8/28/20

Web-fu - The Ultimate Web Hacking Chrome Extension

Web-fu Is a web hacking tool focused on discovering and exploiting web vulnerabilitites.

 BROWSER INTEGRATION 

This tool has many advantages, as a browser-embedded webhacking tool, is very useful for scanning browser-authenticated applications, if browser can authenticate and access to the web application, the tool also can. Note that some other tools do not support neither certificate authentication nor web vpn accesses.
The integration with chrome, provides a more comfortable and agile way of web-hacking, and you have all the application data loaded on the hacking tool, you don't need to copy the url, cookies, etc. to the tool, just right click and hack.
The browser rendering engine is also used in this tool, to draw the html of the responses.


 FALSES POSITIVES 

When I coded this tool, I was obsessed with false positives, which is the main problem in all detection tools.  I have implemented a gauss algorithm, to reduce the faslse positives automatically which works very very well, and save a lot of time to the pentester.


 VIDEO 

 Here is a video, with some of the web-fu functionalitites:

 VISUAL FEATURES 

This tool has a visual crawler. Normal crawlers doesn't parse the ajvascript, this tool does. The visual crawler loads each link of the web site, rendering the html and executing all the javascript as a normal load, then the links are processed from he DOM and clicked.
A visual form cracker, is also available, althow is experimental and only works on some kind of forms.


 SCANNING FEATURES

The web-fu's portscanner, has a database of a common web ports, like 80,81,8080 and so on.
The cracker module, can bruteforce web directories to find new attack vectors, and can fuzz get and post parameters for discovering vulns, and also crack passwords. There are 9 preloaded wordlists, and you can also load a custom wordlist. Prefilters, falsepositive reductor and render will be helpful. The scanners support SSL, if the website can be loaded in the chrome, can be scanned by web-fu.


ENCODERS & DECODERS

The supported encoders and decoders are: base64, urlescape and urlencode


OTHER FEATURES

A web notepad is available, saving the information on the browser localStorage, there is one notepad per site. A cookie editor is also very useful for pentesting. The inteceptor, is like a web proxy but from the inside of the browser, you can intercept a request There is also a session locker and a exploit web search.


CHROME STORE 
Here is the link to the chrome store, the prize is about one euro, very cheap if you compare with other scanners: Web-Fu on Chrome Store


 With webfu, you will do the best web site pentest and vulnerability assessment.


Related word


  1. New Hack Tools
  2. Hacking Tools For Windows
  3. Hacking Tools Windows
  4. Wifi Hacker Tools For Windows
  5. Hack Tool Apk
  6. Install Pentest Tools Ubuntu
  7. Hacking App
  8. Pentest Tools For Mac
  9. Hacking Tools Github
  10. Tools Used For Hacking
  11. World No 1 Hacker Software
  12. Bluetooth Hacking Tools Kali
  13. Hacking Tools Online
  14. Hacking Tools And Software
  15. Best Hacking Tools 2019
  16. Hacker Tools Github
  17. Hacking Tools For Mac
  18. Computer Hacker
  19. Pentest Tools Tcp Port Scanner
  20. Hacker Tools For Mac
  21. Hacker Tools
  22. Hacker
  23. Hacker Tool Kit
  24. Pentest Tools For Android
  25. Hacking Tools Mac
  26. Hacker Search Tools
  27. Hack Tools For Pc
  28. Hacker Tools Linux
  29. How To Make Hacking Tools
  30. Hacker Tools For Pc
  31. Hack Tool Apk
  32. Hacker Tools Free Download
  33. Pentest Tools Nmap
  34. Hacking Tools For Mac
  35. Pentest Automation Tools
  36. Pentest Tools Bluekeep
  37. Hacking Tools For Windows Free Download
  38. Pentest Tools Online
  39. Pentest Tools Linux
  40. Pentest Tools For Ubuntu
  41. Hack Tool Apk
  42. Hacking Tools Mac
  43. Hacking Tools Kit
  44. Best Hacking Tools 2019
  45. Hacker Hardware Tools
  46. Hacking Tools Github
  47. Hacking Tools
  48. Hak5 Tools
  49. Hacker Hardware Tools
  50. Hacking Tools And Software
  51. Hacking Tools Windows
  52. How To Make Hacking Tools
  53. Hacking Tools Github
  54. Pentest Tools For Windows
  55. Pentest Tools Port Scanner
  56. Hacks And Tools
  57. Pentest Tools Apk
  58. Beginner Hacker Tools
  59. Pentest Tools Linux
  60. Hacker Tools Apk Download
  61. Best Hacking Tools 2020
  62. Beginner Hacker Tools
  63. Best Hacking Tools 2019
  64. Hacking Tools Windows
  65. Hack Rom Tools
  66. Hacking Tools Github
  67. Pentest Tools Github
  68. How To Hack
  69. Blackhat Hacker Tools
  70. Tools 4 Hack
  71. Hacking Tools Mac
  72. Pentest Tools Framework
  73. Pentest Tools
  74. Pentest Recon Tools
  75. Pentest Tools For Ubuntu
  76. Hack Tools Pc
  77. Pentest Tools Port Scanner
  78. Hacker Tools Free Download
  79. Hacker Tools Windows
  80. Hacking Tools Windows
  81. Pentest Automation Tools
  82. Underground Hacker Sites
  83. Hacking Tools Usb
  84. Hack Tools Online
  85. Best Hacking Tools 2019
  86. Hacker Tools For Mac
  87. Nsa Hack Tools
  88. How To Hack
  89. Blackhat Hacker Tools
  90. Hacking App
  91. Nsa Hack Tools Download
  92. Hacker Tools For Ios
  93. Hacking Tools Mac
  94. Nsa Hack Tools
  95. Hacking Tools Kit
  96. Computer Hacker
  97. What Are Hacking Tools
  98. Hacker Tools Windows
  99. Hack Tools Github
  100. Hacking Tools 2020
  101. Hacker Tools Apk Download
  102. Hacking Tools
  103. Hacking Tools Usb
  104. Hacking Tools Usb
  105. Best Pentesting Tools 2018
  106. Hack Tools Download
  107. Pentest Tools Free
  108. Pentest Tools Github
  109. Hacking Tools For Windows
  110. Pentest Tools For Windows
  111. Game Hacking
  112. Hacking Tools Windows 10
  113. Wifi Hacker Tools For Windows
  114. Hacking Tools For Games
  115. Pentest Tools Online
  116. Best Hacking Tools 2020
  117. Pentest Tools Find Subdomains