🕸 Pentesting Websites 🕸
🎯 SqlInjection:
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
🤜 Pentest Framework
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
🌐 Webapp
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
▪️
[Link]
💥 Web exploitation
▪️
[Link]
▪️
WPScan ( [Link] )
▪️
Black box WordPress vulnerability scanner ( [Link] )
▪️
[Link]
▪️
SQLmap - Automatic SQL injection and database takeover tool ( [Link] )
▪️
weevely3 - Weaponized web shell ( [Link] )
▪️
Wappalyzer - Wappalyzer uncovers the technologies used on websites
( [Link] )
▪️
cms-explorer - CMS Explorer is designed to reveal the the specific modules,
plugins, components and themes that various CMS driven web sites are running.
( [Link] )
▪️
joomscan - Joomla CMS scanner ( [Link] )
▪️
WhatWeb - Website Fingerprinter ( [Link] )
▪️
BlindElephant - Web Application Fingerprinter
( [Link] )
🖖 Vulnerability Databases
▪️NVD - US National Vulnerability Database
▪️
CERT - US Computer Emergency Readiness Team
▪️
OSVDB - Open Sourced Vulnerability Database
▪️
Bugtraq - Symantec SecurityFocus
▪️
Exploit-DB - Offensive Security Exploit Database
▪️
Fulldisclosure - Full Disclosure Mailing List
▪️
MS Bulletin - Microsoft Security Bulletin
▪️
MS Advisory - Microsoft Security Advisories
▪️
Inj3ct0r - Inj3ct0r Exploit Database
▪️
Packet Storm - Packet Storm Global Security Resource
▪️
SecuriTeam - Securiteam Vulnerability Information
▪️
CXSecurity - CSSecurity Bugtraq List
▪️
Vulnerability Laboratory - Vulnerability Research Laboratory
▪️
ZDI - Zero Day Initiative