web应用程序审计工具 - Lilith
发布:wpulog | 发布时间: 2011年9月23日Lilith的基本功能是一个蜘蛛、页面分析模块、超链接跟随和不同平台下不同意义的特殊字符注入。Lilith的主要特点:
- got rid of many many false positives (that’s good)
- when SQL error is found, it now goes onto next var
- improved (i hope) scanning engine
- (anti) coldfusion support
- better cookie handling and cookie tampering
- omitted perl HTML::Form limitation
- better verbose output
- extensive logging
- detects directory indexing
- recursive URL dissection
- cleaned up this pasta code
工具下载:http://michaelhendrickx.com/wp-content/uploads/2008/11/lilith-06atar.gz
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Lilith basic function is to spider and analyses pages, following hyperlinks, injecting special characters that have a special meaning to any underlying platform.
出自:BugZone - http://www.pulog.org/tools/2248/Lilith/ 转载必须注明!
发表评论
◎欢迎参与讨论,请在这里发表您的看法、交流您的观点。



