• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

Tools Sitadel - Web Application Security Scanner

Status
Not open for further replies.

itsMe

*KillmeMories*
Staff member
Administrator
Super Moderator
Hacker
Specter
Crawler
Shadow
Joined
Jan 8, 2019
Messages
56,623
Solutions
2
Reputation
32
Reaction score
100,457
Points
2,313
Credits
32,750
‎6 Years of Service‎
 
76%
Sitadel.png


Sitadel is basically an update for WAScan making it compatible for python >= 3.4 It allows more flexibility for you to write new modules and implement new features :

To see this hidden content, you must like this content.
  •     Frontend framework detection
  •     Content Delivery Network detection
  •     Define Risk Level to allow for scans
  •     Plugin system
  •     Docker image available to build and run

Features

    Fingerprints

        Server
        Web Frameworks (CakePHP,CherryPy,...)
        Frontend Frameworks (AngularJS,MeteorJS,VueJS,...)
        Web Application Firewall (Waf)
        Content Management System (CMS)
        Operating System (Linux,Unix,..)
        Language (PHP,Ruby,...)
        Cookie Security
        Content Delivery Networks (CDN)

    Attacks:

        Bruteforce
            Admin Interface
            Common Backdoors
            Common Backup Directory
            Common Backup File
            Common Directory
            Common File
            Log File

        Injection
            HTML Injection
            SQL Injection
            LDAP Injection
            XPath Injection
            Cross Site Scripting (XSS)
            Remote File Inclusion (RFI)
            PHP Code Injection

        Other
            HTTP Allow Methods
            HTML Object
            Multiple Index
            Robots Paths
            Web Dav
            Cross Site Tracing (XST)
            PHPINFO
            .Listing

        Vulnerabilities
            ShellShock
            Anonymous Cipher (CVE-2007-1858)
            Crime (SPDY) (CVE-2012-4929)
            Struts-Shock

 
Status
Not open for further replies.
Back
Top