YARA rule 'offensive_tool_references': References to well-known offensive security tools [hacktools]
- Category
- YARA Match
- Confidence
- 90% confidence
- Finding
The skill includes explicit references to reconnaissance, scanning, and exploitation-adjacent security tools such as nmap, nikto, Burp Suite, sqlmap, and xsstrike in the context of earning money via bug bounty hunting. Although bug bounty can be legitimate, embedding operational tool guidance inside a general-purpose skill lowers the barrier to unauthorized scanning or misuse against non-consenting targets, making the content materially more dangerous in context.
- Content
- 专注子域名枚举
- 找XSS/IDOR等中低危漏洞
- 目标:$500-1000/月
-
进阶阶段(6-12月)
- 审计API接口
- 逻辑漏洞挖掘
- 目标:$1000-5000/月
-
专业阶段(1年+)
- 组合漏洞利用
- 大厂赏金猎人
- 目标:$5000+/月
text **常用工具**: ```bash # 子域名枚举 amass enum -passive -d example.com # 端口扫描 nmap -sV -p 1-10000 target.com # Web漏洞扫描 nikto -h https://target.com # 被动收集 subfinder -d target.com | httpx漏洞报告模板:
text # [漏洞名称] ## 漏洞类型 [CWE-79: Cross-site Scripting] ## 严重程度 [Medium - 6.1] ## 漏洞描述 [详细描述漏洞及影响] ## 复现步骤 1. 访问 [URL] 2. 在 [参数] 输入 [Payload] 3. 观察 [结果] ## 修复建议 [提供修复方案] ## 影响范围 [影响的URL和用户数量]
补天(国内平台)
奖金范围:
漏洞类型 奖金范围 信息� - 专注子域名枚举
