[prev in list] [next in list] [prev in thread] [next in thread] 

List:       full-disclosure
Subject:    [Full-disclosure] Wapiti 2.2.0 is available - Web application
From:       Nicolas Surribas <nicolas.surribas () gmail ! com>
Date:       2009-12-29 10:08:41
Message-ID: 46359a550912290208x84872cp5e66bf0e6972c361 () mail ! gmail ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


A new version of Wapiti was released : version 2.2.0.

Wapiti is a security scanner looking for vulnerabilities in web
applications.
The Wapiti code is platform independant (written in Python) and released
under the terms of the GPL license.

 What's new in this version :
   Added a manpage.
   Internationalization : translations of Wapiti in spanish and french.
   Options -k and -i allow the scan to be saved and restored later.
   Added option -b to set the scope of the scan based on the root url given.
   Wrote a library to save handle cookies and save them in XML format.
   Modules are now loaded dynamically with a dependency system.
   Rewrote the -m option used to activate / deactivate attack modules.
   New module to search for backup files of scripts on the target webserver.
   New module to search for weakly configured .htaccess.
   New module to search dangerous files based on the Nikto database.
   Differ "raw" XSS from "urlencoded" XSS.
   Updated BeautifulSoup to version 3.0.8.
   Better encoding support for webpages (convert to Unicode)
   Added "resource consumption" as a vulnerability type.
   Fixed bug ID 2779441 "Python Version 2.5 required?"
   Fixed bug with special characters in HTML reports.
   Fixed a lot of bugs.

Project page :
http://sourceforge.net/projects/wapiti

[Attachment #5 (text/html)]

<div>A new version of Wapiti was released : version 2.2.0.<br></div><div><br></div><div>Wapiti \
is a security scanner looking for vulnerabilities in web applications.</div><div>The Wapiti \
code is platform independant (written in Python) and released under the terms of the GPL \
license.</div> <div><br></div><div> What&#39;s new in this version :<br>   Added a manpage.<br> \
Internationalization : translations of Wapiti in spanish and french.<br>   Options -k and -i \
allow the scan to be saved and restored later.<br>  Added option -b to set the scope of the \
scan based on the root url given.<br>   Wrote a library to save handle cookies and save them in \
XML format.<br>   Modules are now loaded dynamically with a dependency system.<br>  Rewrote the \
-m option used to activate / deactivate attack modules.<br>   New module to search for backup \
files of scripts on the target webserver.<br>   New module to search for weakly configured \
.htaccess.<br>   New module to search dangerous files based on the Nikto database.<br>  Differ \
&quot;raw&quot; XSS from &quot;urlencoded&quot; XSS.<br>   Updated BeautifulSoup to version \
3.0.8.<br>   Better encoding support for webpages (convert to Unicode)<br>   Added \
&quot;resource consumption&quot; as a vulnerability type.<br>  Fixed bug ID 2779441 \
&quot;Python Version 2.5 required?&quot;<br>   Fixed bug with special characters in HTML \
reports.<br>   Fixed a lot of bugs.<br></div><div><br></div><div>Project page :</div><div><a \
href="http://sourceforge.net/projects/wapiti">http://sourceforge.net/projects/wapiti</a></div>



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic