Discovery is probably one of the most important portions of a penetration test. It is where we try to determine what potential flaws exist in the target. The scripts found in this section will focus on finding these flaws so that they can be used in the exploitation phase of the penetration test. Some examples would be user name harvesting or scanning for routers exposed to the network.


Checking for SSL Vulnerabilities on the Command Line

A script to automate starting Nessus

SSL Tests - v2, weak ciphers, MD5, Renegotiation

Bash Web Requester

Target URL Crawler

Parse Nessus 2 files into MySQL db

discovery.txt · Last modified: 2010/08/07 17:44 by Robin Wood