Wednesday, April 15, 2020

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


More information


  1. Black Hat Hacker Tools
  2. Hacking Tools Kit
  3. Hacking Tools Hardware
  4. Pentest Tools Review
  5. Pentest Tools Alternative
  6. Hack Tools For Games
  7. Hack Tool Apk
  8. Hacker Tools Windows
  9. Pentest Tools Bluekeep
  10. Hacker Tools
  11. Hacker Tools Free Download
  12. Pentest Tools For Ubuntu
  13. Hacking Tools For Games
  14. Pentest Tools Alternative
  15. Hacking Tools Usb
  16. What Is Hacking Tools
  17. Hacker Tools Free
  18. Pentest Tools
  19. Pentest Tools Review
  20. Pentest Tools Windows
  21. Hacker Tools Online
  22. Hacker Hardware Tools
  23. Hack Tools For Ubuntu
  24. What Is Hacking Tools

No comments:

Post a Comment