Added geth-server-detect template

patch-1
nullfuzz 2023-08-12 23:42:57 -03:00
parent 403b30f618
commit 1a0b749249
1 changed files with 40 additions and 0 deletions

View File

@ -0,0 +1,40 @@
id: geth-server
info:
name: Go-ethereum JSON-RPC HTTP Server Detect
author: Nullfuzz
severity: info
description: |
Go-ethereum (aka Geth) is an Ethereum client built in Go. Geth runs a JSON-RPC HTTP server on port 8545/TCP
reference:
- https://geth.ethereum.org/docs
- https://github.com/ethereum/go-ethereum
metadata:
max-request: 1
shodan-query: product:"Geth"
tags: tech,geth,ethereum,web3,blockchain
http:
- raw:
- |
POST / HTTP/1.1
Host: {{Hostname}}
Content-Type: application/json
Content-Length: 66
{"method":"web3_clientVersion","params":[],"id":1,"jsonrpc":"2.0"}
matchers:
- type: dsl
dsl:
- 'status_code == 200'
- 'contains(header, "application/json")'
- 'contains(body, "Geth")'
condition: and
extractors:
- type: regex
part: body
group: 1
regex:
- '(v[0-9a-z-_.]+)'