power steering ECU to turn the wheel for the Jeep  
                                               Cherokee 2014.                                                                                                                                                  
   diagnostic_state             .     Y        This module will keep the vehicle in a diagnostic state on loop by sending tester present packet.                                                               
   ecu_hard_reset               .     Y        This module performs hard reset in the ECU Reset Service Identifier (0x11).                                                                                     
   ford_escape_door_ajar_spoof  .     Y        This module will indicate that the door is ajar (open) from the instrument panel despite not opened.                                                            
   ford_escape_kill_engine      .     Y        This module will kill the engine for Ford Escape 2010 without establishing a diagnostic session and works at any speed.                                         
   jeep_wrangler_evicsend       .     Y        This module allows you to display the word Hacked on a 2012 Jeep Wrangler EVIC.                                                                                 
   kill_bus                     .     Y        This module will perform a known denial of service via the CAN bus called Firehose attack.                                                                      
   malibu_overheat              .     Y        This module will flood temp gauge on a 2006 Malibu.                                                                                                             
   mazda_ic_mover               .     Y        This module moves the needle of the accelorometer and speedometer of the Mazda 2 instrument cluster.                                                            
   prius_park_kill_engine       .     Y        This module will kill the fuel to individual or all cylinders in the internal combustion engine of a Toyota Prius 2010 but requires it to be parked.            
   reset_mileage                .     Y        This module clears diagnostic trouble codes and resets the mileage.

cantot > use diagnostic_state                                                                                                                                                                                     
cantot (diagnostic_state) > show options                                                                                                                                                                          

Module options
==============

   Name       Value  Required  Description                     
   ----       -----  --------  -----------                     
   ARBID      2015   Y         Arbitration ID (Default: 0x7DF) 
   INTERFACE  vcan0  Y         CAN interface                   

cantot (diagnostic_state) > run                                                                                                                                                                                    
[*] Putting the vehicle in a diagnostic state...
Press Ctrl+C to stop or cancel

Auteur

Jay Turla

Si vous aimez canTot, vous pouvez m'offrir un café pour soutenir ce projet :)

Buy Me A Coffee

Contributeurs

  • superuserx

Crédits

  • Nikhil Bogam pour CVE-2022-26269 et pour m'avoir permis de porter ses découvertes.
  • Charlie Miller et Chris Valasek pour leurs recherches et articles.
  • Ian Tabor (mintynet) pour ses conseils et son mentorat.
  • Car Hacking Village
  • Eric Evenchick pour pyvit
  • Alexandre D'Hondt pour sploitkit
  • carfucar pour l'inspiration de canfuzz_sids.py
  • Craig Smith pour le Car Hacker's Handbook et l'inspiration hwbridge
  • ps1337 pour udsSecAccess.py pour le scan des services UDS en utilisant Security Access
  • Keen Security Lab de Tencent pour leurs hacks Tesla
  • La correction de superuserx sur une faille logique pour uds_sec_access.py
Télécharger l’outil