Kamis, 27 Agustus 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


Continue reading
  1. Pentest Reporting Tools
  2. Tools 4 Hack
  3. Hacker Tools
  4. New Hack Tools
  5. Pentest Tools
  6. Game Hacking
  7. Pentest Tools Free
  8. Pentest Tools Website
  9. Blackhat Hacker Tools
  10. Tools For Hacker
  11. Hacker Tools Apk Download
  12. Pentest Tools Github
  13. Hack Tools
  14. Growth Hacker Tools
  15. Hack Tools Mac
  16. Pentest Tools Windows
  17. Hack Tools For Games
  18. Computer Hacker
  19. Hak5 Tools
  20. Android Hack Tools Github
  21. Hacker Tools Mac
  22. Kik Hack Tools
  23. Hacker Tools For Windows
  24. Hacker Tools For Pc
  25. Hack Tools For Pc
  26. Hacking Tools For Mac
  27. Install Pentest Tools Ubuntu
  28. Tools For Hacker
  29. Hacker Tools Windows
  30. Hack Tools 2019
  31. Underground Hacker Sites
  32. Hackrf Tools
  33. Hacker Tools 2019
  34. Pentest Tools Port Scanner
  35. Termux Hacking Tools 2019
  36. Hacker Tools Windows
  37. Hacker Techniques Tools And Incident Handling
  38. Hack Tools
  39. Pentest Tools Linux
  40. Hacking Tools
  41. Hacker Tools List
  42. Hacker Security Tools
  43. Pentest Tools
  44. Nsa Hack Tools Download
  45. New Hacker Tools
  46. Hack App
  47. Pentest Tools Open Source
  48. Pentest Tools Website Vulnerability
  49. Tools 4 Hack
  50. Pentest Tools Url Fuzzer
  51. Hack Tools For Windows
  52. Hack Rom Tools
  53. Top Pentest Tools
  54. Hack Tool Apk No Root
  55. Pentest Tools For Windows
  56. Hack Tools Pc
  57. Pentest Tools Free
  58. Hacking Tools
  59. How To Install Pentest Tools In Ubuntu
  60. Hack Tool Apk No Root
  61. Pentest Box Tools Download
  62. Best Hacking Tools 2020
  63. Pentest Tools For Android
  64. Easy Hack Tools
  65. Hacking Tools For Beginners
  66. Hack Tool Apk
  67. Black Hat Hacker Tools
  68. Hacking Tools For Windows 7
  69. Tools For Hacker
  70. Hack Tool Apk
  71. Hacker
  72. Hacking Tools 2020
  73. Hacking Tools For Kali Linux
  74. Hacking Tools Software

Tidak ada komentar: