Tetstack
219 subscribers
920 photos
28 videos
35 files
127 links
Download Telegram
But you can help me if you have a vps
This media is not supported in your browser
VIEW IN TELEGRAM
😁2
Check out Dagm he have one of the most amazing posters and designs
Forwarded from dagms posters and sh** (Dagmawi Girma)
❤1
So basically happy news for devs, I have made a tool easy to use for you guys, where you can use this tool your website after deployment it will scan for basic, advanced and deep search on your website to check if your website is vulnerable to already known CVE's(Common Vulnerability and Exposure) which means after scanning it will tell you if your website is a victim to CVE's and other Vulnerabilities like sql injection, it will check if your website is sanitized. With detailed report you can use to secure your website.
🔥1
I will post the tool in a few hours
Tetstack pinned «So basically happy news for devs, I have made a tool easy to use for you guys, where you can use this tool your website after deployment it will scan for basic, advanced and deep search on your website to check if your website is vulnerable to already known…»
Here is a spoiler tho...
I have used my school website( I know this is a massive OPSEC but our document is on paper it won't matter) and so found three vulnerabilities as seen on the screenshots. I will post my tool on github for everyone to access.
Not the best one i made but it looks great i guess
The tool is finally done
The tool is officially done and the repository is live for everyone to access.
​Following up on the spoiler from earlier where I tested it on my school website and found those three vulnerabilities, you can now grab the source code and run it on your own deployments.
​KASCVE is designed to be completely straightforward. You throw a website at it post-deployment, and it executes basic, advanced, and deep scans to check for known CVEs, parameter sanitization issues, and flaws like SQL injection.
​Instead of just giving you a standard report showing what's broken, it actually outputs a hardening matrix with the exact configuration patches for Nginx, Apache, and Laravel so you can secure your website straight away. It also includes an automated setup script to link the tool globally to your terminal environment.
​Quick start:

git clone https://github.com/PicasoTheDeal/KASCVE.git
cd KASCVE && sudo ./install.sh
KASCVE targetdomain.com


Go check out the repository, read through the documentation, and drop a star on the project:
https://github.com/PicasoTheDeal/KASCVE
urm sooo besoccer is also vulnerable, I think i made the wrong tool but as long as i say it is for defence i am okay with it.
if anyone git cloned it already thank you very much git clone again for some minor updates on the logic and security, works the same way i just added that so i won't be held accountable for your actions.
❤1
i would really earn a lot of money through this but mehhhh i am too lazy
And please don't try to scan big websites like Amazon or any other related your ip will be blacklisted.