Section: .. / web /
| /// File Name: |
spikeproxy-1.4.6.tar.gz |
Description:
|
SPIKE proxy is a web application analysis tool which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, form rewriting, SQL injection detection, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included. Screenshot available here. Changelog available here.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | Changes: | Fixed NTLM support for some people, Added "False 404 Detection" which can be customized through the Configuration menu. | | File Size: | 621209 | | Last Modified: | Nov 19 01:23:23 2002 |
| MD5 Checksum: | 209f932aee7e3047c52e9783424b9dac |
|
| /// File Name: |
spkproxy1.0.tar.gz |
Description:
|
SPIKE proxy is a proxy which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | File Size: | 16436 | | Last Modified: | Jul 14 21:18:41 2002 |
| MD5 Checksum: | 8bf40cc6cecfff2da3663229ce715a79 |
|
| /// File Name: |
spkproxy1.1.tar.gz |
Description:
|
SPIKE proxy is a proxy which uses the SPIKE API to help reverse engineer new and unknown network protocols. Provides security analysis features for Web applications, a multi-threaded design, man in the middle SSL proxying, handles Connection: keep-alive properly (it is possible to log in to Hotmail with it), and rewrites User-Agent to pretend to be running IE. Requires pyOpenSSL pre 0.5 from the SPIKE Web page. Several working examples are included. Screenshot available here.
| | Author: | Dave Aitel | | Homepage: | http://www.immunitysec.com/spike.html | | Changes: | A HTML based GUI is now included, allowing the user to quickly look for SQL injection bugs/overflows on an entire site or rewrite individual requests. | | File Size: | 52021 | | Last Modified: | Jul 23 23:39:26 2002 |
| MD5 Checksum: | 931c52d01f7fed1abf47c46fc8320cae |
|
| /// File Name: |
sqlime_source.zip |
Description:
|
SQL-Me is a Firefox Add-on tool that was designed to help test for SQL injection vulnerabilities in a given system.
| | Homepage: | http://www.securitycompass.com/ | | File Size: | 159113 | | Last Modified: | Dec 10 20:23:17 2007 |
| MD5 Checksum: | 053241d7bc2d8e479358ce27a1d418d6 |
|
| /// File Name: |
squid_nufw_helper-1.0.0-rc1.tar.gz |
Description:
|
squid-nufw-helper is an external ACL helper for Squid that provides Single Sign On capabilities. It uses the NuFW firewall suite and supports the NuFW users SQL logging scheme. The module allows for strict SSO identification and authentication of users on any Squid proxy, including transparent proxies.
| | Author: | Vincent Deffontaines | | File Size: | 6667 | | Last Modified: | Jul 28 14:54:59 2004 |
| MD5 Checksum: | c9a529abc2d0795dec84dc732888ef1c |
|
| /// File Name: |
squidefender-1.3.tar.gz |
Description:
|
Squidefender is a Perl script which analyzes a squid log file in native format to detect attacks. This can be used to automatically adapt your firewall when an attack has occurred. The power of squidefender lies in its configuration options, which let you easily add new attacks to scan for. Another interesting option of squidefender is its ability to use different message templates based on the attack found.
| | Homepage: | http://www.jeroen.se/squidefender.php | | Changes: | IPs can now be blocked for a specified time based on the pattern. | | File Size: | 24920 | | Last Modified: | Nov 11 00:44:49 2003 |
| MD5 Checksum: | 6f770e1296f00093afca9121293401d2 |
|
| /// File Name: |
sslclient.tar.gz |
Description:
|
The SSL client stress tool is a small program which is capable of stress testing any SSL-based server. It has been tested with Apache+mod_ssl and IIS. It can be easily modified to stress test any custom SSL implementation, and can also stress test static-page HTTP servers.
| | Homepage: | http://sslclient.sourceforge.net | | File Size: | 953451 | | Last Modified: | Dec 31 00:51:18 2000 |
| MD5 Checksum: | 543b9c72c39fd59fb7f3d6dbdeb61e30 |
|
| /// File Name: |
stompy.tgz |
Description:
|
Stompy is a free tool to perform a fairly detailed black-box assessment of WWW session identifier generation algorithms. Session IDs are commonly used to track authenticated users, and as such, whenever they're predictable or simply vulnerable to brute-force attacks, we do have a problem.
| | Author: | Michal Zalewski | | Homepage: | http://lcamtuf.coredump.cx/ | | File Size: | 24523 | | Last Modified: | Jan 29 11:26:19 2007 |
| MD5 Checksum: | d5f3de170e61b5ec865dfc5d0c1790a1 |
|
| /// File Name: |
stproxy-0.9.1.tar.gz |
Description:
|
stproxy is small and simple single-threaded HTTP/SSL proxy server released under the GNU General Public License (GPL). stproxy uses as little resources as possible, while still being very fast and efficient.
| | Author: | Adam Hurkala | | Changes: | Added support for HEAD method. | | File Size: | 132552 | | Last Modified: | Nov 16 02:22:26 2007 |
| MD5 Checksum: | e866b16e098629bb809e239487573f3d |
|
| /// File Name: |
stproxy-0.9.tar.gz |
Description:
|
stproxy is small and simple single-threaded HTTP/SSL proxy server released under the GNU General Public License (GPL). stproxy uses as little resources as possible, while still being very fast and efficient.
| | Author: | Adam Hurkala | | File Size: | 132429 | | Last Modified: | Oct 15 18:40:31 2007 |
| MD5 Checksum: | b48901b9d7df43d013353273af7e8e6a |
|
| /// File Name: |
swfintruder-0.9.tgz |
Description:
|
SWFIntruder (pronounced Swiff Intruder) is the first tool specifically developed for analyzing and testing security of Flash applications at runtime. Some features include predefined attack patterns, highly customizable attacks, semi-automated cross site scripting checks, and more.
| | Author: | Stefano Di Paola | | Homepage: | http://www.mindedsecurity.com/ | | File Size: | 108777 | | Last Modified: | Dec 5 23:08:33 2007 |
| MD5 Checksum: | 24b530abb076f5682cf36581c94fd035 |
|
| /// File Name: |
swiftsurf.tar.gz |
Description:
|
SwiftSurf v1.01 is an HTTP proxy that lets you do a lot of things. You can spy, filter, and modify the HTTP requests that your browser sends, as well as the answers it receives. Some of its possible uses include filtering ads, limiting access to a specific domain, or suppressing cookies.
| | Homepage: | http://pauillac.inria.fr/~ailleret/prog/swiftsurf/index-eng.html | | File Size: | 18199 | | Last Modified: | Jan 15 02:06:47 2001 |
| MD5 Checksum: | 4840088e4e843dfa9867c966260e43af |
|
| /// File Name: |
tinyurlfuckery.c |
Description:
|
The tinyurlfucker utility encodes data in base64 chunks and lets it get moved using tinyurl.com as a transit.
| | Author: | lazy-xo of xoc | | Homepage: | http://xoc-staff.com/ | | File Size: | 10895 | | Last Modified: | May 22 00:56:21 2006 |
| MD5 Checksum: | 0b9124f92507c41d4058abed01024d99 |
|
| /// File Name: |
transconnect-0.3-beta.tar.gz |
Description:
|
TransConnect is an implementation of function interposing to allow users behind an HTTP proxy (which allows https) to use networking applications like telnet, ssh, fetchmail, irc, whois, etc. as if they were directly connected to the Internet.
| | Homepage: | http://transconnect.sourceforge.net | | Changes: | Support for FreeBSD, NetBSD, OpenBSD, and SunOS in addition to Linux. Testing was done on Linux, SunOS 5.7, and FreeBSD. | | File Size: | 8515 | | Last Modified: | Apr 22 14:36:38 2001 |
| MD5 Checksum: | aaa42c4eb1900aa8c5c3f569e2a3d4aa |
|
| /// File Name: |
tunnel_finder_1.1.zip |
Description:
|
Tunnel Finder v1.1 is a proxy checker that can display information from a list of proxies by searching for proxy servers that permit the CONNECT command allowing an end user to achieve a higher level of anonymity. Checks for SSL proxies as well.
| | Author: | OblivionBlack | | Changes: | Improved scanning engine now more fast. Added SSL check to active proxies. Added possibility to sort proxies in list new save list option. | | File Size: | 430297 | | Last Modified: | Dec 8 06:40:25 2002 |
| MD5 Checksum: | 88373ab9b5b67560121e16cb0297d618 |
|
| /// File Name: |
TunnelFinder.zip |
Description:
|
Tunnel finder is a particular proxy checker that can display information from a list of proxies by searching for proxy servers that permit the CONNECT command allowing an end user to achieve a higher level of anonymity.
| | Author: | OblivionBlack | | File Size: | 429260 | | Last Modified: | Oct 25 01:16:48 2002 |
| MD5 Checksum: | 473f676f21c52b399d99b58b496aec10 |
|
| /// File Name: |
twhttpd.tar.gz |
Description:
|
TrustWall HTTP Proxy v0.9-5 is a secure HTTP proxy which protects web servers (and web browser clients) by checking the HTTP protocol header data. The design has already put most modern web base attacks into consideration and hence can protect most web servers without very in-depth knowledge about the attacking techniques.
| | Homepage: | http://personal.ie.cuhk.edu.hk/~msng0/twhttpd/ | | Changes: | support has been added for anonymized User-Agents, as well as some minor bugfixes. | | File Size: | 83186 | | Last Modified: | Dec 8 23:00:34 2001 |
| MD5 Checksum: | 2e846f673d4e912c53fbf84d2ae5d33f |
|
| /// File Name: |
w3af-10Jun2007.tar.bz2 |
Description:
|
w3af, is a Web Application Attack and Audit Framework. The framework and the plugins are fully written in python. Each plugin will add a functionality like cross site scripting detection or SQL injection exploitation.
| | Author: | Andres Riancho | | Homepage: | http://w3af.sourceforge.net/ | | File Size: | 9673706 | | Last Modified: | Jun 12 20:10:04 2007 |
| MD5 Checksum: | d7bd1cc6c25bf2ce71270805da9633c9 |
|
| /// File Name: |
w3af-beta5.tar.bz2 |
Description:
|
w3af, is a Web Application Attack and Audit Framework. The framework and the plugins are fully written in python. Each plugin will add a functionality like cross site scripting detection or SQL injection exploitation.
| | Author: | Andres Riancho | | Homepage: | http://w3af.sourceforge.net/ | | Changes: | This version implements some really interesting features like virtual daemons and w3afAgents. | | File Size: | 10275597 | | Last Modified: | Oct 22 18:08:31 2007 |
| MD5 Checksum: | e6e662fc3e221756641b6456ad008bb6 |
|
| /// File Name: |
wbclk256.zip |
Description:
|
WebClicker v2.56 uses public proxies to create artificial banner ad clicks. Emulates complete browser HTTP transfer and can be used for banner/link exchanges and toplists as well.
| | Author: | Moritz Bartl | | Homepage: | http://www.headstrong.de | | Changes: | customizable proxy timeout, play WAV sound file when done, flashes window when done, minimizing the simple form is now possible, improved memory management and a few more bugs fixed. | | File Size: | 665743 | | Last Modified: | Feb 26 00:22:51 2002 |
| MD5 Checksum: | 146167107b4ca5dde0f49960a2050601 |
|
| /// File Name: |
WebRoot.pl |
Description:
|
WebRoot is a bruteforce directory/file scanner, which looks for files and directories on a website which might contain interesting data, but which are not referenced anywhere on the site (for example, include-files and database files located under the webroot).
| | Author: | CIRT.DK | | Homepage: | http://www.cirt.dk/tools | | File Size: | 33274 | | Last Modified: | May 2 17:29:34 2005 |
| MD5 Checksum: | 732f06410340490735aede5191f5c270 |
|
| /// File Name: |
WebRoot.txt |
Description:
|
WebRoot is a bruteforce directory/file scanner, which looks for files and directories on a website which might contain interesting data, but which are not referenced anywhere on the site (for example, include-files and database files located under the webroot).
| | Author: | CIRT.DK | | Homepage: | http://www.cirt.dk/tools | | File Size: | 48446 | | Last Modified: | Aug 14 18:27:22 2005 |
| MD5 Checksum: | 432a8f74011576549714305613cd5a3b |
|
|
|
|
|