Browsing projects by Tag(s)

Select a tag to browse associated projects and drill deeper into the tag cloud.

Showing page 1 of 1

The Metasploit Framework is a development platform for creating security tools and exploits. The framework is used by network security professionals to perform penetration tests, system administrators to verify patch installations, product vendors to perform regression testing, and security ... [More] researchers world-wide. The framework is written in the Ruby programming language and includes components written in C and assembler. [Less]

4.57895
   
  0 reviews  |  46 users  |  827,214 lines of code  |  151 current contributors  |  Analyzed 4 days ago
 
 

PHPIDS (PHP-Intrusion Detection System) is a simple to use, well structured, fast and state-of-the-art security layer for your PHP based web application. The IDS neither strips, sanitizes nor filters any malicious input, it simply recognizes when an attacker tries to break your site and reacts in ... [More] exactly the way you want it to. Based on a set of approved and heavily tested filter rules any attack is given a numerical impact rating which makes it easy to decide what kind of action should follow the hacking attempt. This could range from simple logging to sending out an emergency mail to the development team, displaying a warning message for the attacker or even ending the user’s session. [Less]

4.4
   
  0 reviews  |  14 users  |  75,169 lines of code  |  9 current contributors  |  Analyzed 9 days ago
 
 

Ronin is a Ruby platform for exploit development and security research. Ronin allows for the rapid development and distribution of code, exploits or payloads over many common Source-Code-Management (SCM) systems.

0
 
  0 reviews  |  2 users  |  32,086 lines of code  |  2 current contributors  |  Analyzed about 10 hours ago
 
 

Panoptic is an open source penetration testing tool that automates the process of search and retrieval of content for common log and config files through LFI vulnerability.

5.0
 
  0 reviews  |  1 user  |  2,196 lines of code  |  2 current contributors  |  Analyzed 2 days ago
 
 

SecureImage is a image validator that can be used for validating image files on upload systems (such as photo galleries,forums,etc ..) against the threads for XSS issues with IE and LFI attacks. For Internet Explorer; you can succesfully launch XSS attacks with malformed image files because of ... [More] it's mime-type detection algorithm. Also the image files can contain some server-side payloads that can be used on exploiting of LFI vulnerabilities. This image validator class; first checks for if the image is valid, after that it cleans the EXIF section. It uses GD for these image operations and also doesn't leave the GD banner at the EXIF. [Less]

0
 
  0 reviews  |  0 users  |  0 current contributors  |  Analyzed about 15 hours ago
 
 

It's a small library project for security of image handling on web applications such as photo galleries, forums, upload systems etc. The project links of PHP, JAVA and .NET implementations of secureimage library can be reached from this project site. JAVA SecureImage .NET SecureImage PHP SecureImage

0
 
  0 reviews  |  0 users  |  0 current contributors  |  Analyzed 5 days ago
 
 

Local File Inclusion Scanner by cAs-> Searchstring One: $page = $_GET[page]; -> Searchstring Two: include($page); Created September 2k8 Changelog: Beta 1: Searching for: $_GET[var] include($var) Beta 2: Searching for: $var

0
 
  0 reviews  |  0 users  |  0 current contributors  |  Analyzed 9 days ago
 
 

fimap is a little python tool which can find, prepare, audit, exploit and even google automaticly for local and remote file inclusion bugs in webapps. fimap should be something like sqlmap just for LFI/RFI bugs instead of sql injection. It's currently under heavy development but it's usable. ... [More] The goal of fimap is to improve the quality and security of your website. Do not use this tool on servers where you don't have permission to pentest! I am dead serious. [Less]

0
 
  0 reviews  |  0 users  |  7,293 lines of code  |  3 current contributors  |  Analyzed 2 days ago
 
 

iScan is a open source Java (therefore portable) web vulnerability scanner, intended to be a valid counterpart of its proprietary competitors .

0
 
  0 reviews  |  0 users  |  0 current contributors  |  Analyzed 9 days ago
 
 
 
 

Creative Commons License Copyright © 2013 Black Duck Software, Inc. and its contributors, Some Rights Reserved. Unless otherwise marked, this work is licensed under a Creative Commons Attribution 3.0 Unported License . Ohloh ® and the Ohloh logo are trademarks of Black Duck Software, Inc. in the United States and/or other jurisdictions. All other trademarks are the property of their respective holders.