viernes, agosto 28, 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


Read more


  1. Hacker Search Tools
  2. Hack Tool Apk No Root
  3. Hack Tools For Ubuntu
  4. Pentest Recon Tools
  5. Hack Rom Tools
  6. Pentest Tools Tcp Port Scanner
  7. Pentest Tools Nmap
  8. Hacker Tools For Ios
  9. Hacking Tools Windows
  10. Pentest Tools Website
  11. New Hack Tools
  12. Hack Website Online Tool
  13. What Are Hacking Tools
  14. Hack Tools For Mac
  15. Bluetooth Hacking Tools Kali
  16. Pentest Tools Alternative
  17. Hacking Tools Software
  18. Physical Pentest Tools
  19. Hacking Tools For Games
  20. Hack Tools
  21. Hacking Tools
  22. Hacker Search Tools
  23. New Hacker Tools
  24. Hacker Tools Apk
  25. What Is Hacking Tools
  26. Top Pentest Tools
  27. Beginner Hacker Tools
  28. Hack Tools For Ubuntu
  29. Hacking Tools For Windows 7
  30. Hacker Tools Free Download
  31. Hack Tools Github
  32. Hacking Tools Windows 10
  33. Ethical Hacker Tools
  34. Hack Apps
  35. Hack App
  36. Pentest Reporting Tools
  37. Pentest Box Tools Download
  38. Pentest Tools
  39. Hacker Tools List
  40. How To Make Hacking Tools
  41. What Is Hacking Tools
  42. Pentest Tools Bluekeep
  43. Game Hacking
  44. Github Hacking Tools
  45. Beginner Hacker Tools
  46. Pentest Tools Tcp Port Scanner
  47. Hack Website Online Tool
  48. Hack Tool Apk
  49. How To Make Hacking Tools
  50. How To Hack
  51. Install Pentest Tools Ubuntu
  52. Pentest Automation Tools
  53. Hack Tools Mac
  54. Growth Hacker Tools
  55. Hacker
  56. Tools Used For Hacking
  57. Pentest Reporting Tools
  58. Hacker Tools
  59. Underground Hacker Sites
  60. What Are Hacking Tools
  61. Hack Tools Download
  62. Hack And Tools
  63. Blackhat Hacker Tools
  64. Pentest Tools For Ubuntu
  65. Hacking Tools And Software
  66. Pentest Tools List
  67. Hacking Tools For Windows Free Download
  68. Hacker Tools Apk Download
  69. Hackrf Tools
  70. Hacker Tools For Mac
  71. Pentest Tools Website Vulnerability
  72. Pentest Tools Android