Search Exploits

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ

Browser

ํ•ญ์ƒ โ€œgoogleโ€ ๋˜๋Š” ๋‹ค๋ฅธ ๊ณณ์—์„œ ๊ฒ€์ƒ‰ํ•˜์„ธ์š”: <service_name> [version] exploit

๋˜ํ•œ https://exploits.shodan.io/์—์„œ shodan exploit search๋ฅผ ์‹œ๋„ํ•ด ๋ณด์„ธ์š”.

Searchsploit

exploitdb์—์„œ ์„œ๋น„์Šค์— ๋Œ€ํ•œ exploit๋ฅผ ๊ฒ€์ƒ‰ํ•˜๋Š” ๋ฐ ์œ ์šฉํ•ฉ๋‹ˆ๋‹ค.

#Searchsploit tricks
searchsploit "linux Kernel" #Example
searchsploit apache mod_ssl #Other example
searchsploit -m 7618 #Paste the exploit in current directory
searchsploit -p 7618[.c] #Show complete path
searchsploit -x 7618[.c] #Open vi to inspect the exploit
searchsploit --nmap file.xml #Search vulns inside an nmap xml result

Pompem

https://github.com/rfunix/Pompem์€ ์ต์Šคํ”Œ๋กœ์ž‡์„ ๊ฒ€์ƒ‰ํ•˜๊ธฐ ์œ„ํ•œ ๋˜ ๋‹ค๋ฅธ ๋„๊ตฌ์ž…๋‹ˆ๋‹ค.

msf> search platform:windows port:135 target:XP type:exploit

PacketStorm

์•„๋ฌด๊ฒƒ๋„ ๋ฐœ๊ฒฌ๋˜์ง€ ์•Š์œผ๋ฉด https://packetstormsecurity.com/์—์„œ ์‚ฌ์šฉ๋œ ๊ธฐ์ˆ ์„ ๊ฒ€์ƒ‰ํ•ด ๋ณด์„ธ์š”.

Vulners

vulners ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค์—์„œ๋„ ๊ฒ€์ƒ‰ํ•  ์ˆ˜ ์žˆ์Šต๋‹ˆ๋‹ค: https://vulners.com/

Sploitus

์ด๊ฒƒ์€ ๋‹ค๋ฅธ ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค์—์„œ ์ต์Šคํ”Œ๋กœ์ž‡์„ ๊ฒ€์ƒ‰ํ•ฉ๋‹ˆ๋‹ค: https://sploitus.com/

Sploitify

GTFOBins์™€ ์œ ์‚ฌํ•œ ํ•„ํ„ฐ๊ฐ€ ์žˆ๋Š” ์ต์Šคํ”Œ๋กœ์ž‡์˜ ํ๋ ˆ์ด์…˜๋œ ๋ชฉ๋ก (์ทจ์•ฝ์  ์œ ํ˜•์— ๋”ฐ๋ฅธ ํ•„ํ„ฐ: ๋กœ์ปฌ ๊ถŒํ•œ ์ƒ์Šน, ์›๊ฒฉ ์ฝ”๋“œ ์‹คํ–‰ ๋“ฑ, ์„œ๋น„์Šค ์œ ํ˜•: ์›น, SMB, SSH, RDP ๋“ฑ, OS ๋ฐ ์‹ค์Šต ๋žฉ (์ต์Šคํ”Œ๋กœ์ž‡์„ ๊ฐ€์ง€๊ณ  ๋†€ ์ˆ˜ ์žˆ๋Š” ๋จธ์‹ ์— ๋Œ€ํ•œ ๋งํฌ)): https://sploitify.haxx.it

search_vulns

search_vulns๋Š” ์•Œ๋ ค์ง„ ์ทจ์•ฝ์ ๊ณผ ์ต์Šคํ”Œ๋กœ์ž‡์„ ๊ฒ€์ƒ‰ํ•  ์ˆ˜ ์žˆ๊ฒŒ ํ•ด์ค๋‹ˆ๋‹ค: https://search-vulns.com/. NVD, Exploit-DB, PoC-in-GitHub, GitHub ๋ณด์•ˆ ์ž๋ฌธ ๋ฐ์ดํ„ฐ๋ฒ ์ด์Šค ๋ฐ endoflife.date์™€ ๊ฐ™์€ ๋‹ค์–‘ํ•œ ๋ฐ์ดํ„ฐ ์†Œ์Šค๋ฅผ ํ™œ์šฉํ•ฉ๋‹ˆ๋‹ค.

Tip

AWS ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ:HackTricks Training AWS Red Team Expert (ARTE)
GCP ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training GCP Red Team Expert (GRTE) Azure ํ•ดํ‚น ๋ฐฐ์šฐ๊ธฐ ๋ฐ ์—ฐ์Šตํ•˜๊ธฐ: HackTricks Training Azure Red Team Expert (AzRTE)

HackTricks ์ง€์›ํ•˜๊ธฐ