Skip to content
KitploitKITPLOIT
도구블로그
제출
도구블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

··피드·문의·개인정보·© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
도구/GitLabGitLab/exploit-database/exploitdb
ReconnaissanceExploit FrameworksVulnerability AnalysisExploitationShellcodeInformation GatheringPenetration TestingLearning & EducationCurated ResourcesPayload Development
GitLabexploit-database/exploitdb

Exploits + Shellcode + GHDB

252841일 전Kitploit 검토 완료

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
공유
Exploits + Shellcode + GHDB — exploitdb // 공식 Exploit-Database 저장소 | Kitploit

exploitdb // 공식 Exploit-Database 저장소

저장소 보기

The Exploit Database Git 저장소

이곳은 Offensive Security가 후원하는 프로젝트인 The Exploit Database의 공식 저장소입니다. 저장소 목록은 다음과 같습니다:

  • Exploits & Shellcodes: gitlab.com/exploit-database/exploitdb
  • Binary Exploits: gitlab.com/exploit-database/exploitdb-bin-sploits
  • Papers: gitlab.com/exploit-database/exploitdb-papers

The Exploit Database는 침투 테스터와 취약점 연구자가 사용할 수 있도록 개발된 공개 익스플로잇과 해당 취약 소프트웨어의 아카이브입니다. 직접 제출, 메일링 리스트 및 기타 공개 소스를 통해 수집된 exploits, shellcode, papers의 가장 포괄적인 컬렉션을 제공하고, 자유롭게 이용 가능하고 탐색하기 쉬운 데이터베이스로 제공하는 것을 목표로 합니다. The Exploit Database는 권고문(advisory)이 아닌 익스플로잇과 개념 증명(Proof-of-Concept) 코드를 위한 저장소이므로, 즉시 활용 가능한 데이터가 필요한 사람들에게 유용한 리소스입니다. 프로젝트에 대한 자세한 내용은 여기(오른쪽 상단 -> About Exploit-DB)와 여기(History)에서 확인할 수 있습니다.

이 저장소는 가장 최근에 추가된 제출물로 매일 업데이트됩니다. 추가 리소스는 binary exploits 저장소에서 찾을 수 있습니다.

Exploit은 /exploits/ 디렉터리에, shellcode는 /shellcodes/ 디렉터리에서 찾을 수 있습니다.


라이선스

이 프로젝트(및 SearchSploit)는 "GNU General Public License v2.0"에 따라 공개됩니다.


SearchSploit

이 저장소에는 SearchSploit 유틸리티가 포함되어 있으며, 하나 이상의 용어를 사용하여 익스플로잇, 셸코드 및 논문_(설치된 경우)_을 검색할 수 있습니다. 자세한 내용은 **SearchSploit 매뉴얼**을 참조하십시오.

사용법/예제

root@kitploit:~
kali@kali:~$ searchsploit -h
  Usage: searchsploit [options] term1 [term2] ... [termN]

==========
 Examples
==========
  searchsploit afd windows local
  searchsploit -t oracle windows
  searchsploit -p 39446
  searchsploit linux kernel 3.2 --exclude="(PoC)|/dos/"
  searchsploit -s Apache Struts 2.0.0
  searchsploit linux reverse password
  searchsploit -j 55555 | jq
  searchsploit --cve 2021-44228

  For more examples, see the manual: https://www.exploit-db.com/searchsploit

=========
 Options
=========
## Search Terms
   -c, --case     [term]      Perform a case-sensitive search (Default is inSEnsITiVe)
   -e, --exact    [term]      Perform an EXACT & order match on exploit title (Default is an AND match on each term) [Implies "-t"]
                                e.g. "WordPress 4.1" would not be detect "WordPress Core 4.1")
   -s, --strict               Perform a strict search, so input values must exist, disabling fuzzy search for version range
                                e.g. "1.1" would not be detected in "1.0 < 1.3")
   -t, --title    [term]      Search JUST the exploit title (Default is title AND the file's path)
       --exclude="term"       Remove values from results. By using "|" to separate, you can chain multiple values
                                e.g. --exclude="term1|term2|term3"
       --cve      [CVE]       Search for Common Vulnerabilities and Exposures (CVE) value

## Output
   -j, --json     [term]      Show result in JSON format
   -o, --overflow [term]      Exploit titles are allowed to overflow their columns
   -p, --path     [EDB-ID]    Show the full path to an exploit (and also copies the path to the clipboard if possible)
   -v, --verbose              Display more information in output
   -w, --www      [term]      Show URLs to Exploit-DB.com rather than the local path
       --id                   Display the EDB-ID value rather than local path
       --disable-colour       Disable colour highlighting in search results

## Non-Searching
   -m, --mirror   [EDB-ID]    Mirror (aka copies) an exploit to the current working directory
   -x, --examine  [EDB-ID]    Examine (aka opens) the exploit using $PAGER

## Non-Searching
   -h, --help                 Show this help screen
   -u, --update               Check for and install any exploitdb package updates (brew, deb & git)

## Automation
       --nmap     [file.xml]  Checks all results in Nmap's XML output with service version
                                e.g.: nmap [host] -sV -oX file.xml

=======
 Notes
=======
 * You can use any number of search terms
 * By default, search terms are not case-sensitive, ordering is irrelevant, and will search between version ranges
   * Use '-c' if you wish to reduce results by case-sensitive searching
   * And/Or '-e' if you wish to filter results by using an exact match
   * And/Or '-s' if you wish to look for an exact version match
 * Use '-t' to exclude the file's path to filter the search results
   * Remove false positives (especially when searching using numbers - i.e. versions)
 * When using '--nmap', adding '-v' (verbose), it will search for even more combinations
 * When updating or displaying help, search terms will be ignored

kali@kali:~$
kali@kali:~$ searchsploit afd windows local
---------------------------------------------------------------------------------------- -----------------------------------
 Exploit Title                                                                          |  Path
---------------------------------------------------------------------------------------- -----------------------------------
Microsoft Windows (x86) - 'afd.sys' Local Privilege Escalation (MS11-046)               | windows_x86/local/40564.c
Microsoft Windows - 'afd.sys' Local Kernel (PoC) (MS11-046)                             | windows/dos/18755.c
Microsoft Windows - 'AfdJoinLeaf' Local Privilege Escalation (MS11-080) (Metasploit)    | windows/local/21844.rb
Microsoft Windows 7 (x64) - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)  | windows_x86-64/local/39525.py
Microsoft Windows 7 (x86) - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)  | windows_x86/local/39446.py
Microsoft Windows XP - 'afd.sys' Local Kernel Denial of Service                         | windows/dos/17133.c
Microsoft Windows XP/2003 - 'afd.sys' Local Privilege Escalation (K-plugin) (MS08-066)  | windows/local/6757.txt
Microsoft Windows XP/2003 - 'afd.sys' Local Privilege Escalation (MS11-080)             | windows/local/18176.py
---------------------------------------------------------------------------------------- -----------------------------------
Shellcodes: No Result
kali@kali:~$
kali@kali:~$ searchsploit -p 39446
  Exploit: Microsoft Windows 7 (x86) - 'afd.sys' Dangling Pointer Privilege Escalation (MS14-040)
      URL: https://www.exploit-db.com/exploits/39446
     Path: /Users/b/Projects/git/forks/exploitdb/exploits/windows_x86/local/39446.py
    Codes: N/A
 Verified: False
File Type: Python script text executable, ASCII text

Copied EDB-ID #39446's path to the clipboard
kali@kali:~$

설치

SearchSploit의 핵심 기능이 작동하려면 "CoreUtils" 또는 "utilities"(예: bash, sed, grep, awk 등)가 필요합니다. 자동 업데이트 기능에는 git이 필요하며, Nmap XML 옵션을 사용하려면 xmllint(Debian 기반 시스템의 libxml2-utils 패키지에 포함됨)가 필요합니다.

보다 자세한 가이드는 **SearchSploit 매뉴얼**에서 찾을 수 있습니다.

Kali Linux

Exploit-DB/SearchSploit는 이미 Kali-Linux에 패키지로 포함되어 있습니다. 설치 방법 중 하나는 다음과 같습니다:

root@kitploit:~
kali@kali:~$ sudo apt -y install exploitdb

참고: 선택 사항으로 추가 패키지를 설치할 수도 있습니다.

root@kitploit:~
kali@kali:~$ sudo apt -y install exploitdb-bin-sploits exploitdb-papers

Git

요약하면, 저장소를 클론하고 바이너리를 $PATH에 추가한 다음 설정 파일을 편집하여 git 경로를 반영하면 됩니다:

root@kitploit:~
$ sudo git clone https://gitlab.com/exploit-database/exploitdb.git /opt/exploitdb
$ sudo ln -sf /opt/exploitdb/searchsploit /usr/local/bin/searchsploit

Homebrew

homebrew (패키지, formula)가 설치되어 있다면 다음 명령을 실행하면 설정이 완료됩니다:

root@kitploit:~
user@MacBook:~$ brew update && brew install exploitdb

크레딧

다음 분들이 이 프로젝트를 가능하게 했습니다:

  • Offensive Security
  • @Unix-Ninja
  • @g0tmi1k
도구 다운로드