WebApp Sec mailing list archives

Re: Web Application Fingerprinter


From: Nikhil Wagholikar <visitnikhil () gmail com>
Date: Fri, 21 Jan 2011 12:40:50 +0530

Hi Elton,

You may have a look at WAFP.

WAFP - Web Application Finger Printing Tool:

WAFP is written in ruby using a SQLite3 DB. WAFP fetches the files
given by the Finger Prints from a webserver and checks if the
checksums of those files are matching to the given checksums from the
Finger Prints. This way it is able to detect the detailed version and
even the build number of a Web Application.

More Info: http://www.darknet.org.uk/2010/01/wafp-web-application-finger-printing-tool/

Hope this helps!

---
Nikhil Wagholikar

2011/1/20 elton Sheffield <qawsedr1234 () hotmail co uk>

Hi Thanks for the reply.  Sorry I didn't make myself clear at all.  I mean to say that I need to know which apps my 
users, in my environment are using, so that I can address any issues with unpatched services etc.

Thanks Anyway

MSR.

----------------------------------------
From: bsw_m () mail ru
To: qawsedr1234 () hotmail co uk
Subject: Re: Web Application Fingerprinter
Date: Thu, 20 Jan 2011 17:57:48 +0300

Hello!
I'm use Drupal6.20 for my home page/blog.


Thu, 20 Jan 2011 14:10:05 +0000 письмо от elton Sheffield :




Hey All



I need to discover which web apps users are running. So if you're using
drupal,
or confluence etc I want to know which version you have. Any
recommendations for open source apps?



Cheers



MSR




This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now!
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------




This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now!
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------




This list is sponsored by Cenzic
--------------------------------------
Let Us Hack You. Before Hackers Do!
It's Finally Here - The Cenzic Website HealthCheck. FREE.
Request Yours Now!
http://www.cenzic.com/2009HClaunch_Securityfocus
--------------------------------------


Current thread: