0x727 / FingerprintHub

侦查守卫(ObserverWard)的指纹库
https://0x727.github.io/FingerprintHub/
MIT License
988 stars 185 forks source link

提交指纹-[yonyou-nc-cloud] #158

Closed Rvn0xsy closed 1 year ago

Rvn0xsy commented 1 year ago

测试目标

http://182.140.224.187:10001/

指纹的Yaml规则

name: yonyou-nc-cloud
priority: 3
nuclei_tags:
 - - "yonyou-nc-cloud"
   - "yonyou-nc-cloud"
fingerprint:
 - path: /
   request_method: get
   request_headers: {}
   request_data: ''
   status_code: 0
   headers: {}
   keyword:
     - <meta http-equiv=refresh content=0;url=nccloud>
   favicon_hash: [ ]
github-actions[bot] commented 1 year ago

验证过程:

点击展开查看

```bash fingerprint[0]: missing field `headers` at line 6 column 4 ```

验证结果:

github-actions[bot] commented 1 year ago

验证过程:

点击展开查看

```bash fingerprint[0]: missing field `request_headers` at line 6 column 4 ```

验证结果:

github-actions[bot] commented 1 year ago

验证过程:

点击展开查看

```bash missing field `name` ```

验证结果:

github-actions[bot] commented 1 year ago

验证过程:

点击展开查看

```bash URL: http://182.140.224.187:10001/ HEADERS: accept-ranges: bytes etag: W/"93-1637402690000" last-modified: Sat, 20 Nov 2021 10:04:50 GMT content-type: text/html content-length: 93 date: Wed, 09 Aug 2023 08:24:43 GMT server: server COOKIES: STATUS_CODE: 200 TEXT: FAVICON: { "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", } NEXT_URL: http://182.140.224.187:10001/nccloud Matching fingerprintV3WebFingerPrint { name: "yongyou-nc-cloud", priority: 3, request: WebFingerPrintRequest { path: "/", request_method: "get", request_headers: {}, request_data: "", }, match_rules: WebFingerPrintMatch { status_code: 0, favicon_hash: [], headers: {}, keyword: [ "", ], }, } URL: http://182.140.224.187:10001/nccloud HEADERS: location: /nccloud/ transfer-encoding: chunked date: Wed, 09 Aug 2023 08:24:45 GMT server: server COOKIES: STATUS_CODE: 302 TEXT: FAVICON: { "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", } NEXT_URL: http://182.140.224.187:10001/nccloud/ URL: http://182.140.224.187:10001/nccloud/ HEADERS: x-frame-options: SAMEORIGIN x-content-type-options: nosniff x-xss-protection: 1; mode=block content-security-policy: * set-cookie: JSESSIONID=214E4B99B9932E6E303A50F1B8008FED; Path=/nccloud; HttpOnly cache-control: no-store content-type: text/html;charset=utf-8 content-length: 2375 date: Wed, 09 Aug 2023 08:24:46 GMT server: server COOKIES: JSESSIONID=214E4B99B9932E6E303A50F1B8008FED; Path=/nccloud; HttpOnly STATUS_CODE: 200 TEXT: FAVICON: { "http://182.140.224.187:10001/nccloud/favicon.ico": "b0cb782f31c4ca81c836c440681f59c9", "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", } ```

验证结果:

github-actions[bot] commented 1 year ago

验证过程:

点击展开查看

```bash URL: http://182.140.224.187:10001/ HEADERS: accept-ranges: bytes etag: W/"93-1637402690000" last-modified: Sat, 20 Nov 2021 10:04:50 GMT content-type: text/html content-length: 93 date: Wed, 09 Aug 2023 08:25:14 GMT server: server COOKIES: STATUS_CODE: 200 TEXT: FAVICON: { "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", } NEXT_URL: http://182.140.224.187:10001/nccloud Matching fingerprintV3WebFingerPrint { name: "yonyou-nc-cloud", priority: 3, request: WebFingerPrintRequest { path: "/", request_method: "get", request_headers: {}, request_data: "", }, match_rules: WebFingerPrintMatch { status_code: 0, favicon_hash: [], headers: {}, keyword: [ "", ], }, } URL: http://182.140.224.187:10001/nccloud HEADERS: location: /nccloud/ transfer-encoding: chunked date: Wed, 09 Aug 2023 08:25:16 GMT server: server COOKIES: STATUS_CODE: 302 TEXT: FAVICON: { "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", } NEXT_URL: http://182.140.224.187:10001/nccloud/ URL: http://182.140.224.187:10001/nccloud/ HEADERS: x-frame-options: SAMEORIGIN x-content-type-options: nosniff x-xss-protection: 1; mode=block content-security-policy: * set-cookie: JSESSIONID=77AB21933D52EADA0C423CF669DE244B; Path=/nccloud; HttpOnly cache-control: no-store content-type: text/html;charset=utf-8 content-length: 2375 date: Wed, 09 Aug 2023 08:25:16 GMT server: server COOKIES: JSESSIONID=77AB21933D52EADA0C423CF669DE244B; Path=/nccloud; HttpOnly STATUS_CODE: 200 TEXT: FAVICON: { "http://182.140.224.187:10001/favicon.ico": "10740c05d133c5508488f6cc90681bf9", "http://182.140.224.187:10001/nccloud/favicon.ico": "b0cb782f31c4ca81c836c440681f59c9", } ```

验证结果:

github-actions[bot] commented 1 year ago

审核通过: