Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[BUG] 渗透服务连接失败,请检查MSFRPC状态 问题汇总 #129

Closed
FunnyWolf opened this issue May 4, 2023 · 3 comments
Closed
Assignees

Comments

@FunnyWolf
Copy link
Owner

描述Bug
VIPER在运行一段时间之后会报错 "渗透服务连接失败,请检查MSFRPC状态".

如何复现
请说明如何复现Bug:

  1. 安装Viper
  2. 创建一个reverse_tcp类型监听
  3. 过一段时间之后
  4. bug出现

截图
请提供Bug出现时的截图.
image
image

@FunnyWolf

@FunnyWolf FunnyWolf self-assigned this May 4, 2023
@FunnyWolf
Copy link
Owner Author

该问题的根因是msf的监听(handler)对互联网开放后,被互联网上的扫描器(网络测绘)扫描后产生大量失效的tcp连接,导致出现问题

@FunnyWolf
Copy link
Owner Author

该问题可以自行手动复现

  • 首先在VPS上搭建viper
  • 创建一个reverse_tcp类型的监听,端口为4999,假设vps ip为123.123.123.123
    image
  • 在另外一台linux上运行hping3 --flood -S -p 4999 123.123.123.123,针对监听进行tcp flood测试
  • 大概经过20秒之后,问题出现,渗透测试服务不可用
    image
    image
    image
    image
    image

@FunnyWolf
Copy link
Owner Author

当前时间点看这个问题没有解决方案,只能通过使用reverse_http/使用不常用端口等方式进行缓解

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant