XCat is a PHP web interface for scanning sites mined through bing.com.
b29a519ffbe6b5661f3cabe4fabbb421Plown is a security scanner for Plone CMS. Although Plone has the best security track record of any major CMS and is considered highly secure, misconfigurations and weak passwords might enable system break-ins. Plown has been developed to ease the discovery of usernames and passwords, and act as an assistant to system administrators to strengthen their Plone sites.
03f2edb27ed5c9b3a25014a10e23f8a1Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
a242fc10665db7a59d2ec856dfb71393darkBing is a tool written in python that leverages bing for mining data on systems that may be susceptible to SQL injection.
d3a90ba7500c7455dcd8a7b7f9adaa90Proxy Check is a tool that includes a website to automate testing for web proxy content filtering. It has a battery of tests that includes looking for typically malicious URLs, several PDF exploits, and more.
262f80ad85d00dbf3981777636d6d463This is a simple script that leverages nmap to scan for RDP-Server.
35e064423d7b758146ffd350e92abfb8Vanguard is a comprehensive web penetration testing tool written in Perl that identifies vulnerabilities in web applications. It provides crawling, uses LibWhisker2 for HTTP IDS evasion, and checks for issues like SQL injection, XSS, LDAP injection and more.
08a55abff0d2a519042220b4ca1c4adfDark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
ef8dde031f212d195c3bb543580c96dfThis tool is a php script that assists in finding vulnerable components in multiple CMS systems.
096d96fea34495eb84b25150313ed1b3This is a basic TCP SYN scanner that is multi-threaded.
37381dbf05bac2a6eea7b8b14e4455d2This is a simple little port scanning script written in python.
b8fc2783fbb4849e4ceac338b595bcb3Lightaidra is an IRC commanded tool that allows for scanning and exploiting routers. It also performs flooding.
a5192e2428d901e1f57b9b5d16671073This is an automatic SQL Injection tool called FatCat. It has features that help you to extract the database information, table information, and column information from a web application.
4f817b144c8f53343c8aa637f785cfa7Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
889d6c7b94e9b4b4eca15f9e04ce9a86P0f is a tool that utilizes an array of sophisticated, purely passive traffic fingerprinting mechanisms to identify the players behind any incidental TCP/IP communications (often as little as a single normal SYN) without interfering in any way. Version 3 is a complete rewrite of the original codebase, incorporating a significant number of improvements to network-level fingerprinting, and introducing the ability to reason about application-level payloads (e.g., HTTP).
aea524324828790b24a90be3bb7a0d93Dark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
805a42d36e42f5901d0a6497306713a7PostTest is a jar file that will send POST requests to servers in order to test for the hash collision vulnerability discussed at the Chaos Communication Congress in Berlin.
7e94c05959065b9e3ee16b155ee0fe4bDark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
1135026518d9d2e547c7fc2030142efcDark D0rk3r is a python script that performs dork searching and searches for local file inclusion and SQL injection errors.
59c92aeebbb4e725bb20482451ef06f3Dark D0rk3r is a python script that performs dork searching and searches for SQL injection errors.
4ec2f206ba19629bd6d4dfd5372246bcP0f is a tool that utilizes an array of sophisticated, purely passive traffic fingerprinting mechanisms to identify the players behind any incidental TCP/IP communications (often as little as a single normal SYN) without interfering in any way. Version 3 is a complete rewrite of the original codebase, incorporating a significant number of improvements to network-level fingerprinting, and introducing the ability to reason about application-level payloads (e.g., HTTP).
8a7ea1821b4599bdd1749b6112865c41This is a very fast TCP port scanner for Linux that can scan multiple hosts and ports at once.
b5d0e5e019e3d6a9d81a48d0489ad883This is a simple ICMP ping sweeping tool that takes in a range of IP addresses.
543666de6d9557dbd4451e5bf90b0ea9The Exploit Next Generation® SQL Fingerprint tool uses well-known techniques based on several public tools capable of identifying the Microsoft SQL Server version (such as: SQLping and SQLver), but, instead of showing only the "raw version" (i.e., Microsoft SQL Version 10.00.2746), the Exploit Next Generation® SQL Fingerprint shows the mapped Microsoft SQL Server version (i.e., Microsoft SQL 2008 SP1 (CU5)).
6757930a2010359d3e06309e60bd4db4P0f is a tool that utilizes an array of sophisticated, purely passive traffic fingerprinting mechanisms to identify the players behind any incidental TCP/IP communications (often as little as a single normal SYN) without interfering in any way. Version 3 is a complete rewrite of the original codebase, incorporating a significant number of improvements to network-level fingerprinting, and introducing the ability to reason about application-level payloads (e.g., HTTP).
c2b4417fce9bb70bee49a1225dbc10f1