BlackWidow OWASP web application and vulnerability scanner

The is a python based web application for subdomains, URLs, dynamic parameters, email addresses and phone numbers from a website.

This project also includes the -X fuzzer for scanning dynamic URLs and for OWASP vulnerabilities.

Specifications

  • Automatically collect all URLs from one site
  • Automatically collect all dynamic URLs and parameters from a site
  • Automatically collect all subdomains from one site
  • Automatically collect all phone numbers from one site
  • Automatically collect all email addresses from one site
  • Automatically collect all form URLs from one site
  • Automatic scan / fuzz for common OWASP TOP vulnerabilities
  • Automatically saves all data in sorted text files

Installation

    git clone https://github.com/1N3/BlackWidow.git cp blackwidow / usr / bin / blackwidow cp injectx.py /usr/bin/injectx.py pip install -r requirements.txt

Use

u https://target.com - crawl target.com with 3 levels of depth. -d target.com -l 5 - crawl the domain: target.com with 5 levels of depth. -d target.com -l 5 -sy - crawl the domain: target.com with 5 levels of depth and fuzz all unique parameters for OWASP vulnerabilities.

Application snapshots

Video guide

https://www.youtube.com/watch?v=mch8ht47taY&feature=emb_title

 

You can download the program from here.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).