BlackWidow OWASP web application and vulnerability scanner

BlackWidow is a python-based web application for collecting subdomains, URLs, dynamic parameters, email addresses, and phone numbers from a web site.

This project also includes the Inject-X fuzzer for scanning dynamic URLs and OWASP vulnerabilities.

Specifications

  • Automatically collect all URLs from one site
  • Automatically collect all dynamic URLs and parameters from a site
  • Automatically collect all subdomains from one site
  • Automatically collect all phone numbers from one site
  • Automatically collect all email addresses from one site
  • Automatically collect all form URLs from one site
  • Automatic scan / fuzz for common OWASP TOP vulnerabilities
  • Automatically saves everything in sorted text files

Installation

    git clone https://github.com/1N3/BlackWidow.git cp blackwidow / usr / bin / blackwidow cp injectx.py /usr/bin/injectx.py pip install -r requirements.txt

Use

u https://target.com - crawl target.com with 3 levels of depth. -d target.com -l 5 - crawl the domain: target.com with 5 levels of depth. -d target.com -l 5 -sy - crawl the domain: target.com with 5 levels of depth and fuzz all unique parameters for OWASP vulnerabilities.

Application snapshots

Videos:

https://www.youtube.com/watch?v=mch8ht47taY&feature=emb_title

 

You can download the program from here.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.086 registrants.

Written by Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).