This tool is only for learning, research and self-examination. It should not be used for illegal purposes. All risks arising from the use of this tool have nothing to do with me!
dnslog.cn is unable to access the interface from time to time due to the number of requests. If you are unable to scan, please try change dnslog platform from UI.
English | 简体中文
Log4j2 Remote Code Execution Vulnerability, Passive Scan Plugin for BurpSuite.
Support accurate hint vulnerability parameters, vulnerability location, support multi-dnslog platform extension, automatic ignore static files.
Vulnerability detection only supports the following types for now
Maven and JDK 11.0 or later is recommended
$ mvn package
Some of the code in the plugin is borrowed from the following projects