ScanT3r是一款功能强大的Web安全扫描工具,该工具支持检测下列漏洞:
成都创新互联公司主要从事成都网站设计、成都网站制作、外贸网站建设、网页设计、企业做网站、公司建网站等业务。立足成都服务开化,10多年网站建设经验,价格优惠、服务专业,欢迎来电咨询建站服务:18980820575
注意:ScanT3r仅支持Python > 3.6环境。
首先,打开命令行终端窗口。
输入并运行下列命令:
- $ git clone https://github.com/knassar702/scant3r
- $ cd scant3r
- $ python3 -m pip install -r requirements.txt
- $ chmod +x scant3r
首先,下载Termux App:https://play.google.com/store/apps/details?id=com.termux&hl=en
打开Termux应用程序,然后输入并运行下列命令:
- $ pkg install python -y
- $ pkg install git -y
- $ git clone https://github.com/knassar702/scant3r
- $ cd scant3r
- $ python3 -m pip install -r requirements.txt
- $ chmod +x scant3r
首先,下载并安装 Python3 环境,然后打开命令行终端窗口,输入并运行下列命令:
- $ python3 -m pip install -r requirements.txt
- Options:
- -h, --help | Show help message and exit
- --version | Show program's version number and exit
- -u URL, --url=URL | Target URL (e.g."http://www.target.com/vuln.php?id=1")
- --data=DATA | Data string to be sent through POST (e.g. "id=1")
- --list=FILE | Get All Urls from List
- --threads | Max number of concurrent HTTP(s) requests (default 10)
- --timeout | Seconds to wait before timeout connection
- --proxy | Start The Connection with http(s) proxy
- --cookies | HTTP Cookie header value (e.g. "PHPSESSID=a8d127e..")
- --encode | How Many encode the payload (default 1)
- --allow-redirect | Allow the main redirect
- --user-agent | add custom user-agent
- --scan-headers | Try to inject payloads in headers not parameters (user-agent,referrer)
- --skip-headers | Skip The Headers scanning processe
- --sleep | Sent one request after some Seconds
- --module | add custom module (e.g. "google.py")
- --debug | Debugging Mood
- $ python3 scant3r -u 'http://localhost/dvwa/vulnerabilities/exec/' --data='ip=localhost&Submit=Submit'
$ python3 scant3r -u 'http://localhost/?l=2' --cookies='user=admin&id=1'
$ python3 scant3r -u 'http://localhost/?l=13' --timeout=1
$ python3 scant3r -u 'http://localhost/?l=13' --allow-redirect
$ python3 scant3r -u 'http://localhost/?l=13' --sleep=2
$ python3 scant3r -u 'http://localhost/?l=13' --debug
$ python3 scant3r -u 'http://localhost/?l=13' --scan-headers
$ python3 scant3r -u 'http://localhost/?l=13' --skip-headers
$ python3 scant3r -u 'http://localhost/?l=13' --user-agent='CustomUseragent(v2)'
$ python3 scant3r -u 'http://localhost/?l=13' --encode=2
$ python3 scant3r -u 'http://localhost/?l=13' --proxy='http://localhost:8080'
$ python3 scant3r -u 'http://localhost/?l=13' --module=dumper.py
$ python3 scant3r --list urls.txt --threads=40
- $ ./scant3r -u 'http://test.vulnweb.com/search.php?test=query' --data='searchFor=scant3r&goButton=go'
- $ ./scant3r -u 'http://test.vulnweb.com/artists.php?artist=1'
- $ ./scant3r -u 'https://menacoderrr.pythonanywhere.com/'
ScanT3r:https://github.com/knassar702/scant3r
分享文章:ScanT3r:一款功能强大的Web安全扫描工具
网站URL:http://www.shufengxianlan.com/qtweb/news44/501844.html
网站建设、网络推广公司-创新互联,是专注品牌与效果的网站制作,网络营销seo公司;服务项目有等
声明:本网站发布的内容(图片、视频和文字)以用户投稿、用户转载内容为主,如果涉及侵权请尽快告知,我们将会在第一时间删除。文章观点不代表本网站立场,如需处理请联系客服。电话:028-86922220;邮箱:631063699@qq.com。内容未经允许不得转载,或转载时需注明来源: 创新互联