Skip to content
KitploitKITPLOIT
工具漏洞利用博客
Log in
提交
工具漏洞利用博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

订阅源联系隐私© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
go-exploit-cache — 一个用于生成供 go-exploit 使用的 HTTP 缓存数据库的工具 | Kitploit
工具/GitHubGitHub/vulncheck-oss/go-exploit-cache
OSINT (开源情报)数据包嗅探与分析侦察漏洞分析漏洞利用脚本与自动化信息收集实用工具与框架威胁情报
GitHubvulncheck-oss/go-exploit-cache

go-exploit-cache

一个用于生成供 go-exploit 使用的 HTTP 缓存数据库的工具

928个月前尚未审核

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享
查看仓库

go-exploit-cache

go-exploit-cache 构建一个由 go-exploit 框架使用的 HTTP 缓存 SQLite 数据库,以实现跨漏洞利用共享和无扫描目标验证。go-exploit 无需主动连接目标,而是可以查询缓存,利用先前收集的 HTTP 数据(Shodan、Censys、PCAP、RunZero 等)来运行版本检查和其他扫描。

项目:vulncheck-oss/go-exploit
此工具生成 go-exploit 读取的 SQLite 缓存。

快速摘要

  • 从多个来源摄取并规范化 HTTP 请求/响应。
  • 生成 go-exploit 用于无扫描验证和版本检查的 SQLite http_cache。
  • 支持的输入:Shodan .json.gz、RunZero JSONL(以及有限的 RunZero JSON1)、PCAP/pcapng,以及 Censys JSONL(通过辅助脚本)。

为什么使用此工具

  • 为不希望进行主动扫描的演示、研究或工作流启用无扫描验证和版本检测。
  • 将多样化的 HTTP 数据源聚合到一个可复用的数据库中。
  • 允许多个漏洞利用模块/扫描器共享观察到的 HTTP 工件(标头、cookie、正文、favicon 哈希等)。

功能

  • 摄取并规范化:
    • Shodan .json.gz
    • RunZero JSONL(以及有限的 RunZero JSON1)
    • PCAP/pcapng(提取 HTTP)
    • Censys JSONL(使用 censys/censys_v3_dump.py 进行准备)
  • 生成可供 go-exploit 使用的 SQLite 数据库
  • 为某些后端(例如 Censys)生成辅助目标列表

示例

更多详情请参见 USAGE.md。

从 Shodan 导出构建缓存

./build/go-exploit-cache \
  -type shodan-gzip \
  -in ~/Downloads/734342e9-56b8-4299-a072-9d1d28f66434.json.gz \
  -out confluence.db

典型输出:

Decompressing the Shodan GZIP... this can be slow
Decompressed file written to .tmp/shodan.json
Generating database entries...
Cleaning up .tmp directory

检查数据库:

sqlite3 confluence.db
sqlite> select rhost, rport from http_cache limit 1;
52.200.210.54|80

演示:无扫描版本检查(无网络)

您可以仅使用缓存数据验证目标。示例使用 unshare -n 来阻止网络访问(仅用于演示——并非必须使用 unshare):

sudo unshare -n ./build/cve-2023-22527_linux-arm64 \
  -c -v -rhost 52.200.210.54 -rport 80 \
  -db ~/go-exploit-cache/confluence.db

示例输出:

time=... level=STATUS msg="Starting target" host=52.200.210.54 port=80
time=... level=STATUS msg="Validating Confluence target"
time=... level=SUCCESS msg="Target verification succeeded!"
time=... level=VERSION msg="The reported version is 7.19.17"
time=... level=STATUS msg="The target appears to be a patched version." vulnerable=no

支持的输入

  • shodan-gzip — Shodan .json.gz 导出
  • runzero-jsonl — RunZero JSONL(有限的 JSON1 支持)
  • pcap / pcapng — PCAP 文件(提取 HTTP 流量)
  • censys-jsonl — Censys JSONL(使用 censys/ 中的辅助脚本)

示例文件请参见 test/testdata。


Censys 说明

  • Censys 没有提供一种简洁的“下载所有你想要的信息”的机制。因此我们创建了 censys_v3_dump.py 来抓取数据。它首先接受一个 Censys Platform 搜索查询,然后下载各个主机以访问 HTTP 标头和完整的 HTTP 正文。使用 censys/censys_v3_dump.py 收集 Censys 结果并将其格式化为适合摄取的 JSONL。

数据库模式(简要)

http_cache — 主表(缓存生成表)

columntypedescription
idINTEGERprimary key
createdINTEGERdate
rhostTEXTremote host (IP)
rportINTremote port
uriTEXTthe cached path
dataBLOBHTTP headers + body

verified — 软件描述表(go-exploit 填充表)

columntypedescription
idINTEGERprimary key
createdINTEGERdate
software nameTEXTName of software
installedINT0 or 1
versionTEXTThe software version
rhostTEXTremote host (IP)
rportINTremote port

编译

在 Ubuntu 上:

sudo apt install libpcap-dev
make

(需要 Go 工具链——参见 https://go.dev/doc/install。)

下载工具