This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "OWASP VBScan Project"
From OWASP
Ali Razmjoo (talk | contribs) |
(→News and Events) |
||
(59 intermediate revisions by 2 users not shown) | |||
Line 5: | Line 5: | ||
{| style="padding: 0;margin:0;margin-top:10px;text-align:left;" |- | {| style="padding: 0;margin:0;margin-top:10px;text-align:left;" |- | ||
| valign="top" style="border-right: 1px dotted gray;padding-right:25px;" | | | valign="top" style="border-right: 1px dotted gray;padding-right:25px;" | | ||
+ | [[file:VBScan_Logo.png|right]] | ||
<div class="plainlinks"> | <div class="plainlinks"> | ||
Line 18: | Line 19: | ||
<span title="Seed on Newsvine">[[File:social-newsvine.png|16px|Seed on Newsvine|link=http://www.newsvine.com/_wine/save?popoff=1&u={{fullurle:{{FULLPAGENAME}}}}]]</span> | <span title="Seed on Newsvine">[[File:social-newsvine.png|16px|Seed on Newsvine|link=http://www.newsvine.com/_wine/save?popoff=1&u={{fullurle:{{FULLPAGENAME}}}}]]</span> | ||
</div> | </div> | ||
− | ==OWASP VBScan | + | |
− | VBScan is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analyses them. | + | [[File:joomscan_download.png|link=https://github.com/rezasp/vbscan/releases]] |
+ | |||
+ | ==OWASP VBScan Project == | ||
+ | OWASP VBScan (short for [VB]ulletin Vulnerability [Scan]ner) is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analyses them. | ||
+ | |||
==== Why VBScan ? ==== | ==== Why VBScan ? ==== | ||
If you want to do a penetration test on a vBulletin Forum, VBScan is Your best shot ever! This Project is being faster than ever and updated with the latest VBulletin vulnerabilities. | If you want to do a penetration test on a vBulletin Forum, VBScan is Your best shot ever! This Project is being faster than ever and updated with the latest VBulletin vulnerabilities. | ||
+ | |||
+ | [[File:vbscan_screenshot.jpg]] | ||
+ | |||
+ | |||
+ | ==== Popularity ==== | ||
+ | |||
+ | * ToolsWatch Annual Best Free/Open Source Security Tool Survey: | ||
+ | ** 2016 [http://www.toolswatch.org/2017/02/2016-top-security-tools-as-voted-by-toolswatch-org-readers/ 3rd] | ||
+ | |||
==Description== | ==Description== | ||
<span style="color:#ff0000"> | <span style="color:#ff0000"> | ||
− | VBScan is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analyses them. | + | OWASP VBScan (short for [VB]ulletin Vulnerability [Scan]ner) is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analyses them. |
+ | |||
+ | |||
+ | |||
+ | {| | ||
+ | |- | ||
+ | {{#ev:youtube|NGEtJoGL2yA}} | ||
+ | {{#ev:youtube|SirozqDYERA}} | ||
+ | |} | ||
==LICENSE== | ==LICENSE== | ||
Line 45: | Line 67: | ||
| valign="top" style="padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;" | | | valign="top" style="padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;" | | ||
− | == | + | == Quick Download == |
+ | [https://github.com/rezasp/vbscan Github Page.] | ||
− | [https://github.com/rezasp/vbscan | + | [Download Page.] |
+ | |||
+ | * [https://github.com/rezasp/vbscan/zipball/master .zip file.] | ||
+ | * [https://github.com/rezasp/vbscan/tarball/master .tgz file.] | ||
== Project Leader == | == Project Leader == | ||
− | |||
− | == | + | [mailto:reza.espargham@owasp.org Mohammad Reza Espargham] |
− | * [ | + | |
− | * [ | + | == Contributors & Main Developers == |
− | + | ||
+ | |||
+ | * [https://github.com/TahaDaneshnia Taha Daneshnia] | ||
+ | * [https://github.com/saturn99 saturn99] | ||
+ | |||
==Classifications== | ==Classifications== | ||
Line 76: | Line 105: | ||
== News and Events == | == News and Events == | ||
− | * [ | + | * VBScan 0.1.8 - "Self Challenge" Released |
+ | * OWASP VBScan was introduced in OFFSECONF 2017 | ||
+ | * [http://www.toolswatch.org/2017/02/2016-top-security-tools-as-voted-by-toolswatch-org-readers/ OWAPS VBScan came third in the Top Security Tools of 2016 as voted by ToolsWatch.org readers] | ||
+ | * VBScan 0.1.7.1 - "Larry Wall" Released | ||
+ | * VBScan 0.1.7 - "Larry Wall" Released | ||
+ | * OWASP VBScan has been selected for BSides/BlackHat USA 2016 | ||
+ | * VBScan 0.1.6 - "Dennis Ritchie again" Released | ||
+ | * VBScan 0.1.5 - "Dennis Ritchie" Released | ||
|} | |} | ||
Line 82: | Line 118: | ||
==Contributors== | ==Contributors== | ||
− | + | VBScan source code located in github and you could see contributors in this [https://github.com/rezasp/vbscan/graphs/contributors URL]. | |
+ | |||
+ | Please feel free to fork and submit your pull request to develop VBScan Project together. | ||
− | + | ==Leader== | |
− | * [https://www.owasp.org/index.php/User: | + | * [https://www.owasp.org/index.php/User:rezasp Mohammad Reza Espargham] |
− | |||
− | |||
= Road Map and Getting Involved = | = Road Map and Getting Involved = | ||
− | This project is going to be the best VBulletin | + | This project is going to be the best VBulletin scanner, At the end We could have a forum cms penetration tester which is updated with the last vulnerabilities. |
− | + | ==Roadmap== | |
− | |||
− | |||
− | |||
− | |||
− | + | This Project was created to be a VBScanner which already it is and now need to be best with some tasks: | |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | + | * Optimize software core to be fast and easy to develop | |
− | + | * make it module base and create libraries for developers | |
− | * | + | * Support all OS |
− | * | + | * Be update with latest exploits. |
− | * | + | * Create documents for newbie users |
− | + | * Keep testing and fix bugs! | |
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
===Feedback=== | ===Feedback=== | ||
− | Please | + | Please submit your feedbacks and issues in [https://github.com/rezasp/vbscan/issues HERE]. |
<ul> | <ul> | ||
<li>What do like?</li> | <li>What do like?</li> | ||
<li>What don't you like?</li> | <li>What don't you like?</li> | ||
<li>What features would you like to see prioritized on the roadmap?</li> | <li>What features would you like to see prioritized on the roadmap?</li> | ||
+ | <li>Do you have any problem with tool?</li> | ||
+ | <li>Do you need any exploit to be add?</li> | ||
</ul> | </ul> | ||
=Minimum Viable Product= | =Minimum Viable Product= | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | + | VBScan Could be improved by adding more module and fixing core to make a better and faster threads, right now VBScan is including more than 70 modules to check bugs, vulnerabilities in perl language. To be more update and check exploits please check the [https://github.com/rezasp/vbscan github page]. | |
+ | |||
+ | =Project About= | ||
+ | |||
+ | |||
+ | {{:Projects/OWASP_VBScan_Project}} | ||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
− | |||
+ | <!-- DO NOT ALTER OR REMOVE THE TEXT ON NEXT LINE --> | ||
__NOTOC__ <headertabs /> | __NOTOC__ <headertabs /> | ||
− | [[Category:OWASP Project]] [[Category:OWASP_Builders]] [[Category:OWASP_Defenders]] [[Category:OWASP_Tool]] | + | [[Category:OWASP Project]] [[Category:OWASP_Builders]] [[Category:OWASP_Defenders]] [[Category:OWASP_Document]] [[Category:OWASP_Tool]] [[Category:OWASP_Download]] |