exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 26 - 50 of 91 RSS Feed

Files

cgivti.V2.pl
Posted Aug 29, 2002
Authored by Lawrence Lavigne | Site neoerudition.net

This scanner searches for vulnerable web servers for Common Gateway Interface and Vermeer Technology Incorporated services. Version 2 allows for Class C IP generation done "On The Fly" and a timeout scheme added thanks to MaB of Efnets #programmers.

tags | web, cgi
systems | unix
SHA-256 | 77770362b50cb7fe074dde751149a9cfecd9db1fbc1b7b09fc46c9ec41d2715f
Nikto Web Scanner 1.20
Posted Aug 11, 2002
Authored by Sullo | Site cirt.net

Nikto 1.20 is a PERL, open source web server scanner which supports SSL. Nikto checks for (and if possible attempts to exploit) remote web server vulnerabilities and misconfigurations. It also looks for outdated software and modules, warns of any version specific problems, supports scans through proxies (with authentication), host Basic authentication and more. Data is kept in CSV format databases for easy maintenance, and supports the ability to automatically update local databases with current versions on the Nikto web site. New this version: password file guessing, Google file-hunting, SSL details and bug fixes.

tags | remote, web, local, cgi, perl, vulnerability
systems | unix
SHA-256 | ac4fcf582d1e2ee94ff09b95d23283dcc4e8e2bf4b9edbf30adf90752d9a1872
cgivti.pl
Posted Aug 9, 2002
Authored by Lawrence Lavigne | Site neoerudition.net

This scanner searches for vulnerable web servers for Common Gateway Interface and Vermeer Technology Incorporated services.

tags | web, cgi
systems | unix
SHA-256 | 3178e91d7d1afb673055f6147eac68be504e83bb41b722d15eb3a98d6d9a3647
Webr00t.pl
Posted Apr 9, 2002
Authored by B-root

Webr00t.pl is used to discover hidden directories and 'interesting' files on webservers. Use it when pentesting applications and servers to find that one directory or script left by mistake.

tags | cgi
systems | unix
SHA-256 | 2b51ee05b6db72bbd2b05bdd857b76edb8d29838837a027b1f8ea9378ff02c78
libwhisker-1.3.tar.gz
Posted Mar 31, 2002
Authored by rain forest puppy | Site wiretrip.net

Libwhisker is a perl module for performing whisker CGI vulnerability checks. It adds a vast array of functionality and has robust functions that are geared toward network auditing.

tags | cgi, perl
systems | unix
SHA-256 | 8bd72d0828a11d981434fbf42ec6062d4b0709e587674d8589f97365b5a266ee
wmap1.2.tar.gz
Posted Feb 19, 2002
Authored by Efrain Torres | Site pwp.007mundo.com

Wmap v1.2 is a cgi scanner that attempts to be smarter than most. To increase the chance of finding useful stuff, wmap has a file containing interesting Directories (dirs.db) and other file containing common cgi dirs (dircgis.db) to search for. If a directory is found is added to the test. This include all the directories that are found in the html tags. For each directory found, not only scans for vulnerable CGI's (cgis.db) it scan for interesting files (ex. passwords.tmp) included in the file (file.db) and does an http PUT scan.

tags | web, cgi
systems | unix
SHA-256 | 9401723e6a8fa8cef94bcdef5cc3e81baf2fd849c83c526c353df37664fcb743
arirang-1.6beta.tar.gz
Posted Jan 25, 2002
Authored by Pilot | Site monkey.org

Arirang is a powerful webserver security scanner with many features. Checks over 700 vulnerabilities. This is the OpenBSD/NetBSD/FreeBSD version.

tags | cgi, vulnerability
systems | netbsd, unix, freebsd, openbsd
SHA-256 | a41da9d3a7d03e2b9b5480072c1510ef16c9c55fc612653d20e1fdc5b8265a9b
cgiaudit-1.0.tar.gz
Posted Jan 11, 2002
Authored by S

CGIAudit is a black-box debugging tool which automatically audits CGI entities with only an interface specification, the HTML form. Attack types that a CGI script or program become subject to are configurable, as well as server replies that denote a possible penetration success. Other features include a built-in spider, proxy support, and hexadecimal encoding of requests.

tags | cgi
systems | unix
SHA-256 | d126c77221362b232d8c30d9ff3b6318d53fa438bbc6f491cf482f578d240a23
arirang-1.6beta_other.tar.gz
Posted Nov 20, 2001
Authored by Pilot | Site monkey.org

Arirang is a powerful webserver security scanner with many features. Checks over 700 vulnerabilities.

tags | cgi, vulnerability
systems | unix
SHA-256 | f2a7a1591d5801786fd38bc50b816071eedf69d7db14a5039f15f0f3d05b65cb
unicode.db
Posted Aug 30, 2001
Authored by B-root

Unicode.db is an unicode/double-decode plugin for use with whisker.

tags | cgi
systems | unix
SHA-256 | 76ecf7ada6e53b948617e5f59954a022b3c98315024d53c753fbd338ddb22284
libwhisker-pr3.tgz
Posted Jul 19, 2001
Authored by rain forest puppy | Site wiretrip.net

Libwhisker is a perl module for performing whisker CGI vulnerability checks. This is a preview release.

tags | cgi, perl
systems | unix
SHA-256 | 960d4be891522dd39a4a6fc33fd4765ddb81bffe80c0002f1a0f8c849c9e1977
malice-7.0b.tar.gz
Posted Jul 11, 2001
Authored by Natas

Malice v7.0 beta is a perl CGI scanner with an updated CGI list. Includes many anti-IDS functions, IIS checks, and more.

Changes: New anti-IDS techniques, updated CGI's, and IIS checks.
tags | cgi, perl
systems | unix
SHA-256 | 791d4a441af1936dedc5bf7495a5f3603d46c1f0dfd905bf0a8f15a4a1633efe
cst1_3.tar.gz
Posted Apr 25, 2001
Authored by Toxic Ocean | Site blackhat.be

CST contains a script scanner, that scans using a database of scripts (user editable). The sample databases included contains +700 possibly vulnerable scripts/dirs. You can scan with or without a proxy server. The scanner has 11 different Anti-IDS tactics (hex-values, double slashes, self-reference dirs, parameter hiding and session splicing), and sends fake "X-Forwarded-For:", "Referer:" and "User-Agent:" headers to hide your scan even more. You can also specify a wait time between 2 script fetches. The scanner uses HEAD requests instead of GET for faster scanning, and has support for scanning virtual hosts. You can also specify another port to scan instead of the standard port 80. The scanner outputs the scripts/dirs that return a 200, 403 or 401 HTTP code and outputs the webserver software. A full and comprehensive manual is included.

tags | web, cgi
systems | unix
SHA-256 | 856e57db08f283a0a2df8d4ec62c30581e58231f2d536f8fafceed1d15ed67a1
cgichk_2.60.tar.gz
Posted Apr 8, 2001
Authored by Toby Deshane | Site sourceforge.net

Cgichk is a web vulnerability scanner which automatically searches for a series of interesting directories and files on a given site. Instead of focusing on vulnerable CGI scripts, it looks for interesting and/or hidden directories such as logs, testing, secret, scripts, stats, restricted, code, robots.txt, etc.

Changes: Added PHP versions of old targets, a couple new targets, some new switches, and bug fixes.
tags | web, cgi
systems | unix
SHA-256 | 4d52fd7692c65eb1e4e009982f29eac1e0d98714418c0f16d4d41de5de181e62
cscan.pl
Posted Mar 10, 2001
Authored by Iceburg

Cscan is a CGI scanner in perl which reads vulnerabilities from a database.

tags | cgi, perl, vulnerability
systems | unix
SHA-256 | 59f5f292b67b3b624d8950ff5d050400b2122724ae627393d5c9ede33ff2cdf9
twwwscan12.zip
Posted Feb 21, 2001
Authored by Pilot | Site search.iland.co.kr

TWWWscan is a Windows based www vulnerability scanner which looks for 400 www/cgi vulnerabilities . Displays http header, server info, and tries for accurate results. Now features anti-IDS url encoding and passive mode scan. Tested on win95 osr2 win98,win98se,win nt4,win 2k/Me.

Changes: Major update - Added virtual host scan, GET method, http request injection, blowfish support, and bug fixes.
tags | web, cgi, vulnerability
systems | windows, unix
SHA-256 | 0759feb28ca9e981a6a5df1a4ce9234f54b9bb0df874159150b208e2c52cb3bd
mcgi.tar.gz
Posted Jan 25, 2001

Mass CGI scanner. From Guile Cool.

tags | cgi
systems | unix
SHA-256 | f857e4619461a9b4523063d16ea8ad2465e813b9d0f75e62114c8d59f866e8c3
flatline-0.75.tar.gz
Posted Jan 15, 2001
Site c1sco.net

Flatline is a Web Server vulnerability scanner, beta version for linux, BSD. Options include mass host scanning, scanning through proxies, Detection evasion, quick banner grab scans, interactive mode to send specific url's. Also includes sample exploit database if a vulnerable file is found it will print a BugTraq ID or way to exploit the file. This is a semi beta release lots of new things to come.

tags | web, cgi
systems | linux, unix, bsd
SHA-256 | 6f6938cb0a26abf74e5fccc35e95ad233c32dd6eaaefb2c585d215bcd7becddb
cgisec.txt
Posted Jan 15, 2001
Authored by Tonec

PERL/CGI Hacking - What makes CGI scripts insecure and how to exploit them.

tags | cgi, perl
systems | unix
SHA-256 | e8c7795e85582b1c9f8f6449b06c912ef17db80b0f6ffa33e7dd89203c6836dc
pudding01.tar.gz
Posted Jan 13, 2001
Authored by Roelof Temmingh | Site sensepost.com

Pudding is a proxy which recodes HTTP requests using most of RFP's IDS evasion encoding methods, plus random UTF-8 encoding support. Allows any web aware program/exploit/cgi-scanner to evade IDS without modification of the original code. Encoding methods include all uppercase, hex encoding, /./ directory insertion, fake parameters, premature URL endings, windows delimiters, and random UTF8 encoding.

tags | web, cgi
systems | windows, unix
SHA-256 | c8a75f47892cf9971dfce9a19962ee940b44b6217ab7982e7299601b07617e91
scowl_cgi.tar.gz
Posted Jan 6, 2001
Authored by Melih Sarica | Site bilgiteks.com

Scowl_Cgi is a CGI scanner which allows you to easily add new bugs. Works very fast, using threads. Warns you, for hosts that return false positive answers. Freeware. Testing for more than 400 bugs.

tags | cgi
systems | unix
SHA-256 | 3c2489aa464072e14d2a051c4ce5476847a64d748ee51638a23a002ef3fcc14c
ummmm.c
Posted Dec 27, 2000
Authored by Incubus, R00T-dude | Site securax.org

ummmm.c v2.1 is a URL obfuscation tool which converts something like /cgi-bin/some.cgi into %2f%63%67%69%2d%62%69%6e%2f%73%6f%6d%65%2e%63%67%69. It might be used in cgi scanners which require an input file with cgi requests.

tags | cgi
systems | unix
SHA-256 | 4968493ed605717ad8e51ff70428152b2255e6ab112c2e87c121f76b07e16000
twwwscan07.zip
Posted Dec 26, 2000
Authored by Pilot | Site search.iland.co.kr

TWWWscan is a Windows based www vulnerability scanner which looks for 300 www/cgi vulnerabilities . Displays http header, server info, and tries for accurate results. Now features anti-IDS url encoding and passive mode scan. Tested on win95 osr2 win98,win98se,win nt4,win 2k/Me.

Changes: Includes NT/2000 IIS detailed patch information, CVE information support, and report support.
tags | web, cgi, vulnerability
systems | windows, unix
SHA-256 | 5e15fd47f1786fc1a908327948692eaab205e433c67dc4cd85910dc488b08cda
cgichk_2.50.tar.gz
Posted Dec 19, 2000
Authored by Toby Deshane | Site sourceforge.net

Cgichk is a web vulnerability scanner which automatically searches for a series of interesting directories and files on a given site. Instead of focusing on vulnerable CGI scripts, it looks for interesting and/or hidden directories such as logs, testing, secret, scripts, stats, restricted, code, robots.txt, etc.

Changes: This version is a somewhat major code rewrite. HTTP requests were fixed (most sites work correctly now). HTTP proxy support was added. User agent identification was added. URL parsing code was rewritten. A couple more targets were added.
tags | web, cgi
systems | unix
SHA-256 | 8a0ab0f66d6a55d9091a4daa12b32a1dbbc5aec652a3158bb0b5ffb0464af184
twwwscan06.zip
Posted Nov 17, 2000
Authored by TSS | Site search.iland.co.kr

TWWWscan is a Windows based www vulnerability scanner which looks for 300 www/cgi vulnerabilities . Displays http header, server info, and tries for accurate results. Now features anti-IDS url encoding and passive mode scan. Tested on win95 osr2 win98,win98se,win nt4,win 2k/Me.

Changes: Redhat 7 webserver detection patch, Internet Information Server Sample Directory and file Search Scan-iissample, Netscape Enterprise Server Vulnerability Scan-nesscan, and Detail Windows NT/2k Patch Information.
tags | web, cgi, vulnerability
systems | windows, unix
SHA-256 | 85c1488d269fdad50572536aac20c1d395ceaafdbeafcfc1028143b4b42da470
Page 2 of 4
Back1234Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Google Patches Critical Chrome Vulnerability
Posted Apr 24, 2024

tags | headline, flaw, google, patch, chrome
Hackers Are Using Developing Countries For Ransomware Practice
Posted Apr 24, 2024

tags | headline, hacker, malware, cybercrime, fraud, cryptography
Authorities Investigate LabHost Users After Phishing Service Shutdown
Posted Apr 23, 2024

tags | headline, cybercrime, fraud, phish
Windows Vulnerability Reported By The NSA Exploited To Install Russian Malware
Posted Apr 23, 2024

tags | headline, government, microsoft, usa, russia, flaw, cyberwar, spyware, nsa
UnitedHealth Admits Breach Could Cover Substantial Proportion Of People In America
Posted Apr 23, 2024

tags | headline, hacker, privacy, data loss
Microsoft DRM Hack Could Allow Movie Downloads From Streaming
Posted Apr 23, 2024

tags | headline, microsoft, flaw, pirate
Over A Million Neighbourhood Watch Members Exposed
Posted Apr 23, 2024

tags | headline, privacy, britain, data loss
MITRE Hacked By State Sponsored Group Via Ivanti Zero Days
Posted Apr 23, 2024

tags | headline, hacker, government
Russia's Sandworm APT Linked To Attack On Texas Water Plant
Posted Apr 18, 2024

tags | headline, malware, usa, russia, cyberwar, scada
EU Tells Meta It Can't Paywall Privacy
Posted Apr 18, 2024

tags | headline, government, privacy, facebook, social
View More News →
packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close