{"id":2752,"date":"2016-02-21T12:34:09","date_gmt":"2016-02-21T12:34:09","guid":{"rendered":"http:\/\/www.pir8geek.com\/?p=2752"},"modified":"2016-02-21T12:34:09","modified_gmt":"2016-02-21T12:34:09","slug":"pyscan-scanner-vulnerability-scanner-with-custom-payload","status":"publish","type":"post","link":"https:\/\/www.jameseduard.com\/?p=2752","title":{"rendered":"PyScan-Scanner &#8211; Vulnerability Scanner With Custom Payload"},"content":{"rendered":"<p><strong>REQUIRE<\/strong><\/p>\n<ul>\n<li>urllib2<\/li>\n<li>BeautifulSoup<\/li>\n<li>requests<\/li>\n<\/ul>\n<p><strong>START<\/strong><br \/>\nChange database information<\/p>\n<pre>$bdd = new PDO('mysql:host=localhost;dbname=pyscan', 'user', 'password');\n<\/pre>\n<ul>\n<li>Update a Python gate<\/li>\n<\/ul>\n<pre>panel_url = \"http:\/\/localhost\/pyscan\/\"\ngate_scraper = \"cmd\/gate.php\"\ngate_scanner = \"cmd\/scan.php\"\ngate_vuln = \"cmd\/vuln.php\"\ngate_payload = \"panel\/api\/payload.php\"\ngate_database = \"panel\/api\/database.php\"\n<\/pre>\n<p><strong>Upload the .SQL<\/strong><\/p>\n<pre>mysql -u username -p database_name &lt; file.sql\n\n<\/pre>\n<p><strong>Login<\/strong><br \/>\n<img fetchpriority=\"high\" decoding=\"async\" class=\"alignnone size-full wp-image-2754\" src=\"http:\/\/www.pir8geek.com\/wp-content\/uploads\/2016\/02\/pyscannerlogin.png\" alt=\"pyscannerlogin\" width=\"722\" height=\"230\" \/><\/p>\n<pre>Username: root\npassword: toor\n<\/pre>\n<p><strong>Make payload !<\/strong><br \/>\n<img decoding=\"async\" class=\"alignnone size-full wp-image-2755\" src=\"http:\/\/www.pir8geek.com\/wp-content\/uploads\/2016\/02\/pyscannerpayload.jpg\" alt=\"pyscannerpayload\" width=\"1278\" height=\"460\" \/><br \/>\n<strong>Test payload<\/strong><\/p>\n<pre>python pyscan.py -u \"http:\/\/exemple.com\/id=2\" -s -p PAYLOAD_ID\n<\/pre>\n<p><strong>Test all payload<\/strong><\/p>\n<pre>python pyscan.py -u \"http:\/\/exemple.com\/id=2\" -s --all\n<\/pre>\n<p><strong>Import mass link<\/strong><br \/>\nPyscan import:<br \/>\n<img decoding=\"async\" class=\"alignnone size-full wp-image-2756\" src=\"http:\/\/www.pir8geek.com\/wp-content\/uploads\/2016\/02\/pyscannertest.jpg\" alt=\"pyscannertest\" width=\"1276\" height=\"325\" \/><br \/>\n<strong>Test all link<\/strong><\/p>\n<pre>python pyscan.py --database\n<\/pre>\n<p style=\"text-align: center;\"><a href=\"https:\/\/github.com\/graniet\/PyScan-Scanner\" target=\"_blank\" rel=\"noopener noreferrer\">Download Pyscan-Scanner at Github<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>REQUIRE urllib2 BeautifulSoup requests START Change database information $bdd = new PDO(&#8216;mysql:host=localhost;dbname=pyscan&#8217;, &#8216;user&#8217;, &#8216;password&#8217;); Update a Python gate panel_url = &#8220;http:\/\/localhost\/pyscan\/&#8221; gate_scraper = &#8220;cmd\/gate.php&#8221; gate_scanner = &#8220;cmd\/scan.php&#8221; gate_vuln = &#8220;cmd\/vuln.php&#8221; gate_payload = &#8220;panel\/api\/payload.php&#8221; gate_database = &#8220;panel\/api\/database.php&#8221; Upload the .SQL mysql -u username -p database_name &lt; file.sql Login Username: root password: toor Make payload ! Test<\/p>\n","protected":false},"author":1,"featured_media":2757,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[541,634,615],"tags":[239,653,277],"class_list":["post-2752","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-python","category-scanner","category-vulnerability-scanner","tag-database","tag-pyscan","tag-scanner"],"_links":{"self":[{"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=\/wp\/v2\/posts\/2752","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2752"}],"version-history":[{"count":0,"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=\/wp\/v2\/posts\/2752\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2752"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2752"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.jameseduard.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2752"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}