Section: .. / web /
| /// File Name: |
guileproxy.tar.gz |
Description:
|
Guilecool proxy scanner and checker C source. In Italian.
| | File Size: | 23375 | | Last Modified: | Jan 5 03:20:22 2003 |
| MD5 Checksum: | 332797d09ee2a0d06de04ef90edc66e9 |
|
| /// File Name: |
lsa_v1.1.zip |
Description:
|
LSA v1.1 for unix, linux, and windows is a tool written in PHP for testing PHP and system security settings, virtual hosts, and local accounts. You can write own plugins for LSA.
| | Author: | eaS7 | | Homepage: | http://lbyte.void.ru | | File Size: | 47117 | | Last Modified: | Dec 17 22:11:16 2002 |
| MD5 Checksum: | 5071c695149010f466390dc81c86606d |
|
| /// File Name: |
mod_security_1.3b.tar.gz |
Description:
|
Mod_security is an Apache module whose purpose is to protect vulnerable applications and reject human or automated attacks. In addition to filtering requests, it also can create Web application audit logs. Understands regular expressions and POST payloads.
| | Homepage: | http://www.webkreator.com/mod_security/download | | Changes: | Selective filtering has been introduced. You can now filter requests based on the contents of individual variables (HTTP headers, environment variables, and individual script arguments) coming either from GET or POST. | | File Size: | 12967 | | Last Modified: | Dec 15 17:38:28 2002 |
| MD5 Checksum: | 55a6ab4938c0f27140ead7ecac3bf5ca |
|
| /// File Name: |
httpda.pl |
Description:
|
HTTPda is a perl script that searches a remote site for forms, .cgi and .pl files.
| | Author: | Crazy Einstein | | Homepage: | http://lbyte.void.ru | | File Size: | 7017 | | Last Modified: | Dec 11 00:53:46 2002 |
| MD5 Checksum: | 465b8871a98763d32337fd999d039419 |
|
| /// File Name: |
tunnel_finder_1.1.zip |
Description:
|
Tunnel Finder v1.1 is a proxy checker that can display information from a list of proxies by searching for proxy servers that permit the CONNECT command allowing an end user to achieve a higher level of anonymity. Checks for SSL proxies as well.
| | Author: | OblivionBlack | | Changes: | Improved scanning engine now more fast. Added SSL check to active proxies. Added possibility to sort proxies in list new save list option. | | File Size: | 430297 | | Last Modified: | Dec 8 06:40:25 2002 |
| MD5 Checksum: | 88373ab9b5b67560121e16cb0297d618 |
|
| /// File Name: |
spikeproxy-1.4.6.tar.gz |
Description:
|
SPIKE proxy is a web application analysis tool which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, form rewriting, SQL injection detection, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included. Screenshot available here. Changelog available here.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | Changes: | Fixed NTLM support for some people, Added "False 404 Detection" which can be customized through the Configuration menu. | | File Size: | 621209 | | Last Modified: | Nov 19 01:23:23 2002 |
| MD5 Checksum: | 209f932aee7e3047c52e9783424b9dac |
|
| /// File Name: |
TunnelFinder.zip |
Description:
|
Tunnel finder is a particular proxy checker that can display information from a list of proxies by searching for proxy servers that permit the CONNECT command allowing an end user to achieve a higher level of anonymity.
| | Author: | OblivionBlack | | File Size: | 429260 | | Last Modified: | Oct 25 01:16:48 2002 |
| MD5 Checksum: | 473f676f21c52b399d99b58b496aec10 |
|
| /// File Name: |
DansGuardian-2.4.6-5.source.tar.gz |
Description:
|
DansGuardian is a web content filter which currently runs on Linux, FreeBSD, OpenBSD and Solaris. It filters the actual content of pages based on many methods including phrase matching, PICS filtering and URL filtering. It does not purely filter based on a banned list of sites like lesser totally commercial filters. DansGuardian is designed to be completely flexible and allows you to tailor the filtering to your exact needs. It can be as Draconian or as un-obstructive as you want.
| | Homepage: | http://dansguardian.org | | File Size: | 125761 | | Last Modified: | Oct 22 02:31:13 2002 |
| MD5 Checksum: | 8aa42b299cd798c80ff09ed866a91b63 |
|
| /// File Name: |
80log.sh |
Description:
|
80log.sh is a shell script which uses netcat to log the HTTP server versions of multiple or single web servers.
| | Author: | Killah | | Homepage: | http://www.hack.gr/users/killah | | File Size: | 885 | | Last Modified: | Oct 6 20:19:10 2002 |
| MD5 Checksum: | 752d16bd6eb68da0d1b68ad8fa501037 |
|
| /// File Name: |
spikeproxy-1.3.tar.gz |
Description:
|
SPIKE proxy is a web application analysis tool which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, form rewriting, SQL injection detection, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included. Screenshot available here. Changelog available here.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | Changes: | Core engine fixed, crawling support fixed, directory and file scan added. | | File Size: | 328214 | | Last Modified: | Sep 27 10:46:18 2002 |
| MD5 Checksum: | 77fe8f73662ee35c16a20c836a330f3f |
|
| /// File Name: |
wsh-1.1.2.tar.gz |
Description:
|
Wsh is a remote UNIX shell that works via HTTP. The client script provides a shell-like prompt, encapsulating user commands into HTTP POST requests and sending them to the server script. The server script extracts and executes commands and returns STDOUT and STDERR output. Features include command line history support, file upload/download, and it can work through an HTTP proxy server.
| | Homepage: | http://dyatlov.ru | | Changes: | Fixed bugs. | | File Size: | 4071 | | Last Modified: | Sep 20 19:12:33 2002 |
| MD5 Checksum: | 70d3400b56d74486f441f6e1baf34d03 |
|
| /// File Name: |
webterm-0.0.2.tar.gz |
Description:
|
WebTerm is a program in three parts that sends a shell over HTTP. These include a cgi binary, a client-side terminal, and another binary to execute commands via /bin/sh.
| | Author: | Seunghyun Seo | | Homepage: | http://igrus.inha.ac.kr/~seo/ | | File Size: | 26184 | | Last Modified: | Sep 10 01:42:29 2002 |
| MD5 Checksum: | cc636b605562308f9ff82f78256dbb0c |
|
| /// File Name: |
httptype-1.3.9.tar.gz |
Description:
|
Httptype is a program that returns the http host software of a website. It is written in Perl.
| | Homepage: | http://staff.ncst.ernet.in/~philip/downloads/httptype | | Changes: | New stable version. You can now use URLs in a host file as well. Unsupported URL schemes will return a warning and be skipped. This version also tries to figure out the server type of SSL hosts. | | File Size: | 15254 | | Last Modified: | Aug 30 01:10:02 2002 |
| MD5 Checksum: | 6941ca3c2c8dd990f6e56dfce2fd9668 |
|
| /// File Name: |
httpscan_2.c |
Description:
|
Httpscan_2.c displays the http server version.
| | Author: | Necrose | | Homepage: | http://www.truncode.org | | File Size: | 2192 | | Last Modified: | Aug 20 02:33:24 2002 |
| MD5 Checksum: | 21a6fa57af7c77b28784806c10c08e7f |
|
| /// File Name: |
spkproxy1.1.tar.gz |
Description:
|
SPIKE proxy is a proxy which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included. Screenshot available here.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | Changes: | A HTML based GUI is now included, allowing the user to quickly look for SQL injection bugs/overflows on an entire site or rewrite individual requests. | | File Size: | 52021 | | Last Modified: | Jul 23 23:39:26 2002 |
| MD5 Checksum: | 931c52d01f7fed1abf47c46fc8320cae |
|
| /// File Name: |
spkproxy1.0.tar.gz |
Description:
|
SPIKE proxy is a proxy which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | File Size: | 16436 | | Last Modified: | Jul 14 21:18:41 2002 |
| MD5 Checksum: | 8bf40cc6cecfff2da3663229ce715a79 |
|
| /// File Name: |
wsh-1.0.tar.gz |
Description:
|
Wsh is a remote UNIX shell that works via HTTP. The client script provides a shell-like prompt, encapsulating user commands into HTTP POST requests and sending them to the server script. The server script extracts and executes commands and returns STDOUT and STDERR output. Features include command line history support, file upload/download, and it can work through an HTTP proxy server.
| | Homepage: | http://dyatlov.ru | | File Size: | 3414 | | Last Modified: | Jun 12 23:16:37 2002 |
| MD5 Checksum: | 7b6fba0bdc10c46d09d4229de1558599 |
|
| /// File Name: |
wpoison-dev.tgz |
Description:
|
Wpoison (May 28 snapshot) is a tool which attempts to find any SQL-injection vulnerabilities on a remote web document, finding bugs in dynamic content such as php and asp. Readme available here.
| | Author: | M. Meadele | | Homepage: | http://wpoison.sourceforge.net | | File Size: | 21280 | | Last Modified: | May 29 02:44:00 2002 |
| MD5 Checksum: | a3f98ae45b8cfdcd96d13c73b76bc2ad |
|
| /// File Name: |
centurion.tar.gz |
Description:
|
Centurion checks any cgi script on remote server for vulnerabilities like directory traversal bugs, null byte, and incorrect filtering of meta characters. Tested on CGI, PL, PHP, and SHTML.
| | Author: | Lbyte | | Homepage: | http://lbyte.void.ru | | File Size: | 2993 | | Last Modified: | Apr 17 02:46:04 2002 |
| MD5 Checksum: | db9b9c51c5dbe5a50845950f12b1ae10 |
|
| /// File Name: |
wbclk256.zip |
Description:
|
WebClicker v2.56 uses public proxies to create artificial banner ad clicks. Emulates complete browser HTTP transfer and can be used for banner/link exchanges and toplists as well.
| | Author: | Moritz Bartl | | Homepage: | http://www.headstrong.de | | Changes: | customizable proxy timeout, play WAV sound file when done, flashes window when done, minimizing the simple form is now possible, improved memory management and a few more bugs fixed. | | File Size: | 665743 | | Last Modified: | Feb 26 00:22:51 2002 |
| MD5 Checksum: | 146167107b4ca5dde0f49960a2050601 |
|
| /// File Name: |
WebStorm1_2.zip |
Description:
|
WebStorm is an IP scanner for Windows which checks webserver versions. Features include Webserver type filtering, option to use a HTTP Proxy server for scans, and saving the list or just IP's in the list to a file.
| | Author: | Askin | | File Size: | 1824771 | | Last Modified: | Jan 31 00:35:15 2002 |
| MD5 Checksum: | 681a0ca1f28aed8bdcfc7f0d41f87556 |
|
| /// File Name: |
screamingCobra-1.04.tar.gz |
Description:
|
ScreamingCobra is an application for remote vulnerability discovery in ANY UNKNOWN web applications such as CGIs and PHP pages. Simply put, it attempts to find vulnerabilities in all web applications on a host without knowing anything about the applications. Modern CGI scanners scan a host for CGIs with known vulnerabilities. ScreamingCobra is able to 'find' the actual vulnerabilities in ANY CGI, whether it has been discovered before or not.
| | Author: | Samy Kamkar | | Homepage: | http://cobra.LucidX.com | | Changes: | Several bug fixes, support for adding attacking techiques and a Windows binary has been added. | | File Size: | 414990 | | Last Modified: | Jan 13 21:23:34 2002 |
| MD5 Checksum: | a36d646cb96a64a95f7aa2f5c07224e7 |
|
| /// File Name: |
cgiaudit-1.0.tar.gz |
Description:
|
CGIAudit is a black-box debugging tool which automatically audits CGI entities with only an interface specification, the HTML form. Attack types that a CGI script or program become subject to are configurable, as well as server replies that denote a possible penetration success. Other features include a built-in spider, proxy support, and hexadecimal encoding of requests.
| | Author: | S | | File Size: | 69018 | | Last Modified: | Jan 11 13:09:36 2002 |
| MD5 Checksum: | 8a5e585d220f86b1b68363490dbefde2 |
|
| /// File Name: |
twhttpd.tar.gz |
Description:
|
TrustWall HTTP Proxy v0.9-5 is a secure HTTP proxy which protects web servers (and web browser clients) by checking the HTTP protocol header data. The design has already put most modern web base attacks into consideration and hence can protect most web servers without very in-depth knowledge about the attacking techniques.
| | Homepage: | http://personal.ie.cuhk.edu.hk/~msng0/twhttpd/ | | Changes: | support has been added for anonymized User-Agents, as well as some minor bugfixes. | | File Size: | 83186 | | Last Modified: | Dec 8 23:00:34 2001 |
| MD5 Checksum: | 2e846f673d4e912c53fbf84d2ae5d33f |
|
| /// File Name: |
cpt1.tar.gz |
Description:
|
Proxy Toolkit is coded in Java and checks to see what information a web proxy forwards.
| | Author: | Toxic Ocean | | Homepage: | http://www.blackhat.be | | File Size: | 9259 | | Last Modified: | Sep 27 00:56:58 2001 |
| MD5 Checksum: | 4e1a802f5639dd03e31d7a28712f80e1 |
|
|
|
|
|