Security News

News: Change in Focus

News: Twitter attacker had proper credentials

News: PhotoDNA scans images for child abuse

News: Conficker data highlights infected networks

News: Monster botnet held 800,000 peoples details

News: Google: no timetable on China talks

News: Latvian hacker tweets hard on banking whistle

News: MS uses court order to take out Waledac botnet

External Links

Extended Scanner

ExtendedScanner is a Ruby port of the Perl version of ExtendedScanner presented in Ch 9 of Network Security Tools by Justin Clarke et al. Refer to www.oreilly.com/catalog/networkst/ for the sample chapter and Perl source code.

The scanner is capable of parsing a Burp log file (Refer to portswigger.net/proxy/) and discovering the following web application vulnerabilities:

The extended scanner has intelligent capabilities to perform enumeration and exploits on discovered sql injection points. The following information is enumerated:

The following http components are also handled:

Information

Version: 0.3
Release Date: November 4, 2007
License: GPL v2
MD5 Sum: 106a3ccf1a8e4de3e76eeeca69e000be extendedscanner.tar.gz

Documentation

Library interfaces can be found here

Download

Download this tool now