evilginx2/core/nameserver.go

101 lines
2.2 KiB
Go
Raw Permalink Normal View History

2018-07-26 11:20:37 +02:00
package core
import (
2023-05-10 11:04:32 +02:00
"context"
"fmt"
2018-07-26 11:20:37 +02:00
"net"
"strconv"
"strings"
"time"
2023-05-10 11:04:32 +02:00
"github.com/miekg/dns"
2019-10-13 17:05:47 +02:00
"github.com/kgretzky/evilginx2/log"
2018-07-26 11:20:37 +02:00
)
type Nameserver struct {
srv *dns.Server
cfg *Config
2023-05-10 11:04:32 +02:00
bind string
2018-07-26 11:20:37 +02:00
serial uint32
2023-05-10 11:04:32 +02:00
ctx context.Context
2018-07-26 11:20:37 +02:00
}
func NewNameserver(cfg *Config) (*Nameserver, error) {
2023-05-10 11:04:32 +02:00
o := &Nameserver{
2018-07-26 11:20:37 +02:00
serial: uint32(time.Now().Unix()),
cfg: cfg,
2023-07-11 10:03:54 +02:00
bind: fmt.Sprintf("%s:%d", cfg.GetServerBindIP(), cfg.GetDnsPort()),
2023-05-10 11:04:32 +02:00
ctx: context.Background(),
2018-07-26 11:20:37 +02:00
}
2023-05-10 11:04:32 +02:00
o.Reset()
2018-07-26 11:20:37 +02:00
2023-05-10 11:04:32 +02:00
return o, nil
2018-07-26 11:20:37 +02:00
}
2023-05-10 11:04:32 +02:00
func (o *Nameserver) Reset() {
dns.HandleFunc(pdom(o.cfg.general.Domain), o.handleRequest)
2018-07-26 11:20:37 +02:00
}
2023-05-10 11:04:32 +02:00
func (o *Nameserver) Start() {
2018-07-26 11:20:37 +02:00
go func() {
2023-05-10 11:04:32 +02:00
o.srv = &dns.Server{Addr: o.bind, Net: "udp"}
if err := o.srv.ListenAndServe(); err != nil {
log.Fatal("Failed to start nameserver on: %s", o.bind)
2018-07-26 11:20:37 +02:00
}
}()
}
2023-05-10 11:04:32 +02:00
func (o *Nameserver) handleRequest(w dns.ResponseWriter, r *dns.Msg) {
2018-07-26 11:20:37 +02:00
m := new(dns.Msg)
m.SetReply(r)
2023-07-11 10:03:54 +02:00
if o.cfg.general.Domain == "" || o.cfg.general.ExternalIpv4 == "" {
2018-07-26 11:20:37 +02:00
return
}
soa := &dns.SOA{
2023-05-10 11:04:32 +02:00
Hdr: dns.RR_Header{Name: pdom(o.cfg.general.Domain), Rrtype: dns.TypeSOA, Class: dns.ClassINET, Ttl: 300},
Ns: "ns1." + pdom(o.cfg.general.Domain),
Mbox: "hostmaster." + pdom(o.cfg.general.Domain),
Serial: o.serial,
2018-07-26 11:20:37 +02:00
Refresh: 900,
Retry: 900,
Expire: 1800,
Minttl: 60,
}
m.Ns = []dns.RR{soa}
2023-05-10 11:04:32 +02:00
fqdn := strings.ToLower(r.Question[0].Name)
2018-07-26 11:20:37 +02:00
switch r.Question[0].Qtype {
2023-05-10 11:04:32 +02:00
case dns.TypeSOA:
log.Debug("DNS SOA: " + fqdn)
m.Answer = append(m.Answer, soa)
2018-07-26 11:20:37 +02:00
case dns.TypeA:
2023-07-11 10:03:54 +02:00
log.Debug("DNS A: " + fqdn + " = " + o.cfg.general.ExternalIpv4)
2018-07-26 11:20:37 +02:00
rr := &dns.A{
2023-05-10 11:04:32 +02:00
Hdr: dns.RR_Header{Name: fqdn, Rrtype: dns.TypeA, Class: dns.ClassINET, Ttl: 300},
2023-07-11 10:03:54 +02:00
A: net.ParseIP(o.cfg.general.ExternalIpv4),
2018-07-26 11:20:37 +02:00
}
m.Answer = append(m.Answer, rr)
case dns.TypeNS:
2023-05-10 11:04:32 +02:00
log.Debug("DNS NS: " + fqdn)
if fqdn == pdom(o.cfg.general.Domain) {
2018-07-26 11:20:37 +02:00
for _, i := range []int{1, 2} {
rr := &dns.NS{
2023-05-10 11:04:32 +02:00
Hdr: dns.RR_Header{Name: pdom(o.cfg.general.Domain), Rrtype: dns.TypeNS, Class: dns.ClassINET, Ttl: 300},
Ns: "ns" + strconv.Itoa(i) + "." + pdom(o.cfg.general.Domain),
2018-07-26 11:20:37 +02:00
}
m.Answer = append(m.Answer, rr)
}
}
}
w.WriteMsg(m)
}
func pdom(domain string) string {
return domain + "."
}