exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 13 of 13 RSS Feed

Files from Andres Riancho

Email addressandres.riancho at gmail.com
First Active2006-07-26
Last Active2014-03-31
w3af Web Application Attack and Audit Framework 1.6
Posted Mar 31, 2014
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much more.

Changes: Improved performance for scans. Better documentation. Improved quality.
tags | tool, remote, web, local, xss, sql injection, python, file inclusion
SHA-256 | 006731b74f58960a1f3580194979bb988fa52df2bc92f6f36b1ce36ffcdd6003
Nimbostratus d900c27
Posted Sep 5, 2013
Authored by Andres Riancho | Site andresriancho.github.io

Nimbostratus is the first toolset to help you in the process of pivoting in Amazon AWS clouds. it allows you to enumerate permissions to AWS services for current IAM role, clone DB to access information stored in snapshot, inject raw Celery task for pickle attack, and much more.

tags | tool
systems | unix
SHA-256 | 29efa9f8132f0b764d96905af99f64914c6de0ebe5aec38f267d7df09b9660c7
Web Application Security Payloads
Posted Feb 18, 2012
Authored by Andres Riancho

These are the slides from the Web Application Security Payloads presentation given at the OWASP AppSec USA 2011 conference.

tags | paper, web
SHA-256 | 96859936ed7fb62fae34893a18ab9599f745d4ee65739eebcab392b9321c6777
w3af Web Application Attack and Audit Framework 1.1
Posted Nov 10, 2011
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much more.

Changes: Increased performance using gzip encoding, hundreds of bugs fixed, enhanced embedded bug report system added and more.
tags | tool, remote, web, local, xss, sql injection, python, file inclusion
SHA-256 | 0bf3cec513931b9bf20e6f753dedeaab57b5cad303489ab9ff365786c04d9444
w3af Web Application Attack and Audit Framework 1.0
Posted May 25, 2011
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much more.

Changes: Code base has been stabilized. Additions include an auto-update feature, web application payloads, PHP static code analyzer, and more.
tags | remote, web, local, xss, sql injection, python, file inclusion
SHA-256 | 9aaa651e706fe0c4c2cff95879d614cdcb9791e5120cccc527fcb82922d76fc8
w3af Web Application Attack and Audit Framework 1.0 RC5
Posted Jan 19, 2011
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much more.

Changes: Improvements include new vulnerability checks, more stable code and an approximate 15% performance boost in the overall speed of your scan.
tags | tool, remote, web, local, xss, sql injection, python, file inclusion
SHA-256 | afdd6a37613b8f67cc991a864aeafc32f534399eb0c712a77d8422be363deb32
w3af Web Application Attack and Audit Framework 1.0 RC4
Posted Nov 3, 2010
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The w3af core and it's plugins are fully written in python. The project has more than 130 plugins, which check for SQL injection, cross site scripting (xss), local and remote file inclusion and much more.

Changes: Improvements of the GUI and more.
tags | remote, web, local, xss, sql injection, python, file inclusion
SHA-256 | e36997741f1b457a6eefa1e1c8454ef87e0d9023592db876a6c300d82d468b24
w3af-beta5.tar.bz2
Posted Oct 22, 2007
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The framework and the plugins are fully written in python. Each plugin will add a functionality like cross site scripting detection or SQL injection exploitation.

Changes: This version implements some really interesting features like virtual daemons and w3afAgents.
tags | web, xss, sql injection, python
SHA-256 | 67d891aa6500e7df47db2f09f38d9e2c51954964e0f2cf5cf740433665379e95
CYBSEC-tipping.txt
Posted Jul 12, 2007
Authored by Andres Riancho | Site cybsec.com

CYBSEC Security Advisory - The TippingPoint IPS suffers from a bypass vulnerability. TippingPoint IPS systems running TOS versions 2.1.x, 2.2.x prior to 2.2.5, and 2.5.x prior to 2.5.2 are affected.

tags | advisory, bypass
SHA-256 | 4bc620793b3d80e58b78c3a482567f0b81103609f4ee8619280d06d1f7a519de
w3af-10Jun2007.tar.bz2
Posted Jun 13, 2007
Authored by Andres Riancho | Site w3af.sourceforge.net

w3af, is a Web Application Attack and Audit Framework. The framework and the plugins are fully written in python. Each plugin will add a functionality like cross site scripting detection or SQL injection exploitation.

tags | web, xss, sql injection, python
SHA-256 | 4ae9586fc7aee75177c4c2701c8d94098691362cb60cee45a98b6e8a184d7ce1
untidy-beta2.tgz
Posted Jun 7, 2007
Authored by Andres Riancho | Site untidy.sourceforge.net

untidy is general purpose XML Fuzzer. It takes a string representation of a XML as input and generates a set of modified, potentially invalid, XMLs based on the input. It's released under GPL v2 and written in python.

tags | python, fuzzer
SHA-256 | cb9f89dfdf1cce6e76b2946659b685492339efaff809146b7d036304fed2def0
untidy-beta1.tgz
Posted Dec 27, 2006
Authored by Andres Riancho | Site untidy.sourceforge.net

untidy is general purpose XML Fuzzer. It takes a string representation of a XML as input and generates a set of modified, potentially invalid, XMLs based on the input. It's released under GPL v2 and written in python.

tags | python, fuzzer
SHA-256 | 4e6d1c8a2c04fa8b84ff9712946037521667fcfc677d2c11efeaea0732184f3d
tippingBypass.txt
Posted Jul 26, 2006
Authored by Andres Riancho | Site cybsec.com

All TippingPoint appliances with TOS versions 2.2.3.6514 and below suffer from a flaw where a malformed packet can force the appliance to fallback to layer 2 mode. In this mode the appliance forwards all traffic without inspection.

tags | advisory
SHA-256 | 2cdf76ce77a8b1d92b80c66ba2713dcb1827621993374c4f869b6af6c113a55e
Page 1 of 1
Back1Next

File Archive:

April 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Apr 1st
    10 Files
  • 2
    Apr 2nd
    26 Files
  • 3
    Apr 3rd
    40 Files
  • 4
    Apr 4th
    6 Files
  • 5
    Apr 5th
    26 Files
  • 6
    Apr 6th
    0 Files
  • 7
    Apr 7th
    0 Files
  • 8
    Apr 8th
    22 Files
  • 9
    Apr 9th
    14 Files
  • 10
    Apr 10th
    10 Files
  • 11
    Apr 11th
    13 Files
  • 12
    Apr 12th
    14 Files
  • 13
    Apr 13th
    0 Files
  • 14
    Apr 14th
    0 Files
  • 15
    Apr 15th
    30 Files
  • 16
    Apr 16th
    10 Files
  • 17
    Apr 17th
    22 Files
  • 18
    Apr 18th
    45 Files
  • 19
    Apr 19th
    8 Files
  • 20
    Apr 20th
    0 Files
  • 21
    Apr 21st
    0 Files
  • 22
    Apr 22nd
    11 Files
  • 23
    Apr 23rd
    68 Files
  • 24
    Apr 24th
    23 Files
  • 25
    Apr 25th
    0 Files
  • 26
    Apr 26th
    0 Files
  • 27
    Apr 27th
    0 Files
  • 28
    Apr 28th
    0 Files
  • 29
    Apr 29th
    0 Files
  • 30
    Apr 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close