46 lines
1.4 KiB
YAML
46 lines
1.4 KiB
YAML
id: security-onion-panel
|
|
|
|
info:
|
|
name: Security Onion Panel - Detect
|
|
author: rxerium
|
|
severity: info
|
|
description: |
|
|
Security Onion is a free and open source Linux distribution for intrusion detection, security monitoring, and log management. It includes CyberChef, NetworkMiner, and many other security tools.
|
|
reference:
|
|
- https://securityonionsolutions.com/
|
|
- https://github.com/Security-Onion-Solutions/securityonion
|
|
classification:
|
|
cpe: cpe:2.3:a:securityonionsolutions:security_onion:*:*:*:*:*:*:*:*
|
|
metadata:
|
|
verified: true
|
|
max-request: 2
|
|
vendor: securityonionsolutions
|
|
product: security_onion
|
|
shodan-query:
|
|
- title:"Security Onion"
|
|
- http.title:"security onion"
|
|
fofa-query: title="security onion"
|
|
google-query: intitle:"security onion"
|
|
tags: panel,security,onion,detect,securityonionsolutions
|
|
|
|
http:
|
|
- method: GET
|
|
path:
|
|
- "{{BaseURL}}"
|
|
- "{{BaseURL}}/login/"
|
|
|
|
stop-at-first-match: true
|
|
|
|
matchers-condition: and
|
|
matchers:
|
|
- type: word
|
|
words:
|
|
- '<title>Security Onion'
|
|
- 'Login to Security Onion'
|
|
- 'Security Onion Solutions'
|
|
condition: or
|
|
|
|
- type: status
|
|
status:
|
|
- 200
|
|
# digest: 490a0046304402207709f3b23040e411903e5e7e1fc2c392059109a4af2792989e1550a0b5145fb402202349f1b0c0436140c348d6fde159df750991fb7e05beaa073bf7580eab97332e:922c64590222798bb761d5b6d8e72950 |