• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

Rapidscan v1.1 - The Multi-Tool Web Vulnerability Scanner

Status
Not open for further replies.

itsMe

*KillmeMories*
Staff member
Administrator
Super Moderator
Hacker
Specter
Crawler
Shadow
Joined
Jan 8, 2019
Messages
56,602
Solutions
2
Reputation
32
Reaction score
100,446
Points
2,313
Credits
32,540
‎6 Years of Service‎
 
76%
splashscreen_rapidscan_intro.PNG


RapidScan – The Multi-Tool Web Vulnerability Scanner

It is quite a fuss for a pentester to perform binge-tool-scanning (running security scanning tools one after the other) sans automation. Unless you are a pro at automating stuff, it is a herculean task to perform binge-scan for each and every engagement. The ultimate goal of this program is to solve this problem through automation; viz. running multiple scanning tools to discover vulnerabilities, effectively judge false-positives, collectively correlate results and saves precious time; all these under one roof.

Features

    one-step installation.
    executes a multitude of security scanning tools, does other custom coded checks and prints the results spontaneously.
    some of the tools include nmap, dnsrecon, wafw00f, uniscan, sslyze, fierce, lbd, theharvester, dnswalk, golismeroetc executes under one entity.
    saves a lot of time, indeed a lot of time!.
    checks for same vulnerabilities with multiple tools to help you zero-in on false positives effectively.
    legends to help you understand which tests may take longer time, so you can Ctrl+C to skip if needed.
    vulnerability definitions guide you what the vulnerability actually is and the threat it can pose. (under development)
    remediations tell you how to plug/fix the found vulnerability. (under development)
    executive summary gives you an overall context of the scan performed with critical, high, low and informational issues discovered. (under development)
    artificial intelligence to deploy tools automatically depending upon the issues found. for eg; automates the launch of wpscan and plecost tools when a wordpress installation is found. (under development)

Vulnerability Checks

    ✔️ DNS/HTTP Load Balancers & Web Application Firewalls.
    ✔️ Checks for Joomla, WordPress, and Drupal
    ✔️ SSL related Vulnerabilities (HEARTBLEED, FREAK, POODLE, CCS Injection, LOGJAM, OCSP Stapling).
    ✔️ Commonly Opened Ports.
    ✔️ DNS Zone Transfers using multiple tools (Fierce, DNSWalk, DNSRecon, DNSEnum).
    ✔️ Sub-Domains Brute Forcing.
    ✔️ Open Directory/File Brute Forcing.
    ✔️ Shallow XSS, SQLi, and BSQLi Banners.
    ✔️ Slow-Loris DoS Attack, LFI (Local File Inclusion), RFI (Remote File Inclusion) & RCE (Remote Code Execution).
    & more coming up…

To see this hidden content, you must like this content.
 
Status
Not open for further replies.
Back
Top