
CVE-2026-33017 - Langflow < 1.9.0 PoC de RCE não autenticado
██╗ ██╗ ██████╗ ███████╗███████╗ ██████╗ ██████╗ ██████╗ ███████╗
██║ ██║██╔═══██╗██╔════╝██╔════╝██╔═══██╗██╔══██╗██╔═══██╗██╔════╝
██║ ██║██║ ██║███████╗███████╗██║ ██║██║ ██║██║ ██║███████╗
╚██╗ ██╔╝██║ ██║╚════██║╚════██║██║ ██║██║ ██║██║ ██║╚════██║
╚████╔╝ ╚██████╔╝███████║███████║╚██████╔╝██████╔╝╚██████╔╝███████║
╚═══╝ ╚═════╝ ╚══════╝╚══════╝ ╚═════╝ ╚═════╝ ╚═════╝ ╚══════╝
███████╗██╗ ██╗███████╗███╗ ██╗████████╗██╗
██╔════╝██║ ██║██╔════╝████╗ ██║╚══██╔══╝██║
███████╗██║ ██║█████╗ ██╔██╗ ██║ ██║ ██║
╚════██║██║ ██║██╔══╝ ██║╚██╗██║ ██║ ╚═╝
███████║╚██████╔╝███████╗██║ ╚████║ ██║ ██╗
╚══════╝ ╚═════╝ ╚══════╝╚═╝ ╚═══╝ ╚═╝ ╚═╝
━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
░ ESCANEADOR CONCORRENTE × NUCLEI × RECON ░
░ Captura de Banner · ID de Serviço · Detecção de Vulnerabilidades ░
░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░░
━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
┌──────────────────────────────────────────────────────────────┐
│ │
│ Escaneie IPs aleatórios → Capture banners → Identifique │
│ serviços → Alimente Nuclei → Encontre vulnerabilidades │
│ → Lucro │
│ │
└──────────────────────────────────────────────────────────────┘
Scanner de portas concorrente de alto desempenho com captura de banner, identificação de serviços e integração com Nuclei para descoberta automatizada de vulnerabilidades em escala.
Mecanismo Principal
|
Pipeline Nuclei
|
# 1. Clone o monstro
git clone https://github.com/Usman0220/port-scanner.git && cd port-scanner
# 2. Compile
go build -o port-scanner main.go
# 3. Solte a fera — escaneie porta 5678 com 500 workers, 10k IPs
./port-scanner -port 5678 -w 500 -n 10000
# 4. Pipeline completo — escaneie → filtre → nuclei
./port-scanner -port 80 -w 1000 -n 50000 -o http-open.txt
awk -F'[|]' '{print $1}' http-open.txt | sed 's/\[OPEN\] //' | cut -d: -f1 | sort -u > http-targets.txt
nuclei -l http-targets.txt -tags http -severity critical,high -o findings.txt
╔═══════════════════════════════════╗
║ MECANISMO DO SCANNER DE PORTAS ║
╚═══════════════════════════════════╝
│
┌───────────────┼───────────────┐
▼ ▼ ▼
┌──────────────┐ ┌──────────────┐ ┌──────────────┐
│ Gerador IP │ │ Pool de │ │ Coletor de │
│ │ │ Goroutines │ │ Resultados │
│ IPs Aleatórios│ │ │ │ │
│ Ignorar │ │ N workers │ │ Canal │
│ Privados │ │ Concorrente │ │ Bufferizado │
│ 1-223.x.x.x│ └──────┬───────┘ └──────┬───────┘
└──────┬───────┘ │ │
│ │ │
▼ ▼ ▼
┌──────────────┐ ┌──────────────┐ ┌──────────────┐
│ Conexão TCP │ │ Envio de │ │ Leitura de │
│ │ │ Sonda │ │ Banner │
│ Dial com │ │ │ │ │
│ timeout │ │ Consciente │ │ Identifi- │
│ 2s padrão │ │ de Protocolo│ │ cação de │
└──────────────┘ └──────────────┘ └──────────────┘
│
╔═══════════════╧═══════════════╗
║ SAÍDA: results.txt ║
╚═══════════════╤═══════════════╝
│
┌───────────────┼───────────────┐
▼ ▼ ▼
┌──────────────┐ ┌──────────────┐ ┌──────────────┐
│ awk / grep │ │ sort -u │ │ nuclei -l │
│ Extrair IPs │ │ Deduplicar │ │ Scan Vuln │
└──────────────┘ └──────────────┘ └──────────────┘
│
╔═══════════════╧═══════════════╗
║ DESCOBERTAS: nuclei-*.txt ║
╚═══════════════════════════════╝
# ┌─────────────────────────────────────────────────────────────┐
# │ PASSO 1: ESCANEIE — Encontre serviços ativos │
# │ PASSO 2: EXTRAIA — Pegue IPs dos resultados │
# │ PASSO 3: AUDITE — Escaneie vulnerabilidades com Nuclei │
# └─────────────────────────────────────────────────────────────┘
# Escaneie
./port-scanner -port 21 -w 1000 -n 50000 -o ftp-open.txt
# Extraia
awk -F'[|]' '{print $1}' ftp-open.txt | sed 's/\[OPEN\] //' | cut -d: -f1 | sort -u > ftp-targets.txt
# Audite
nuclei -l ftp-targets.txt -tags ftp -severity critical,high -o ftp-findings.txt
#!/bin/bash
# ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
# PIPELINE COMPLETO DE RECON — Escaneie → Extraia → Nuclei → Relatório
# ━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━━
PORTS=(21 22 23 25 80 110 143 443 3306 5432 6379 8080 8443 9090 27017 5678)
WORKERS=1000
IPS=30000
SEVERITY="critical,high,medium"
TEMPLATES="$HOME/.local/nuclei-templates"
echo "╔══════════════════════════════════════════════════════════╗"
echo "║ PIPELINE COMPLETO DE RECON INICIADO ║"
echo "╚══════════════════════════════════════════════════════════╝"
for port in "${PORTS[@]}"; do
echo ""
echo "┌──────────────────────────────────────────────────────┐"
echo "│ [*] ESCANEANDO PORTA $port"
echo "│ Workers: $WORKERS | Alvos: $IPS"
echo "└──────────────────────────────────────────────────────┘"
# Escaneie
./port-scanner -port $port -w $WORKERS -n $IPS -o "scan-port${port}.txt"
# Extraia alvos
awk -F'[|]' '{print $1}' "scan-port${port}.txt" | \
sed 's/\[OPEN\] //' | cut -d: -f1 | sort -u > "targets-port${port}.txt"