Wiki
http://k8gege.org/Ladon
简介
LadonGo一款开源网络渗透扫描器框架,使用它可轻松一键探测C段、B段、A段存活主机、指纹识别、端口扫描、密码爆破、远程执行、高危漏洞检测等。3.0版本包含23个模块功能,高危漏洞检测MS17010、SmbGhost,远程执行SshCmd、WinrmCmd,密码爆破SmbScan、SshScan、FtpScan、MysqlScan、MssqlScan、OracleScan、SqlplusScan、WinrmScan、HttpBasicScan,存活探测/信息收集/指纹识别PingScan、IcmpScan,HttpBanner、HttpTitle、TcpBanner、WeblogicScan、OxidScan,端口扫描PortScan。
功能模块
Detection
| . |
. |
| PingScan |
(Using system ping to detect Online hosts) |
| IcmpScan |
(Using ICMP Protocol to detect Online hosts) |
| SnmpScan |
(Using Snmp Protocol to detect Online hosts) |
| HttpBanner |
(Using HTTP Protocol Scan Web Banner) |
| HttpTitle |
(Using HTTP protocol Scan Web titles) |
| T3Scan |
(Using T3 Protocol Scan Weblogic hosts) |
| PortScan |
(Scan hosts open ports using TCP protocol) |
| TcpBanner |
(Scan hosts open ports using TCP protocol) |
| OxidScan |
(Using dcom Protocol enumeration network interfaces) |
VulDetection
| . |
. |
| MS17010 |
(Using SMB Protocol to detect MS17010 hosts) |
| SmbGhost |
(Using SMB Protocol to detect SmbGhost hosts) |
BruteForce
| . |
. |
| SmbScan |
(Using SMB Protocol to Brute-For 445 Port) |
| SshScan |
(Using SSH Protocol to Brute-For 22 Port) |
| FtpScan |
(Using FTP Protocol to Brute-For 21 Port) |
| 401Scan |
(Using HTTP BasicAuth to Brute-For web Port) |
| MysqlScan |
(Using Mysql Protocol to Brute-For 3306 Port) |
| MssqlScan |
(Using Mssql Protocol to Brute-For 1433 Port) |
| OracleScan |
(Using Oracle Protocol to Brute-For 1521 Port) |
| WinrmScan |
(Using Winrm Protocol to Brute-For 5985 Port) |
| SqlplusScan |
(Using Oracle Sqlplus Brute-For 1521 Port) |
RemoteExec
| . |
. |
| SshCmd |
(SSH Remote command execution Default 22 Port) |
| WinrmCmd |
(Winrm Remote command execution Default 5985 Port) |
Exploit
| . |
. |
| PhpStudyDoor |
(PhpStudy 2016 & 2018 BackDoor Exploit) |