EVGA

Helpful ReplyWhat should I use for pentesting? (software question)

Author
Karate Kid
New Member
  • Total Posts : 63
  • Reward points : 0
  • Joined: 2015/06/18 16:49:27
  • Status: offline
  • Ribbons : 0
2015/07/19 12:58:51 (permalink)
When I'm brute testing my website what should I use to do that. "burpsuite 1.6.1" or "TCHHydra"
post edited by Karate Kid - 2015/07/19 12:59:59
#1
XrayMan
Insert Custom Title Here
  • Total Posts : 73000
  • Reward points : 0
  • Joined: 2006/12/14 22:10:06
  • Location: Santa Clarita, Ca.
  • Status: offline
  • Ribbons : 115
Re: What should I use for pentesting? (software question) 2015/07/19 14:57:27 (permalink)
 
Moving to General Software.

            My Affiliate Code: 8WEQVXMCJL
 
        Associate Code: VHKH33QN4W77V6A
 
             
 
 
                  
 
 
 
          
 
   
 
           
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 



 
 
 
 
 
 &nbsp
#2
Fiius
CLASSIFIED Member
  • Total Posts : 2825
  • Reward points : 0
  • Joined: 2007/03/17 23:33:33
  • Location: LV, NV, USA
  • Status: offline
  • Ribbons : 25
Re: What should I use for pentesting? (software question) 2015/07/20 09:12:30 (permalink) ☄ Helpfulby Karate Kid 2015/12/04 19:06:34
Brag about it on 4chan and offer a challenge - if they can't get in, no one can!
In all seriousness I am not a security expert, so no useful opinions.  You know the drill - pick settings that slow attackers down as much as possible, trust no one, and encrypt (& salt) everything.
 
~Fus

"Abyss v2"
| Gigabyte GA-Z77MX-D3H | Core i5 3570k w/ XSPC Raystorm Waterblock | Corsair AX-650 |
| 32GB (4x8GB) G.Skill RipJaws X PC3-1600 10-10-10-30 (BXL) |
| EVGA GTX 670 w/ Heatkiller LT 13105 + Backplate | Crucial M4 240GB SSD | 2x HGST 4TB |
| Fractal Design Arc Mini | 2x PULL AP-15s on Swiftech MCR240 | D5 w/ Koolance COV-PMP450A Top |
| Win7 x64 | 2x Dell UltraSharp 2408WFPb | Dell UltraSharp 2407 WFPb |
#3
James_L
CLASSIFIED Member
  • Total Posts : 4336
  • Reward points : 0
  • Joined: 2009/07/29 12:27:56
  • Status: offline
  • Ribbons : 46
Re: What should I use for pentesting? (software question) 2015/07/23 06:43:41 (permalink)
If you are looking for testing software you can always setup a metasploit server and utilize the robust scripts there. As a set of tools each particular tester will have their favorites. I generally use that, Nessus and Kali Linux for most of the general tools. Other items are usually hit/miss depending on the site itself.
 
Please be advised: not all software is easy/appropriate for testing a site. Most of the results need to be understood as to the vulnerability. Use caution when utilizing these tools as they can lead to unexpected results on servers or other systems.

 

#4
Karate Kid
New Member
  • Total Posts : 63
  • Reward points : 0
  • Joined: 2015/06/18 16:49:27
  • Status: offline
  • Ribbons : 0
Re: What should I use for pentesting? (software question) 2015/08/26 11:54:42 (permalink)
Or basic python script :D
#5
houkom
FTW Member
  • Total Posts : 1283
  • Reward points : 0
  • Joined: 2007/09/13 13:49:52
  • Location: 01101000011011110110110101100101
  • Status: offline
  • Ribbons : 4
Re: What should I use for pentesting? (software question) 2015/09/03 01:14:11 (permalink)
Check out Kali Linux. Penetration testing version of Linux. Has a PLETHORA of penetration/hacking tools you can play around with to test your hardening abilities.

13900k | 64GB Trident Z5 6400mhz | MSI Z790 CARBON WIFI | MSI RTX 4090 SUPRIM X |  2TB Sabrent Rocket | 1TB Samsung 970 Evo Plus NVMe | Corsair AX1200

 

 
#6
Jump to:
  • Back to Mobile