jueves, 20 de agosto de 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


Related posts


  1. Hacker Tools Mac
  2. Hacker Security Tools
  3. Hacker Tools Apk Download
  4. Ethical Hacker Tools
  5. Hacking Tools For Games
  6. Hacker Tools
  7. Hacker Tools Hardware
  8. Pentest Tools For Windows
  9. Hacking Tools For Windows
  10. Hacking Apps
  11. Hacking Tools Pc
  12. Kik Hack Tools
  13. Pentest Tools Open Source
  14. Blackhat Hacker Tools
  15. Hacking Tools For Games
  16. Pentest Tools Kali Linux
  17. Install Pentest Tools Ubuntu
  18. Nsa Hacker Tools
  19. Hack Tools For Pc
  20. World No 1 Hacker Software
  21. Hacker
  22. How To Install Pentest Tools In Ubuntu
  23. Hack Tools Download
  24. Tools Used For Hacking
  25. Bluetooth Hacking Tools Kali
  26. Hack Tools Mac
  27. Blackhat Hacker Tools
  28. Pentest Tools Framework
  29. Game Hacking
  30. Hacking Tools For Kali Linux
  31. Hacking Apps
  32. Hackrf Tools
  33. Hackrf Tools
  34. Hacking Tools Name
  35. Hacker Tools 2020
  36. Kik Hack Tools
  37. Hack Website Online Tool
  38. Hacking Tools Mac
  39. Pentest Tools Port Scanner
  40. Termux Hacking Tools 2019
  41. Nsa Hack Tools Download
  42. Pentest Tools Free
  43. Hack Rom Tools
  44. Hack Rom Tools
  45. Pentest Tools Url Fuzzer
  46. Underground Hacker Sites
  47. Hacking Tools For Beginners
  48. New Hack Tools
  49. Hackrf Tools
  50. Pentest Tools Apk
  51. Hacking Tools Windows 10
  52. Hacker Tools Apk Download
  53. Hack Website Online Tool
  54. Best Hacking Tools 2019
  55. Hacking Tools Github
  56. Easy Hack Tools
  57. Hack Apps
  58. How To Make Hacking Tools
  59. Hacking Tools For Windows 7
  60. Hacker Tool Kit
  61. Hacker Tools Github
  62. Hack Tools 2019
  63. Pentest Tools Bluekeep
  64. Hacker Tools Apk
  65. Computer Hacker
  66. Hacker Tools 2019
  67. Pentest Automation Tools
  68. World No 1 Hacker Software
  69. Pentest Tools Framework
  70. Pentest Tools Url Fuzzer
  71. Hacking App
  72. Hack Website Online Tool
  73. Hacker Tools For Mac
  74. Hacking Tools Github
  75. Hacking App
  76. Android Hack Tools Github
  77. Hack And Tools
  78. Free Pentest Tools For Windows
  79. What Is Hacking Tools
  80. Nsa Hacker Tools
  81. Hack Tools Mac
  82. Pentest Tools For Ubuntu
  83. New Hacker Tools
  84. Pentest Tools List
  85. World No 1 Hacker Software
  86. Hacker Tools Apk Download
  87. Pentest Reporting Tools
  88. Pentest Recon Tools
  89. Hacking Tools And Software
  90. Tools 4 Hack
  91. Hacking Tools For Mac
  92. Pentest Tools Nmap
  93. Hacker Tools Linux
  94. Hack Tools Github
  95. Hacking Apps
  96. Hack Tools For Windows
  97. Hacking Tools Software
  98. Hacking Tools Windows 10
  99. Hacker Hardware Tools
  100. Blackhat Hacker Tools
  101. Pentest Tools For Mac
  102. Hack Tools Github
  103. Hacker Tools Apk
  104. Pentest Tools Find Subdomains

No hay comentarios:

Publicar un comentario

Seguidores

Archivo del blog