iT邦幫忙

第 11 屆 iT 邦幫忙鐵人賽

DAY 22
0

golismero


golismero 是 Kali linux和 Parrot Security OS 內建的工具,可以使用這個工具來測試網站安全。

https://github.com/golismero/golismero


  • 操作環境 Parrot OS
  • 執行指令
golismero
  • Options:

usage: golismero.py COMMAND [TARGETS...] [--options]

  SCAN:
    Perform a vulnerability scan on the given targets. Optionally import
    results from other tools and write a report. The arguments that follow may
    be domain names, IP addresses or web pages.

  RESCAN:
    Same as SCAN, but previously run tests are repeated. If the database is
    new, this command is identical to SCAN.

  PROFILES:
    Show a list of available config profiles. This command takes no arguments.

  PLUGINS:
    Show a list of available plugins. This command takes no arguments.

  INFO:
    Show detailed information on a given plugin. The arguments that follow are
    the plugin IDs. You can use glob-style wildcards.

  REPORT:
    Write a report from an earlier scan. This command takes no arguments.
    To specify output files use the -o switch.

  IMPORT:
    Import results from other tools and optionally write a report, but don't
    scan the targets. This command takes no arguments. To specify input files
    use the -i switch.

  DUMP:
    Dump the database from an earlier scan in SQL format. This command takes no
    arguments. To specify output files use the -o switch.

  LOAD:
    Load a database dump from an earlier scan in SQL format. This command takes
    no arguments. To specify input files use the -i switch.

  UPDATE:
    Update GoLismero to the latest version. Requires Git to be installed and
    available in the PATH. This command takes no arguments.
  • 更新
golismero UPDATE

https://ithelp.ithome.com.tw/upload/images/20191017/20060971Nsk0vsa7Sz.png

  • 範例
golismero SCAN IP

https://ithelp.ithome.com.tw/upload/images/20191017/20060971OF3SKedgO6.png


上一篇
[Day 21]-dotdotpwn
下一篇
[Day 23]-joomscan
系列文
利用開源資源執行安全檢測30

尚未有邦友留言

立即登入留言