全部搜尋項
buster  ] [  bullseye  ] [  bookworm  ] [  trixie  ] [  sid  ]
[ 原始碼: wapiti  ]

套件:wapiti(3.0.1+dfsg-1)

wapiti 的相關連結

Screenshot

Debian 的資源:

下載原始碼套件 wapiti

維護小組:

外部的資源:

相似套件:

web application vulnerability scanner

Wapiti allows you to audit the security of your web applications. It performs "black-box" scans, i.e. it does not study the source code of the application but will scan the web pages of the deployed web applications, looking for scripts and forms where it can inject data. Once it gets this list, Wapiti acts like a fuzzer, injecting payloads to see if a script is vulnerable.

Wapiti can detect the following vulnerabilities:

 - Database Injection (PHP/ASP/JSP SQL Injections and XPath Injections)
 - Cross Site Scripting (XSS) reflected and permanent
 - File disclosure detection (local and remote include, require, fopen,
   readfile...)
 - Command Execution detection (eval(), system(), passtru()...)
 - XXE (Xml eXternal Entity) injection
 - CRLF Injection
 - Search for potentially dangerous files on the server (thank to the Nikto db)
 - Bypass of weak htaccess configurations
 - Search for copies (backup) of scripts on the server
 - Shellshock
 - DirBuster like
 - Server Side Request Forgery (through use of an external Wapiti website)

標籤: 實做語言: Python, 角色: 程式, 安全性: 需要一個額外的標籤, Purpose: Analysing

其他與 wapiti 有關的套件

  • 依賴
  • 推薦
  • 建議
  • 增強

下載 wapiti

下載可用於所有硬體架構的
硬體架構 套件大小 安裝後大小 檔案
all 328。0 kB1,422。0 kB [檔案列表]