# EdgeSecurityTeam/EHole

EHole(棱洞)3.0 重构版-红队重点攻击系统指纹探测工具

Repository: https://github.com/EdgeSecurityTeam/EHole
Canonical: https://ross.abutalabs.com/products/ehole
Homepage: https://forum.ywhack.com/
Language: Go
License: Apache-2.0
License Family: permissive
Last push: 2024-04-02T06:02:34+00:00

## Health v2 (maintenance only)
Score: 23/100 (v2, computed 2026-09-02T17:46:02.011165+00:00)
- activity 0, release rhythm 8, longevity 100
- inputs: {"age_days": 2056, "days_push": 883, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: none
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 3511, forks 418 (observed 2026-08-28T04:08:07.732248+00:00)

## What it is
EHole (棱洞) is a Go-based fingerprint identification tool for red team reconnaissance that pinpoints high-value, easily attackable systems (OA, VPN, Weblogic, etc.) from large asset lists or C-segment IP ranges. It supports local URL file scanning and FOFA API-based batch asset discovery, with keyword, faviconhash, and regex fingerprint rules and JSON output.

## Use cases
- identify CMS fingerprints from a list of urls
- find vulnerable systems in a c-class ip range
- bulk extract assets from fofa by ip range
- export fingerprint scan results to json
- detect which web apps run on target servers during recon
- prioritize attack surface during red team engagement

## When to choose
- you need fast fingerprinting of many urls or an ip range during red team recon
- you already have a FOFA account and want API-driven asset discovery
- you want customizable fingerprint rules via keyword, favicon hash, or regex

## When to avoid
- you need a full vulnerability scanner rather than fingerprint identification
- you want passive or agentless scanning without FOFA keys or direct url access
- you need ongoing scheduled monitoring rather than one-off scans

## Facets
- artifact type: cli-tool
- maturity: maintenance
- function: osint, web-scraping, security, cli
- domain: security, penetration-testing, developer-tools
- platform: cli, windows, go
- tags: fingerprinting, red-team, reconnaissance, cms-detection, fofa, linux, macos

## Member repositories
- EdgeSecurityTeam/EHole (main) score 23

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:08:07.732248+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T18:35:42.584758+00:00, confidence not recorded.
  - readme: https://github.com/EdgeSecurityTeam/EHole (fetched 2026-08-28T04:08:07.732248+00:00, sha 5956082e8034)
- Data as of 2026-08-30T08:39:29.467469+00:00.
