Scan website for vulnerabilities in Kali Linux

Vega is an open source platform for testing the security of web applications. Vega can help you find and validate SQL injections , cross-site scripting (XSS) , inadvertently disclosed sensitive information, and other vulnerabilities. It is written in Java , GUI -based , and runs on Linux, OS X and Windows.
Vega includes an automated scanner for rapid testing and filtering proxies for tactical inspection. Vega can be expanded using a powerful API in the language of the web: Javascript.
Disclaimer – Our tutorials are designed to aid aspiring pen testers/security enthusiasts in learning new skills, we only recommend that you test this tutorial on a system that belongs to YOU. We do not accept responsibility for anyone who thinks it’s a good idea to try to use this to attempt to hack systems that do not belong to you
== using vega ==
It’s simple go to ” Applications – > Kali Linux -> Web Applications -> Web Application Proxies -> vega
vega1
And this is how it look like .
vega2

Click on “scan” and type a website url :
vega3
Add cookies if you want or regex exclusion .
vega4
The right side will show the vulnerability after the  scan is completed .
vega 6

The scanner is not very powerful but it’ quick to audit ,  5 minutes is enough , but for a thorough audit it is better to use more powerful tools.

0 Comment:

Đăng nhận xét

Thank you for your comments!