# 鬼仔:之前有收藏这个地址,今天又在包子那里看到,包子给起了一个名字,叫 Web安全工具大汇聚 。
原文地址 OWASP的wiki里
LiveCDs
Monday, January 29, 2007 4:02 PM 828569600 AOC_Labrat-ALPHA-0010.iso – http://www.packetfocus.com/hackos/
DVL (Damn Vulnerable Linux) – http://www.damnvulnerablelinux.org/
阅读全文 »
Tags: AJAX,
Cookie,
Database,
Fuzz,
HTTP,
Scanner,
SQL Injection,
Web,
XSS,
工具收集
ha.ckers.org上发出来的,原地址:http://ha.ckers.org/slowloris/
http://ha.ckers.org/blog/20090617/slowloris-http-dos/
下载地址:slowloris.pl
Getting started: perldoc slowloris.pl
milw0rm上的地址
Multiple HTTP Server Low Bandwidth Denial of Service (slowloris.pl):
http://milw0rm.com/exploits/8976
阅读全文 »
Tags: Apache,
DoS,
HTTP,
Slowloris,
Squid
Trace注:tarasco出的http扫描软件,这次发行的版本带了fscan_gui。
Introduction
We have been developing Fast HTTP Vulnerability Scanner as an alternative for reviewing http devices over the network. This tool is able to check the security of your routers by identifying the login entry point and checking more than 160 default passwords.
Make pentests easier with this multhreading scanner and get nice html reports.
阅读全文 »
Tags: HTTP,
Scanner,
Vulnerability
中文:HTTP协议调试器
英文:Http/Https Protocol Debuger
程序:HttpDebug.exe >>>立即下载
版本:V1.02
日期:2002/06/29
大小:152K
运行:Windows 9x/Me/NT/2000/XP
版权:电猫工作室(EMouze)
主页:www.emouze.com
联系:[email protected]
备注:本软件为绿色软件,只有一个执行文件,拷贝到任意一个目录下执行即可。
功能特点:
1.支持HTTP和HTTPS(SSL加密)网络协议的跟踪和调试。
2.可以查看到HTTP/HTTPS协议连接的详细过程和返回结果。
阅读全文 »
Tags: HTTP
鬼仔注:perl写的,文章末尾有界面截图。
来源:RootShell Security Group
Custom_HTTP_Request_sender.txt
截图1
截图2
Tags: HTTP