<rt id="bn8ez"></rt>
<label id="bn8ez"></label>

  • <span id="bn8ez"></span>

    <label id="bn8ez"><meter id="bn8ez"></meter></label>

    大漠駝鈴

    置身浩瀚的沙漠,方向最為重要,希望此blog能向大漠駝鈴一樣,給我方向和指引。
    Java,Php,Shell,Python,服務器運維,大數據,SEO, 網站開發、運維,云服務技術支持,IM服務供應商, FreeSwitch搭建,技術支持等. 技術討論QQ群:428622099
    隨筆 - 238, 文章 - 3, 評論 - 117, 引用 - 0
    數據加載中……

    WEB掃描工具之-Nikto

    Basic Testing

    The most basic Nikto scan requires simply a host to target, since port 80 is assumed if none is specified. The host can either be an IP or a hostname of a machine, and is specified using the -h (-host) option. This will scan the IP 192.168.0.1 on TCP port 80:

    perl nikto.pl -h 192.168.0.1

    To check on a different port, specify the port number with the -p (-port) option. This will scan the IP 192.168.0.1 on TCP port 443:

    perl nikto.pl -h 192.168.0.1 -p 443

    Hosts, ports and protocols may also be specified by using a full URL syntax, and it will be scanned:

    perl nikto.pl -h https://192.168.0.1:443/

    There is no need to specify that port 443 may be SSL, as Nikto will first test regular HTTP and if that fails, HTTPS. If you are sure it is an SSL server, specifying -s (-ssl) will speed up the test.

    perl nikto.pl -h 192.168.0.1 -p 443 -ssl

    More complex tests can be performed using the -mutate parameter, as detailed later. This can produce extra tests, some of which may be provided with extra parameters through the -mutate-options parameter. For example, using -mutate 3, with or without a file attempts to brute force usernames if the web server allows ~user URIs:

    perl nikto.pl -h 192.168.0.1 -mutate 3 -mutate-options user-list.txt

    Multiple Port Testing

    Nikto can scan multiple ports in the same scanning session. To test more than one port on the same host, specify the list of ports in the -p (-port) option. Ports can be specified as a range (i.e., 80-90), or as a comma-delimited list, (i.e., 80,88,90). This will scan the host on ports 80, 88 and 443.

    perl nikto.pl -h 192.168.0.1 -p 80,88,443

    Multiple Host Testing

    Nikto support scanning multiple hosts in the same session via a text file of host names or IPs. Instead of giving a host name or IP for the -h (-host) option, a file name can be given. A file of hosts must be formatted as one host per line, with the port number(s) at the end of each line. Ports can be separated from the host and other ports via a colon or a comma. If no port is specified, port 80 is assumed.

    This is an example of a valid hosts file:

    Example 3.1. Valid Hosts File

    192.168.0.1:80
    http://192.168.0.1:8080/
    192.168.0.3


    A host file may also be an nmap output in "greppable" format (i.e. from the output from -oG).

    A file may be passed to Nikto through stdout/stdin using a "-" as the filename. For example:

    nmap -p80 192.168.0.0/24 -oG - | nikto.pl -h -

    Using a Proxy

    If the machine running Nikto only has access to the target host (or update server) via an HTTP proxy, the test can still be performed. Set the PROXY* variables (as described in section 4), then execute Nikto with the -u (-useproxy) command. All connections will be relayed through the HTTP proxy specified in the configuration file.

    perl nikto.pl -h 192.168.0.1 -p 80 -u

    Updating

    Nikto can be automatically updated, assuming you have Internet connectivity from the host Nikto is installed on. To update to the latest plugins and databases, simply run Nikto with the -update command.


    perl nikto.pl -update

    If updates are required, you will see a list of the files downloaded:

     perl nikto.pl -update
    + Retrieving 'nikto_core.plugin'
    + Retrieving 'CHANGES.txt'

    posted on 2010-03-17 16:22 草原上的駱駝 閱讀(1029) 評論(0)  編輯  收藏 所屬分類: Linux

    主站蜘蛛池模板: 亚洲成?Ⅴ人在线观看无码| 99视频有精品视频免费观看| 无限动漫网在线观看免费| 久久青草91免费观看| 亚洲日韩一区精品射精| 亚洲a级成人片在线观看| 亚洲一区二区三区在线网站| 激情97综合亚洲色婷婷五| 亚洲一级Av无码毛片久久精品| 久久久久亚洲精品中文字幕 | 人妻无码久久一区二区三区免费 | 国产成人亚洲精品播放器下载| 国产成人高清亚洲一区91| 成年免费大片黄在线观看com| 久久九九久精品国产免费直播| baoyu777永久免费视频| 99re在线免费视频| 无码区日韩特区永久免费系列 | 国产大片线上免费看| 亚洲国产精品成人| 国产亚洲无线码一区二区| 久久精品国产亚洲AV嫖农村妇女| 亚洲一区在线视频| 亚洲av无码成人精品区一本二本| 亚洲第一永久在线观看| 亚洲一区精彩视频| 无码一区二区三区亚洲人妻| 一级成人a做片免费| 羞羞视频免费网站含羞草| 亚洲日本成本人观看| 免费一级做a爰片久久毛片潮| a色毛片免费视频| xxxx日本免费| 免费在线看片网站| 亚洲AV无码一区二区乱孑伦AS| 亚洲乱码一二三四区麻豆| 特级aa**毛片免费观看| 久久久久久久岛国免费播放| 青青在线久青草免费观看| 亚洲AV无码乱码在线观看性色扶| 久久青草亚洲AV无码麻豆|