WPScan is a security analysis utility and vulnerability scanner designed specifically for auditing WordPress installations and other content management systems. It functions as a web application security tool that identifies misconfigurations, outdated software, and security holes in core installations, plugins, and themes. The tool employs black-box scanning techniques to perform site component enumeration, identifying users, themes, and plugins by matching known file paths and response signatures. It matches these detected components against a database of known security flaws to analyze the
All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities
w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities in web applications. It functions as a vulnerability scanner that crawls targets to find injection points and a fuzzer used to discover hidden endpoints and test input validation. The project distinguishes itself by providing an intercepting HTTP proxy for capturing and modifying traffic, combined with a knowledge-base driven exploitation system. It enables the execution of security exploits to gain remote shell access and supports post-exploitation activities, such as routing
WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.
CMSmap is a python open source CMS scanner that automates the process of detecting security flaws of the most popular CMSs.
Principalele funcționalități ale dionach/cmsmap sunt: Vulnerability Scanners, CMS Vulnerability Scanning, Web Application Scanning, Web Vulnerability Scanners.
Alternativele open-source pentru dionach/cmsmap includ: wpscanteam/wpscan — WPScan is a security analysis utility and vulnerability scanner designed specifically for auditing WordPress… s0md3v/striker — Striker is an offensive information and vulnerability scanner. andresriancho/w3af — w3af is a web penetration testing suite and security audit framework designed to identify and exploit vulnerabilities… blackcrw/wprecon — WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress. m4ll0k/wascan. federicodotta/java-deserialization-scanner — All-in-one plugin for Burp Suite for the detection and the exploitation of Java deserialization vulnerabilities.