Difference between revisions of "Category:Penetration Testing Tools"

From OWASP
Jump to: navigation, search
(HTTP Traffic Monitoring)
Line 6: Line 6:
  
 
=== Information Gathering Tools ===
 
=== Information Gathering Tools ===
*Spiders, Robots, and Crawlers
+
*'''Fingerprinting'''
*Search Engine Discovery / Reconnaissance
+
 
*Fingerprinting
+
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://net-square.com/httprint/index.shtml httprint]}}
 +
{{OWASP Tool Info || tool_name = [http://www.computec.ch/projekte/httprecon/ httprecon]}}
 +
{{OWASP Tool Info || tool_name = [http://www.netcraft.com Netcraft]}}
 +
|}
  
  
 
=== Configuration Management Testing Tools ===
 
=== Configuration Management Testing Tools ===
*SSL Testing
+
*'''SSL Testing'''
  
 +
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://www.openssl.org/ OpenSSL]}}
 +
{{OWASP Tool Info || tool_name = [http://www.foundstone.com/us/resources/proddesc/ssldigger.htm SSL Digger]}}
 +
|}
  
=== Authentication Testing Tools ===
+
*''' DB Listener Testing'''
*Password Brute Force Testing
+
  
 +
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://www.jammed.com/%7Ejwa/hacks/security/tnscmd/tnscmd-doc.html TNS Listener]}}
 +
{{OWASP Tool Info || tool_name = [http://www.quest.com/toad Toad]}}
 +
|}
  
=== Authorization Testing Tools ===
+
 
 +
=== Authentication Testing Tools ===
 +
*'''Password Brute Force Testing'''
 +
 
 +
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://portswigger.net/intruder/ Burp Intruder]}}
 +
{{OWASP Tool Info || tool_name = [http://www.hoobie.net/brutus/ Brutus]}}
 +
{{OWASP Tool Info || tool_name = [http://www.openwall.com/john/ John the Ripper]}}
 +
{{OWASP Tool Info || tool_name = [http://ophcrack.sourceforge.net/ Ophcrack]}}
 +
{{OWASP Tool Info || tool_name = [http://www.thc.org/thc-hydra/ THC Hydra]}}
 +
|}
  
  
 
=== Session Management Testing Tools ===
 
=== Session Management Testing Tools ===
 +
 +
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://www.foundstone.com/us/resources/proddesc/cookiedigger.htm CookieDigger]}}
 +
{{OWASP Tool Info || tool_name = [http://www.bayden.com/TamperIE/ TamperIE]}}
 +
{{OWASP Tool Info || tool_name = [https://addons.mozilla.org/en-US/firefox/addon/966 Tamper Data]}}
 +
|}
 +
 +
 +
=== Authorization Testing Tools ===
  
  
 
=== Data Validation Testing Tools ===
 
=== Data Validation Testing Tools ===
*Fuzzers
+
*'''Fuzzers'''
*SQL Injection Testing
+
*'''SQL Injection Testing'''
*XSS Testing
+
*'''XSS Testing'''
*Buffer Overflow Testing
+
*'''Buffer Overflow Testing'''
  
  
Line 51: Line 81:
  
 
*'''Sniffers'''
 
*'''Sniffers'''
 +
 +
 +
=== Encoders / Decoders ===
 +
*'''CAPTCHA Decoders'''
 +
 +
{{:Template:OWASP Tool Headings}}
 +
{{OWASP Tool Info || tool_name = [http://caca.zoy.org/wiki/PWNtcha PWNtcha]}}
 +
{{OWASP Tool Info || tool_name = [http://churchturing.org/captcha-dist/ The Captcha Breaker]}}
 +
|}

Revision as of 18:56, 10 October 2009

This article is a stub. You can help OWASP by expanding it or discussing it on its Talk page.

Contents

Penetration Testing Tools

Information Gathering Tools

  • Fingerprinting
Name Owner Licence Platforms
httprint


httprecon


Netcraft


Configuration Management Testing Tools

  • SSL Testing
Name Owner Licence Platforms
OpenSSL


SSL Digger
  • DB Listener Testing
Name Owner Licence Platforms
TNS Listener


Toad


Authentication Testing Tools

  • Password Brute Force Testing
Name Owner Licence Platforms
Burp Intruder


Brutus


John the Ripper


Ophcrack


THC Hydra


Session Management Testing Tools

Name Owner Licence Platforms
CookieDigger


TamperIE


Tamper Data


Authorization Testing Tools

Data Validation Testing Tools

  • Fuzzers
  • SQL Injection Testing
  • XSS Testing
  • Buffer Overflow Testing


Denial of Service Testing Tools

Web Services Testing Tools

Ajax Testing Tools

HTTP Traffic Monitoring

  • Web Proxies
Name Owner Licence Platforms
Burp Suite


Paros Proxy


Webscarab
  • Sniffers


Encoders / Decoders

  • CAPTCHA Decoders
Name Owner Licence Platforms
PWNtcha


The Captcha Breaker

This category currently contains no pages or media.