linux-exploit-suggester 介绍

正如其名称所暗示的,这是一个linux-exploit-suggester,没有多余的装饰,没有花哨的功能;只是一个简单的脚本来跟踪漏洞并提出可能的漏洞利用获得“根”上合法的渗透测试,或理事检查身体

资料来源:http://penturalabs.wordpress.com/2013/08/26/linux-exploit-suggester/
linux-exploit-suggester 首页
linux-exploit-suggester 源代码版本库

包括在linux-exploit-suggester里的封装工具

linux-exploit-suggester - 脚本跟踪漏洞,并提出可能的漏洞

:~# linux-exploit-suggester

You will find linux-exploit-suggester in /usr/share/linux-exploit-suggester

linux-exploit-suggester 用法示例

搜索匹配Linux的内核3.0.0(-k 3.0.0):

:/usr/share/linux-exploit-suggester# ./Linux_Exploit_Suggester.pl -k 3.0.0

Kernel local: 3.0.0

Possible Exploits:
[+] semtex
   CVE-2013-2094
   Source: http://www.exploit-db.com/download/25444/‎
[+] memodipper
   CVE-2012-0056
   Source: http://www.exploit-db.com/exploits/18411/
[+] perf_swevent
   CVE-2013-2094
   Source: http://www.exploit-db.com/download/26131