OWASP VBScan (VB]ulletin Vulnerability [Scan]ner) is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analyses them . Why OWASP VBScan ? If you want to do a penetration test on a vBulletin Forum, OWASP VBScan is Your best shot ever! This Project is being faster…
-
-
Shocker – A tool to find and exploit servers vulnerable to Shellshock
Shocker is a tool to find and exploit servers vulnerable to Shellshock Released as open source by NCC Group Plc – https://www.nccgroup.trust/ Developed By: Tom Watson, tom [dot] watson [at] nccgroup [dot] trust https://github.com/nccgroup/shocker Help Text usage: shocker.py -h, --help show this help message and exit --Host HOST, -H HOST…
-
ATSCAN – Search / Site / Server Scanner
ATSCAN – Search / Site / Server Scanner SEARCH engine XSS scanner. Sqlmap. LFI scanner. Filter wordpress and Joomla sites in the server. Find Admin page. Decode / Encode MD5 + Base64. Ports scan. Scan E-mails in sites. Use proxy. Random user agent. Fandom search engine. Scan errors. Detect Cms.…
-
SQLMap – Automatic SQL Injection And Database Takeover Tool
sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting,…
-
PyScan-Scanner – Vulnerability Scanner With Custom Payload
REQUIRE urllib2 BeautifulSoup requests START Change database information $bdd = new PDO('mysql:host=localhost;dbname=pyscan', 'user', 'password'); Update a Python gate panel_url = "http://localhost/pyscan/" gate_scraper = "cmd/gate.php" gate_scanner = "cmd/scan.php" gate_vuln = "cmd/vuln.php" gate_payload = "panel/api/payload.php" gate_database = "panel/api/database.php" Upload the .SQL mysql -u username -p database_name < file.sql Login Username: root password:…
-
Mosca – Static analysis tool to find bugs like a grep unix command
Static analysis tool to find bugs like a grep unix command, egg modules is a config to find to vulnerabilities you can use at C, PHP, javascript, ruby etc Save results at XML file create your own modules etc… Download Mosca
