Hack Tool Repository Logo

Hack Tool Repository

white curve white curve

Web applications sorted by name

Google
 
Everything needed to assess a web application, like vulnerability scanners, mirror tools and cgi scanners

ScanEx

ScanEx - Scanning for iframe and script Injections and External References (Beta).This is a simple utility which runs against target site and look for external references and cross domain malicious injections. There are several vulnerable sites which get manipulated with these types of injections and compromised. The site gets registered with stopbadware and other databases as well. This tool helps in doing initial scanning to look for obvious injections. At this point it is looking into iframe ...

Site: http://www.blueinfy.com/tools.html
Hits: 347

Springenwerk

Springenwerk is a Cross Site Scripting (XSS) security scanner, written in Python.This is open source software. Please help make this THE open source XSS scanner by using it, providing feedback, writing about it, filing bug reports and feature requests, donating, sponsoring, and - of course - by enhancing it.Features:Finds the most common XSS vulnerabilitesExtracts forms and input elements from given webpages and checks them for vulnerabilitesFollows the form action targets (1 level)Can check cus...

Site: http://www.springenwerk.com/
Hits: 364

Spud

A while back, Google encouraged developers to make use of their API. Many people built applications around the API, but alas, Google stopped issuing API keys for their API in 2006. This rendered that large parts of functionality for many tools fell away. SensePost Unified Data API (SPUD) will help get those tools working again. SPUD also integrates seemlessly with BiDiBLAH and Wikto. Best of all, SPUD is free.

Site: http://www.sensepost.com/labs/tools/pentest/s
Hits: 148

sqlmap

sqlmap is an open source command-line automatic SQL injection tool. Its goal is to detect and take advantage of SQL injection vulnerabilities in web applications. Once it detects one or more SQL injections on the target host, the user can choose among a variety of options to perform an extensive back-end database management system fingerprint, retrieve DBMS session user and database, enumerate users, password hashes, privileges, databases, dump entire or user's specified DBMS tables/columns, run...

Site: http://sqlmap.sourceforge.net/
Hits: 423

sqlsus

sqlsus is an open source MySQL injection and takeover tool, written in perl.Via a command line interface that mimics a mysql console, you can retrieve the databases structure, inject SQL queries, download files from the web server, upload and control a backdoor, clone the databases, and much more...It is designed to maximize the amount of data gathered per server hit, making the best use (I can think of) of MySQL functions to optimise the available injection space.Using multithreading, stacked s...

Site: http://sqlsus.sourceforge.net/
Hits: 442

 
Olderchurch Web Site About Us | Site Map | Contact Us | ©2007 Olderchurch Security Consultancy