Skip to content

Project for finding vunerabilities in mass.

License

Notifications You must be signed in to change notification settings

B-Galati/avenger-sh

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

19 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

PHP Avenger

PHP Avenger is a future collection open source of tools writting in PHP with focus in security and hacking.

Beta

  • PHP Avenger sh ( Search Enginer )

Future Implementation

r

  • PHP Avenger bt ( Brute - Force )
  • PHP Avenger sca ( State Code Analayse )
  • PHP Avenger pwp ( Plugin WordPress )
  • PHP Avenger cj ( Component Joomla )

#PHP Avenger SH

Php Avenger sh is a open source tool with ideia baseaded in fork inurlbr by Cleiton Pinheiro. Basicaly PHP Avenger sh is a tool automates the process of detecting of possibles vunerabilities in using mass scan and check if true or false. Php Avenget utility search enginers with google, bing and others using dorks ( avanced searching ).

Instalation

The recommended way to install PHP Avenger is through Composer.

# Install Composer
curl -sS https://getcomposer.org/installer | php

Next, run the Composer command to install the latest beta version of Php Avenger SH:

php composer.phar create-project aszone/avenger-sh
cd avenger-sh

Basic Usage

Use command for init process, result will print in monitor and save in txt on folder results.

Get trash search

php avenger sh --dork="site:com.ar ext:sql password"

Result of trash search

alt tag

Check Sql Injection

php avenger sh --dork="site:com.ar inurl:php?id=" --check="sqli"

Result of Sql Injection

alt tag alt tag

Check Local File Download

php avenger sh --dork="site:com.ar inurl:download.php?file=" --check="lfd"

Result of Local File Download

alt tag

Check is Admin Page

php avenger sh --dork="site:com.ar inurl:admin" --check="isAdmin"

Help for commands

php avenger sh 

Details

Searchs Enginers

  • Google
  • GoogleApi
  • Bing
  • DukeDukeGo
  • Yahoo
  • Yandex

Vulnerabilities Checked

  • Sql Injection
  • Local File Download
  • Admin Page

Future Vulnerabilities Checked

  • RFI
  • Xss
  • Sensitive Files
    • Dump Files
    • Config Files
    • Open Folders

Features development

  • Power Search
  • Send Mail for results
  • Name of TXT
  • Proxys
    • TOR
    • Site of Proxys
    • Virgem Proxys

Help and docs

About

Project for finding vunerabilities in mass.

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages

  • PHP 100.0%