8/28/20

Spaghetti: A Website Applications Security Scanner


About Spaghetti
   Author: m4ll0k   Spaghetti is an Open Source web application scanner, it is designed to find various default and insecure files, configurations, and misconfigurations. Spaghetti is built on Python 2.7 and can run on any platform which has a Python environment.

Spaghetti Installation:

Spaghetti's Features:
   Fingerprints:
  • Server:
  • Web Frameworks (CakePHP,CherryPy,...)
  • Web Application Firewall (Waf)
  • Content Management System (CMS)
  • Operating System (Linux,Unix,..)
  • Language (PHP,Ruby,...)
  • Cookie Security
   Discovery:
  • Bruteforce:Admin Interface
    Common Backdoors
    Common Backup Directory
    Common Backup File
    Common Directory
    Common FileLog File
  • Disclosure: Emails, Private IP, Credit Cards
   Attacks:
  • HTML Injection
  • SQL Injection
  • LDAP Injection
  • XPath Injection
  • Cross Site Scripting (XSS)
  • Remote File Inclusion (RFI)
  • PHP Code Injection
   Other:
  • HTTP Allow Methods
  • HTML Object
  • Multiple Index
  • Robots Paths
  • Web Dav
  • Cross Site Tracing (XST)
  • PHPINFO
  • .Listing
   Vulns:
  • ShellShock
  • Anonymous Cipher (CVE-2007-1858)
  • Crime (SPDY) (CVE-2012-4929)
  • Struts-Shock
Spaghetti Example:
python spaghetti --url example.com --scan 0 --random-agent --verbose


Related posts


  1. Pentest Tools Find Subdomains
  2. Nsa Hack Tools
  3. Pentest Tools Apk
  4. Pentest Tools Review
  5. Hacker Tools Online
  6. Hacker Tools For Mac
  7. Hacker Tools 2019
  8. Blackhat Hacker Tools
  9. What Is Hacking Tools
  10. Hacking Tools 2020
  11. Best Hacking Tools 2020
  12. Github Hacking Tools
  13. Hacking Tools
  14. Black Hat Hacker Tools
  15. Pentest Tools Url Fuzzer
  16. Hacking Tools Name
  17. Pentest Tools Free
  18. Hacker Tools Windows
  19. Github Hacking Tools
  20. Hacking Tools Windows 10
  21. Install Pentest Tools Ubuntu
  22. Blackhat Hacker Tools
  23. Nsa Hack Tools
  24. Hacking Tools For Pc
  25. Hack Tools For Games
  26. Pentest Tools Alternative
  27. Hacking Tools Usb
  28. Hacks And Tools
  29. Hacker Tools Free
  30. Hack Tools For Mac
  31. Hacking Tools Name
  32. Pentest Tools Online
  33. Hacking Tools For Windows 7
  34. Hack Tools For Games
  35. Pentest Box Tools Download
  36. Hacking Tools Kit
  37. Beginner Hacker Tools
  38. Hacker Tools 2019
  39. Hack Apps
  40. Hack Tool Apk
  41. Bluetooth Hacking Tools Kali
  42. How To Hack
  43. Hacking App
  44. Pentest Tools Windows
  45. Android Hack Tools Github
  46. Hacker Tools Online
  47. Hacker Tools List
  48. Pentest Tools Subdomain
  49. Pentest Recon Tools
  50. Hacking Tools Windows 10
  51. Hacker Hardware Tools
  52. Hacking Tools 2019
  53. Hacking Tools Usb
  54. Game Hacking
  55. Termux Hacking Tools 2019
  56. Tools Used For Hacking
  57. Hack Apps
  58. Pentest Tools Online
  59. Top Pentest Tools
  60. Pentest Tools Website Vulnerability
  61. Hacker Security Tools
  62. Tools 4 Hack
  63. Termux Hacking Tools 2019
  64. Hack Tools 2019
  65. How To Make Hacking Tools
  66. Hack Tool Apk No Root
  67. Hacking Tools Free Download
  68. Pentest Tools
  69. New Hack Tools
  70. Hacker Hardware Tools
  71. Hackers Toolbox
  72. Hacking Tools 2019
  73. Hack Tools 2019
  74. Hak5 Tools
  75. Hacker Hardware Tools
  76. Hacking Tools And Software
  77. Hackrf Tools
  78. Hacking Apps
  79. New Hacker Tools
  80. Pentest Tools For Windows
  81. Hacking Apps
  82. Best Pentesting Tools 2018
  83. Hacker Tools 2019
  84. Best Pentesting Tools 2018
  85. Nsa Hack Tools Download
  86. Hack Tool Apk
  87. Hackrf Tools
  88. Hacker Security Tools
  89. Pentest Tools Download
  90. Hack Tools Mac
  91. Termux Hacking Tools 2019
  92. Hacker Search Tools
  93. Hack Tools Pc
  94. Pentest Tools
  95. Pentest Tools For Ubuntu
  96. Hacker Tool Kit
  97. New Hacker Tools
  98. Pentest Box Tools Download
  99. Hacks And Tools
  100. Hacker Tools Software
  101. Nsa Hacker Tools
  102. Hacker Tools For Windows
  103. Pentest Tools Windows
  104. Hack Rom Tools
  105. Top Pentest Tools
  106. Pentest Tools Android
  107. Pentest Tools Review
  108. Blackhat Hacker Tools
  109. Hacking Tools Windows 10
  110. Hacking Tools Mac
  111. What Is Hacking Tools
  112. Hacks And Tools
  113. Pentest Tools Find Subdomains
  114. Hacker Tools 2019
  115. Hack Tool Apk No Root
  116. Pentest Tools List
  117. Hacking Tools Download
  118. Beginner Hacker Tools
  119. Hacking Tools Software
  120. Pentest Tools For Mac
  121. Pentest Tools List
  122. Pentest Tools Website Vulnerability
  123. Hacker Tools Linux
  124. Hacking Tools For Windows Free Download
  125. Hacking Tools For Pc
  126. Kik Hack Tools
  127. Hacking Tools Usb
  128. Pentest Reporting Tools
  129. Hacking Tools For Mac
  130. Termux Hacking Tools 2019
  131. Pentest Tools Url Fuzzer
  132. What Are Hacking Tools
  133. Pentest Tools Website Vulnerability
  134. Hack Tools For Mac
  135. Kik Hack Tools
  136. Pentest Tools Download
  137. Hacker Tools 2020
  138. How To Install Pentest Tools In Ubuntu
  139. Usb Pentest Tools
  140. Computer Hacker
  141. Pentest Tools Github
  142. Hacker Tools Hardware
  143. Physical Pentest Tools
  144. Hacker
  145. Hacking App
  146. Physical Pentest Tools
  147. Top Pentest Tools