LinuxLinks.com
Newbies What Next ? News Forums Calendar

Search





News Sections
Home
General News (3972/0)
Reviews (626/0)
Press Releases (464/0)
Distributions (187/0)
Software (741/0)
Hardware (520/0)
Security (192/0)
Tutorials (320/0)
Off Topic (180/0)


User Functions
Username:

Password:

Don't have an account yet? Sign up as a New User


Events
There are no upcoming events




Nikto

Nikto

Nikto is a web server scanner which performs comprehensive tests against web servers for multiple items, including over 3500 potentially dangerous files/CGIs, versions on over 900 servers, and version specific problems on over 250 servers.

Scan items and plugins are frequently updated and can be automatically updated (if desired).

Nikto is built on LibWhisker and can run any platform which has a Perl environment, and supports SSL, proxies, host authentication, IDS evasion and more.

 Nikto

License
GNU GPL v2

Developer
Sullo

Website
www.cirt.net/nikto2

Requirements
Perl
LibWhisker Perl module

Support:
Nikto DocumentationMailing List

Selected Reviews:

Features include:

  • Designed to find many types of web server problems including:
    • Server and software misconfigurations
    • Default files and programs
    • Insecure files and programs
    • Outdated servers and programs
  • Uses rfp's LibWhisker as a base for all network funtionality
  • Main scan database in CSV format for easy updates
  • Fingerprint servers via favicon.ico files
  • Determines "OK" vs "NOT FOUND" responses for file type, if possible
  • Determines CGI directories for each server, if possible
  • Switch HTTP versions as needed so that the server understands requests properly
  • SSL Support (Unix with OpenSSL or maybe Windows with ActiveState's Perl/NetSSL)
  • Output to file in plain text, HTML or CSV
  • Plugin support (standard PERL)
  • Checks for outdated server software
  • Proxy support (with authentication)
  • Host authentication (Basic)
  • Watches for "bogus" OK responses
  • Attempts to perform educated guesses for Authentication realms
  • Captures/prints any Cookies received
  • Mutate mode to "go fishing" on web servers for odd items
  • Builds Mutate checks based on robots.txt entries (if present)
  • Scan multiple ports on a target to find web servers (can integrate nmap for speed, if available)
  • Multiple IDS evasion techniques
  • Users can add a custom scan database
  • Supports automatic code/check updates (with web access)
  • Multiple host/port scanning (scan list files)
  • Username guessing plugin via the cgiwrap program and Apache ~user methods
Return to Security Home Page

Bookmark and Share


Last Updated Sunday, March 06 2011 @ 08:34 AM EST



Group Tests
All Group Tests

Top Free Software
6 Office Suites
6 Lean Desktops
6 Desktop Search
9 Project Management
9 Groupware Apps
14 File Managers
10 Databases
21 Backup Tools
21 DVD Tools
21 Window Managers
21 Productivity Tools
21 Financial Tools
21 Text Editors
21 Video Emulators
21 Home Emulators
42 Graphics Apps
6 CAD Apps
42 Scientific Apps
10 Web Browsers
42 Email Apps
12 Instant Messaging
10 IRC Clients
7 Twitter Clients
12 News Aggregators
11 VoIP Apps
11 Remote Display Apps
9 BitTorrent Apps
42 Best Games
42 More Games
21 More Games
42 Hot Games Part 1
42 Hot Games Part 2
42 Hot Games Part 3
10 Chess Apps
9 Educational Games
42 Audio Apps
42 Video Apps
6 Screencasting Apps
80 Security Apps
9 System Monitoring
6 Family History Apps
11 PDF Tools
6 Music Servers
6 Collection Managers
7 Calculator Apps
8 Geometry Apps
Free Console Apps
14 Multimedia
Programming
8 Compilers
9 IDEs
9 Debuggers
7 Revision Control Apps
6 Doc Generators
'Free' Proprietary
21 Closed-Source Apps
Top Commercial Apps
42 Games
Free Web Software
21 Web CMS
14 Wiki Engines
8 Blog Apps
6 eCommerce Apps
5 Human Resource Apps
10 ERP
10 CRM
6 Data Warehouse Apps
8 Business Intelligence

All Group Tests

Other Articles
Migrating from Windows
Back up your data
Distribution Guide
Distro Portal Pages
20 Free Linux Books
Running Linux Under Windows


Older Stories
Wednesday 12/07
  • Top Free Android Scientific Apps (0)
  • Top Free Android Web Browsers (0)

  • Monday 11/07
  • Top Free Android Photo Tools (0)

  • Wednesday 11/02
  • Top Free Android Email Tools (0)

  • Monday 10/24
  • Top Free Android SSH Tools (0)

  • Sunday 10/23
  • Top Free Android Audio Players (0)

  • Friday 10/14
  • Top Free Android E-book Readers (0)

  • Monday 10/10
  • 8 Best Free Linux Music Notation Software (0)

  • Sunday 10/02
  • 6 Commercial Android Video Players (0)

  • Tuesday 09/20
  • 10 Best Free Android File Managers (0)


  • Vote

    What do you find MOST attractive about Open Source software?

    Amount of customization
    Security
    Freedom provided
    Speed of development
    Quality
    Multiple versions
    Cost
    Potential to contribute
    Ability to modify code
    Results
    2983 votes | 2 comments

    Built with GeekLog and phpBB
    Comments to the webmaster are welcome
    Copyright 2009 LinuxLinks.com - All rights reserved