Posts

Showing posts with the label Vulnerability Analysis

Tidos-Framework V1.7 - The Offensive Manual Spider Web Application Penetration Testing Framework

Image
TIDoS Framework is a comprehensive web-app audit framework. let's proceed this simple Highlights :- The top dog highlights of this framework is: TIDoS Framework straight off boasts of a century+ of modules. A consummate versatile framework to comprehend upward everything from Reconnaissance to Vulnerability Analysis. Has five top dog phases, subdivided into 14 sub-phases consisting a total of 104 modules . Reconnaissance Phase has 48 modules of its ain (including active together with passive recon, information disclosure modules). Scanning & Enumeration Phase has got xv modules (including port scans, WAF analysis, etc) Vulnerability Analysis Phase has 36 modules (including most mutual vulnerabilites inward action). Exploits Castle has alone 1 exploit. (purely developmental) And finally, Auxillaries bring got 4 modules. under dev. All iv phases each bring a Auto-Awesome module which automates every module for you. You simply demand the domain, together with ...

Trommel - Sift Through Embedded Device Files To Order Potential Vulnerable Indicators

Image
TROMMEL sifts through embedded device files to position potential vulnerable indicators. TROMMEL identifies the next indicators related to: Secure Shell (SSH) cardinal files Secure Socket Layer (SSL) cardinal files Internet Protocol (IP) addresses Uniform Resource Locator (URL) email addresses shell scripts web server binaries configuration files database files specific binaries files (i.e. Dropbear, BusyBox, etc.) shared object library files web application scripting variables, and Android application packet (APK) file permissions. TROMMEL has likewise integrated vFeed which allows for farther in-depth vulnerability analysis of identified indicators. Dependencies Python-Magic - See documentation for instructions for Python3-magic installation vFeed Database - For non-commercial use, register as well as download the Community Edition database Usage $ trommel.py --help Output TROMMEL results to a file based on a given directory. By default, alone search...

Vuls - Vulnerability Scanner For Linux/Freebsd, Agentless, Written Inwards Go

Image
Vulnerability scanner for Linux/FreeBSD, agentless, written inwards golang. Twitter: @vuls_en DEMO Abstract For a arrangement administrator, having to perform safety vulnerability analysis as well as software update on a daily footing tin survive a burden. To avoid downtime inwards production environment, it is mutual for arrangement administrator to remove non to purpose the automatic update alternative provided past times packet managing director as well as to perform update manually. This leads to the next problems. System administrator volition convey to constantly lookout adult man out for whatsoever novel vulnerabilities inwards NVD(National Vulnerability Database) or like databases. It mightiness survive impossible for the arrangement administrator to monitor all the software if at that topographic point are a large number of software installed inwards server. It is expensive to perform analysis to decide the servers affected past times novel vulnerabi...