GithubHelp home page GithubHelp logo

78778443 / qingscan Goto Github PK

View Code? Open in Web Editor NEW
1.6K 1.6K 275.0 25.5 MB

一个漏洞扫描器粘合剂,添加目标后30款工具自动调用;支持 web扫描、系统扫描、子域名收集、目录扫描、主机扫描、主机发现、组件识别、URL爬虫、XRAY扫描、AWVS自动扫描、POC批量验证,SSH批量测试、vulmap。

PHP 95.14% JavaScript 0.17% CSS 0.58% Smarty 1.44% Hack 2.48% HTML 0.18% Shell 0.01%

qingscan's Introduction

QingScan

一个批量漏洞挖掘工具,黏合各种好用的扫描器。

介绍

QingScan 是一款聚合扫描器,本身不生产安全扫描功能,但会作为一个安全扫描工具的搬运工; 当添加一个目标后,QingScan会自动调用各种扫描器对目标进行扫描,并将扫描结果录入到QingScan平台中进行聚合展示

安装教程

  1. 安装PHP扩展和项目依赖
apt install php php-xml php-gd php-mysqli php-dom
cd code && composer install  
  1. 用PHP启动项目web页面
php think run -p 80
  1. 新建数据库,并导入数据表,SQL文件在deploy下的qingscan.sql

  2. 访问web页面

curl http://127.0.0.1/
  1. 启动调用脚本
./script.sh

技术支持

qingscan提供私人订制服务,如果你二次开发需求,可以微信联系我.

联系我

在使用过程中有任何问题,可以通过公众号、微信、QQ群联系 联系我们

功能展示

📑 Licenses

本工具禁止进行未授权商业用途,禁止二次开发后进行未授权商业用途。

本工具仅面向合法授权的企业安全建设行为,在使用本工具进行检测时,您应确保该行为符合当地的法律法规,并且已经取得了足够的授权。

如您在使用本工具的过程中存在任何非法行为,您需自行承担相应后果,我们将不承担任何法律及连带责任。

在使用本工具前,请您务必审慎阅读、充分理解各条款内容,限制、免责条款或者其他涉及您重大权益的条款可能会以加粗、加下划线等形式提示您重点注意。

除非您已充分阅读、完全理解并接受本协议所有条款,否则,请您不要使用本工具。您的使用行为或者您以其他任何明示或者默示方式表示接受本协议的,即视为您已阅读并同意本协议的约束。

Stargazers

Stargazers over time

qingscan's People

Contributors

11072162 avatar 78778443 avatar tingting7788 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

qingscan's Issues

批量导入

批量导入的时候怎么启动所有的插件
官方示例的模板,好像不全

没事了

没事了,20版本的ubuntu改了,没习惯过来。

xss

干活了兄弟!
image

payload:"><a>12<marquee><img src=x onerror=alert(2)>test</marquee>

后台RCE漏洞

漏洞文件:code/app/controller/PocsFile.php
image
add()函数$filename和$content完全可控导致任意文件写入
POC: filename=../../../code/app/controller/a.php&content=123

能提供一个arm64的镜像吗

no matching manifest for linux/arm64/v8 in the manifest list entries

指定platform之后出现

awvs | exec /bin/sh: exec format error
mysqlser | exec /usr/local/bin/docker-entrypoint.sh: exec format error
qingscan | exec /bin/bash: exec format error

数据库端口对外映射root用户默认密码问题

这里docker-compose构建的话会将33306端口对外开放,然后root密码是123。

因为是默认配置,一般可能不会注意到去修改这个密码。

image

在fofa上搜了一圈title="QingScan",发现基本上都有这个问题

image

建议README.md上提示用户修改/root/QingScan/docker/latest/docker-compose.yaml文件下的MYSQL_ROOT_PASSWORD=选项值。

或者限制端口的对外访问之类的。

qingscan启动异常

Client:
Cloud integration: v1.0.22
Version: 20.10.11
API version: 1.41
Go version: go1.16.10
Git commit: dea9396
Built: Thu Nov 18 00:42:51 2021
OS/Arch: windows/amd64
Context: default
Experimental: true

#docker exec -it qingscan
#cat /tmp/safe.txt
scan port 进程已结束,正在重启此进程...cd /root/qingscan/code && php think scan port >> /tmp/port.txt & array ( 'app' => 'qing-scan-center', 'msg' => '即将执行命令:cd /root/qingscan/code && php think scan hydra >> /tmp/hydra.txt & ', 'time' => '2021-12-30 19:34:24', )

#docker loges

scan safe 进程已结束,正在重启此进程...cd /root/qingscan/code  &&  php think scan safe  >> /tmp/safe.txt & 
  [think\db\exception\PDOException]          
  SQLSTATE[HY000] [2002] Connection refused  

黑盒扫描工具AWVS状态显示存在BUG

使用AWVS进行黑盒扫描时,平台对AWVS的扫描状态获取存在BUG ,在AWVS平台上,扫描已经结束,但是在QingScan平台上仍然是等待扫描结束状态
image

原因是在项目qingscan目录中,文件/code/app/model/AwvsModel.php内68行左右,AWVS指令类相关的model代码对异步的AWVS调用处理存在问题。

建议的解决方法如下图:

image

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.