Sunday, August 23, 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


More articles


  1. Hacker Tools Mac
  2. Hack Rom Tools
  3. Easy Hack Tools
  4. Pentest Tools Tcp Port Scanner
  5. Hack Tool Apk No Root
  6. Hacking Tools And Software
  7. Pentest Tools Github
  8. Pentest Tools Review
  9. Hacking Tools Hardware
  10. Pentest Tools Kali Linux
  11. Hack Tools
  12. Hacker Tools List
  13. Hacking Tools Hardware
  14. Hack Tools 2019
  15. Easy Hack Tools
  16. Pentest Tools Alternative
  17. Best Hacking Tools 2019
  18. Hacker Tools Apk Download
  19. Hacking Apps
  20. Hacker Tools Free
  21. Pentest Tools Tcp Port Scanner
  22. Pentest Tools Free
  23. How To Make Hacking Tools
  24. Hack Tools Download
  25. Hacking Tools For Kali Linux
  26. Pentest Tools Open Source
  27. Hack Tools Pc
  28. Hacker Tools For Windows
  29. Hacking Tools Kit
  30. Kik Hack Tools
  31. Pentest Tools For Ubuntu
  32. Hacker Tools Apk
  33. Game Hacking
  34. Hacker Tools 2019
  35. Github Hacking Tools
  36. Pentest Recon Tools
  37. Hacking Tools Windows
  38. What Is Hacking Tools
  39. Pentest Tools Website
  40. Pentest Tools For Windows
  41. Pentest Tools For Windows
  42. Ethical Hacker Tools
  43. Pentest Tools Github
  44. Nsa Hacker Tools
  45. Tools For Hacker
  46. Hacker Tools For Pc
  47. Computer Hacker
  48. Ethical Hacker Tools
  49. Hacking Tools Name
  50. Tools For Hacker
  51. Hacker Tools List
  52. Hacking Tools Download
  53. Hacker Tools For Ios
  54. Hacking Tools Software
  55. Hacking Tools Kit
  56. New Hacker Tools
  57. Pentest Tools Framework
  58. Tools For Hacker
  59. Hack Tools
  60. Computer Hacker
  61. Hacking Tools Software
  62. Pentest Tools Framework
  63. Pentest Tools Linux
  64. Hack Tool Apk
  65. Hacking Tools
  66. Nsa Hacker Tools
  67. Best Pentesting Tools 2018
  68. Hack Tools 2019
  69. Pentest Tools Open Source
  70. Pentest Tools Bluekeep
  71. Hack Tools For Windows
  72. Hacking Tools Download
  73. Hacking Tools For Windows 7
  74. What Is Hacking Tools
  75. Hacking App
  76. Usb Pentest Tools
  77. Pentest Reporting Tools
  78. Pentest Tools For Windows
  79. Pentest Tools Linux
  80. Hacking Apps
  81. Hacking Tools Github
  82. Hack And Tools
  83. Hack Tool Apk
  84. Pentest Tools Windows
  85. Pentest Tools Download
  86. Nsa Hack Tools
  87. Hacker Tools List
  88. Usb Pentest Tools
  89. Hack Tools Pc
  90. Hacking Apps
  91. Wifi Hacker Tools For Windows
  92. Hacker Tools
  93. Nsa Hack Tools Download
  94. Nsa Hacker Tools
  95. Pentest Tools Port Scanner
  96. Pentest Tools For Android
  97. Hacking Tools 2019
  98. Pentest Tools For Windows
  99. Hack Tool Apk
  100. Pentest Tools Website Vulnerability
  101. Hacking Tools Windows 10
  102. Hacking Tools Github
  103. Pentest Box Tools Download
  104. Pentest Recon Tools
  105. Hacking Tools For Pc
  106. Black Hat Hacker Tools
  107. Hack Tools For Ubuntu
  108. Hacking Tools Github
  109. Hacker
  110. What Is Hacking Tools
  111. Hack Tools Pc
  112. Hacking Tools
  113. Pentest Box Tools Download
  114. Hack Tools For Pc
  115. Hacking Tools And Software
  116. Wifi Hacker Tools For Windows
  117. Pentest Tools Linux
  118. Hacking Tools For Pc
  119. Hacker Tools 2019
  120. Github Hacking Tools
  121. Nsa Hacker Tools
  122. Hacking Tools 2020
  123. Pentest Tools Find Subdomains
  124. Tools 4 Hack
  125. Pentest Tools Url Fuzzer
  126. Pentest Tools Subdomain
  127. Hacking Tools Name
  128. Physical Pentest Tools
  129. Hacking Tools For Windows 7
  130. Hacking Tools For Kali Linux
  131. Hack Tools 2019
  132. Hacker
  133. Pentest Tools Port Scanner
  134. Bluetooth Hacking Tools Kali
  135. Hack Tools
  136. New Hacker Tools
  137. Pentest Tools Alternative
  138. Pentest Tools Linux
  139. Hacking Tools
  140. Best Hacking Tools 2019
  141. Android Hack Tools Github
  142. Bluetooth Hacking Tools Kali
  143. Tools For Hacker
  144. Kik Hack Tools
  145. Hack Tools Pc
  146. Kik Hack Tools
  147. Hacking Tools Pc
  148. Hacking Tools Name
  149. Hacking Tools 2019
  150. Hack Tools Download
  151. Pentest Tools Subdomain
  152. Pentest Tools For Windows
  153. Hacker Search Tools
  154. Hacking Tools Free Download
  155. Hacking Tools And Software
  156. Pentest Tools Website Vulnerability
  157. Pentest Tools Free
  158. Hacker Hardware Tools
  159. Hacker Search Tools
  160. Pentest Tools Linux
  161. Hacking Tools 2020
  162. Free Pentest Tools For Windows
  163. Game Hacking
  164. Hack Tools
  165. Hack Tools 2019
  166. Hacker Tools
  167. What Are Hacking Tools
  168. Hacking Tools And Software
  169. Hack Tools Online
  170. Pentest Tools Windows
  171. Hack App
  172. Pentest Box Tools Download
  173. Pentest Automation Tools
  174. Hacking Tools 2019
  175. Game Hacking
  176. Game Hacking

No comments:

Post a Comment