Mrs. King - School Year 2010-2011

Sunday, August 23, 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


Related word


  1. How To Install Pentest Tools In Ubuntu
  2. Pentest Tools Port Scanner
  3. Pentest Tools Port Scanner
  4. Hacking Tools For Pc
  5. Hacker Tools Linux
  6. Hack Tools
  7. Hacking Tools For Kali Linux
  8. Pentest Tools Subdomain
  9. Hackrf Tools
  10. Pentest Tools Bluekeep
  11. Hack Tools For Mac
  12. Pentest Tools For Windows
  13. Hack Tools Online
  14. Hacking Tools For Windows 7
  15. Pentest Tools Port Scanner
  16. New Hack Tools
  17. Hacking Tools Github
  18. Pentest Tools Framework
  19. Pentest Recon Tools
  20. Blackhat Hacker Tools
  21. Bluetooth Hacking Tools Kali
  22. Hacking Tools Github
  23. Hack Tools Mac
  24. Hacker Tools Apk Download
  25. Hacker Tools For Pc
  26. Hackrf Tools
  27. What Is Hacking Tools
  28. Hacking Tools And Software
  29. Pentest Tools For Android
  30. Pentest Tools Nmap
  31. Hacker Tools Free
  32. Hacking Tools And Software
  33. Hacker
  34. Hackers Toolbox
  35. Wifi Hacker Tools For Windows
  36. New Hacker Tools
  37. Pentest Tools For Windows
  38. Hacking Tools For Pc
  39. Pentest Tools For Ubuntu
  40. Hacker Tools For Ios
  41. Github Hacking Tools
  42. Hacking Tools 2020
  43. Hacker Search Tools
  44. Hacker Tool Kit
  45. Hack Tools 2019
  46. Bluetooth Hacking Tools Kali
  47. Nsa Hack Tools Download
  48. Pentest Tools Review
  49. Hacker Tools Apk
  50. Hacker Tools Free
  51. Pentest Tools Port Scanner
  52. Install Pentest Tools Ubuntu
  53. Hacking Tools Kit
  54. Best Pentesting Tools 2018
  55. Hacker Tools For Ios
  56. Pentest Tools Tcp Port Scanner
  57. Hack Tools Online
  58. Blackhat Hacker Tools
  59. Usb Pentest Tools

Blog Archive