nuclei-templates/http/technologies/nethermind-server-detect.yaml

42 lines
1.2 KiB
YAML

id: nethermind-server-detect
info:
name: Nethermind JSON-RPC HTTP Server - Detect
author: Nullfuzz
severity: info
description: |
Nethermind is a high-performance, highly configurable full Ethereum protocol execution client built on .NET that runs on Linux, Windows, and macOS, and supports Clique, Aura, and Ethash. By default Nethermind runs a JSON-RPC HTTP server on port 8545/TCP
reference:
- https://nethermind.io/
- https://docs.nethermind.io/nethermind/ethereum-client/json-rpc/web3
- https://github.com/NethermindEth/nethermind
metadata:
max-request: 1
shodan-query: product:"Nethermind"
verified: true
tags: tech,nethermind,ethereum,web3,blockchain
http:
- raw:
- |
POST / HTTP/1.1
Host: {{Hostname}}
Content-Type: application/json
{"method":"web3_clientVersion","params":[],"id":1,"jsonrpc":"2.0"}
matchers:
- type: dsl
dsl:
- 'status_code == 200'
- 'contains(header, "application/json")'
- 'contains(body, "Nethermind")'
condition: and
extractors:
- type: regex
part: body
group: 1
regex:
- '(v[0-9a-z-_.]+)'