利用 fofa批量获取ip 。然后将获取的ip放入到MSF中,因为rhosts中只能是纯ip不能携带http以及端口号,所以这里先提取ip出来再去杂。
1. fofa提取的结果如下
2. 去除https和端口号,脚本如下
with open('./VMWare vCenter.txt','r',encoding='utf-8') as f:
for line in f:
#去除'//''
a = line.split('//',1)[-1]
if ":" in a:
a = a.split(':',1)[0]
with open('result.txt','a') as f:
f.write(a+"\r")
else:
with open('result.txt','a') as f:
f.write(a)
print('ok')
运行结果result.txt如下
3. 放入到kali msf中
set rhosts后面可以跟上文件
set rhosts file:文件路径/文件名
4. 运行结果如下,批量验证