Web Application Analysis

Contents

 
  • 1 Backdoors
  • 2 Web Browser For Penetration Testing
  • 3 CMS Scanners
  • 4 Database Assessment
    • 4.1 MS-SQL
    • 4.2 MYSQL
    • 4.3 Oracle
    • 4.4 SQL Injection Frameworks
  • 5 Fingerprinting
  • 6 Fuzzers
  • 7 Proxies
  • 8 Scanners
  • 9 Security Training Environments and Programs
  • 10 Testing Frameworks
  • 11 Web Browser Assessment
  • 12 Web Browser Plugins

Backdoors

  • XSS Shell
  • WebaCoo

Web Browser For Penetration Testing

  • OWASP Mantra
  • Sandcat Browser
  • Hcon

CMS Scanners

  • WPScan

Database Assessment

MS-SQL

  • DBPwAudit
  • Metacoretex
  • Mssqlfp
  • MSSQLScan
  • Pblind
  • SA Exploiter
  • SQLbrute
  • SQLiX
  • SQLMap
  • SQL Ninja

MYSQL

  • DBPwAudit
  • Metacoretex
  • MYSQLAudit
  • MySploit
  • Pblind
  • SQLCheck
  • SQLData
  • SQLiX
  • SQLMap
  • Sqlsus
  • UDF

Oracle

  • DBPwAudit
  • Metacoretex
  • Opquery
  • Opwg
  • Oscanner
  • Ose
  • Otnsctl
  • Pblind
  • SQLbrute
  • SQLiX
  • SQLMap

SQL Injection Frameworks

  • BSQL Hacker

Fingerprinting

  • Wafp

Fuzzers

  • FuzzDb
  • OWASP ZAP
  • PowerFuzzer
  • Wfuzz
  • DotDotPwn

Proxies

  • Burpsuite
  • Fiddler
  • OWASP ZAP
  • Paros Proxy
  • ProxyStrike
  • Ratproxy
  • Webscarab
  • SPIKE Proxy

Scanners

  • CSRFTester
  • Curl
  • DFF Scanner
  • DirBuster
  • Grabber
  • Grendel Scan
  • Httprint
  • xSQL Scanner
  • Jmeter
  • Lbd
  • Mini Mysqlat0r
  • Netsparker Community Edition
  • Nikto
  • OpenAcunetix
  • OWASP ZAP
  • SecuBat
  • Skipfish
  • SoapUI
  • Swfintruder
  • W3AF
  • Wapiti
  • WebRaider
  • Webshag
  • x5s
  • Xsss
  • Yokoso!
  • Arachni v0.4
  • wavsep
  • watcher
  • Cenzic Hailstrom

Security Training Environments and Programs

  • DVWA
  • Jarlsberg
  • Web Security Dojo

Testing Frameworks

  • Bizploit
  • Sahi
  • Websecurify

Web Browser Assessment

  • Beef
  • Browser Fuzzer 3 (bf3)
  • Browser Rider

Web Browser Plugins

  • Groundspeed
  • X06D

你可能感兴趣的:(Web,Security,application,Analysis)