ClsHack:Computer Security Blog    

Maxisploit Scanner : Scanner SQL injection XSS, Admin finder && shared hosting

Saturday, April 28th, 2012

On Windows, one of the best programs is to identify vulnerabilities Acunetix :)
It’ also recently created Maxisploit Scanner a scanner that can identify SQL injection, xss brutaforce of administrative boards and all hosts on the same server.
As you understand Maxisploit Scanner is for windows but it works well with wine.

From the official website we read the following description:
(more…)

[XSS] Take a ScreenShots :D

Thursday, April 19th, 2012

With the development of browser you can do more things such as, create a screenshots of a web page.
The normal use of a xss Phishing is to do or steal identities.
(more…)

Rips 0.53: PHP source code scanner

Tuesday, March 20th, 2012

RIPS, is upgraded to version 0.53 :)
RIPS is written in php and vulnerabilities in our search through a static analysis of source code.

RIPS, be detected through the source code of a PHP application vulnerabilities.
From the official website:

RIPS is a static source code analyser for vulnerabilities in PHP webapplications.

To make a source code analysis tools are different, here's an article about:
http://www.clshack.com/tools-for-php-code-review.html
(more…)

[WordPress]Released WP-SENTINEL 2.0

Thursday, February 2nd, 2012

Evil socket has released version 2.0 WP-SENTINEL a plugin for wordpress, can protect your blog against attack crackers, lamer, black hats, h4x0r, etc. also used by some of the blog nasa.

In the version 2.0 have been changed several things:
(more…)

[How-To]XSSer automatic tool for pentesting XSS

Monday, January 9th, 2012

XSSer is upgraded to version 1.6 :)

From the official website:

Cross Site “Scripter” is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications.It contains several options to try to bypass certain filters, and various special techniques of code injection.

This version has been added to bypass filters also phpids, have been fixed some bugs and improved performance :)

In backbox or other debian based distribution can be made by the installazzione deb package, otherwise instalalre xsser is very simple :)
Download the latest version by typing svn:
(more…)