Commit graph

273 commits

Author SHA1 Message Date
ekultek
542eacab02 minor update to the installation, if you already have it installed you don't need to worry about it 2017-11-28 13:44:41 -06:00
ekultek
f3dd7c567b will now save potential SQLi vulnerable websites to a log file during the header check (if the check throws a dbms error) 2017-11-28 13:07:23 -06:00
ekultek
0253cb37e4 will now save potential SQLi vulnerable websites to a log file during the header check (if the check throws a dbms error) 2017-11-28 13:07:11 -06:00
ekultek
2b39613b05 three new WAF scripts, armor, fortigate, and akamai. updates to generic WAF 2017-11-28 13:06:18 -06:00
ekultek
de767965e5 patch for a connection refusing error (issue #177) where google will refuse your connection because you're sending to many requests to it, will sleep and try again 2017-11-28 10:15:28 -06:00
ekultek
97187c07f0 fixes issue #173 crawler will ignore SSL certificates, fixes #174 caches the found firewall into memory, incase we run across it again we don't waste our time trying to discover it, fixes #175 and #176 if there are unicode chars in the value it will not be saved 2017-11-28 08:14:47 -06:00
ekultek
4c496b265c one more patch for the generic WAF detection script, another private report, will not detect Apache now 2017-11-27 13:45:15 -06:00
ekultek
4651fcd2ac major patch for an issue with the firewall identification (private report) it was super unreliable, should work better now 2017-11-27 13:09:53 -06:00
ekultek
5029005829 patch for an issue where a failed status code would try to create an issue, will now output the status code, the reason, and shutdown 2017-11-27 09:55:41 -06:00
ekultek
b58a6b48d4 enabled X-Forwarded-For headers in selenium searches 2017-11-26 16:44:04 -06:00
ekultek
d03d762ff4 patch for an issue where something goes wrong with the user-agent configuration during intialization of selenium, will not default to Zeus's custom agent if for any reason the user-agent is None (issue #170) 2017-11-26 12:02:23 -06:00
ekultek
46cb3d64d0 edited the automatic issue creator so that it will only pull the last 35 lines of the file, along with that it will now tell you the link to your issue if you have anything to add to it 2017-11-26 10:14:41 -06:00
ekultek
0ae36e2489 fixes an issue where the options would not pass to nmap 2017-11-25 20:12:53 -06:00
ekultek
e5abed8835 minor updates to the filename, added a new folder for nmap scans 2017-11-25 20:02:03 -06:00
ekultek
e662cb4a00 created an interactive pause that you will be able to skip or exit from 2017-11-25 20:00:23 -06:00
ekultek
3cfe4dfa8e created an interactive pause that you will be able to skip or exit from 2017-11-25 20:00:00 -06:00
ekultek
ddf46c6bbe minor edits to some of the attacks, also created an interactive pause that you will be able to skip or exit from 2017-11-25 19:59:09 -06:00
ekultek
fe21f2b22b moved the URL parsing to it's own class, saves some space in the searching file and is a little quicker now 2017-11-25 13:31:10 -06:00
ekultek
e69e116e81 moved the browser setup into it's own class, saves some space in the selenium search file 2017-11-24 21:55:31 -06:00
ekultek
7f62266474 minor update to excluded websites exts and the excluded sites while parsing 2017-11-24 11:11:49 -06:00
ekultek
c5ab6b005b had t ocreate a disclaimer because someone was an idiot 2017-11-24 08:45:58 -06:00
ekultek
3225387157 fixed the x-forwarded-for header in the header checking 2017-11-24 07:03:10 -06:00
ekultek
3d37e31747 minor update to the AWS WAF script, just some small edits 2017-11-24 07:02:28 -06:00
ekultek
5757f311b2 patch for an issue where the script to start sqlmap would not launch, had the wrong script name which is what caused the issue (issue #163) 2017-11-24 07:01:59 -06:00
ekultek
6f62049eb8 optimization for the time it takes to load the program, should be quicker now, created a search for public PGP keys will take your sites domain and search for any public PGP keys it can find, renamed some files to make more sense 2017-11-22 15:07:24 -06:00
ekultek
2f250a5a2d update to the gist lookup search, multiple regexs will be tried in order to further try and discover some information 2017-11-21 12:39:51 -06:00
ekultek
47b4789756 minor update to fix a file logging issue, where it will skip log numbers IE zeus-log-1.log to zeus-log-5.log 2017-11-21 12:39:15 -06:00
ekultek
d875092c6c patch for an issue where the webdriver will not load, will now check if you have 127.0.0.1 localhost in your /etc/hosts file and add it if it is not there (issue #161) 2017-11-21 11:49:11 -06:00
ekultek
acc89fdac3 bumped version number for the new WAF scripts 2017-11-20 20:01:43 -06:00
ekultek
2d88e64404 created 7 new WAF scripts for firewall detection (issue #142) 2017-11-20 20:00:45 -06:00
ekultek
52af437fe4 moved shutdown, startup, and prompt to lib.core.common due to how much they are used 2017-11-20 14:27:08 -06:00
ekultek
9eca1950cb created constants of all the log filenames, adjusted files accordingly 2017-11-20 14:04:11 -06:00
ekultek
fd4c89ffb8 created a common.py file and drafted write_to_log_file into it, also created an HTTP_HEADER class that will be used instead of repeating myself, fixed everything accordingly 2017-11-20 11:43:27 -06:00
ekultek
7d8727b9df patch for an issue where it will claim the driver is not in your PATH, will now specify where the driver is located (issue #159) 2017-11-18 09:52:40 -06:00
ekultek
8b57b6c1cf patch for an issue where the latest firefox release would not allow you to run Zeus. Is now compatible with Firefox version 51-57 (issue #157) 2017-11-18 07:51:25 -06:00
ekultek
d60ad9391b bumped from three pages to five pages 2017-11-16 13:30:03 -06:00
ekultek
d75bb85955 created a Github Gist searching tool that will search 3 pages of Gists (usually around 500 links) and create a regex for the found URL, from there it will search through all the Gists and save any of them that have a match (issue #153) 2017-11-16 13:29:24 -06:00
ekultek
08f1f83b74 patch for a permissions issue, will tell you to run as sudo now (issue #155) 2017-11-16 09:16:58 -06:00
ekultek
8b3a776af4 patch for an issue where the program would fail due to firefox and geckodriver not liking eachother (issue #154, issue #151), also patches an issue with the admin panel where it would write to a file no matter what happened (issue #152) 2017-11-16 07:34:09 -06:00
ekultek
95e6ab3c70 better patch for issue #151, will accept strings as browser versions now 2017-11-15 09:09:47 -06:00
ekultek
ab93e7a46d patch for an issue where if your firefox fails to run it will not let you install Zeus, will now prompt you for your firefox browser version instead of failing (issue #151) 2017-11-15 08:43:41 -06:00
ekultek
25b72314e7 created a --show-success flag that will output the success of the dork depending on how many links have been found with it 2017-11-15 07:23:36 -06:00
ekultek
e18e4c02a2 added pksecurity module and siteguard WAF scripts (issue #142) 2017-11-15 07:22:51 -06:00
ekultek
c9756cb35b bumped the version number for the new updates 2017-11-14 19:40:46 -06:00
ekultek
6f6663b453 added a new header to the check to see if they have protection against MITM attacks (Public-Key-Pins) 2017-11-14 19:40:21 -06:00
ekultek
6d19d03845 will now check if it is running an apache server by searching the HTML tags for the error that occurs from Apache webservers (issue #142) 2017-11-14 19:39:37 -06:00
ekultek
1fd3f281e7 updates to cloudflare, sucuri WAF scripts, added AWS waf script (issue #142) 2017-11-14 16:07:26 -06:00
ekultek
beaa69f7af added a few new WAF scripts (issue #142) squid proxy IDS, cloudfront, minor updates to modsecurity 2017-11-14 13:54:52 -06:00
ekultek
6f05a8e656 bumped version number, added return True to the blacklist parsing 2017-11-14 12:54:22 -06:00
ekultek
885fe2e43f created a new WAF script for powerful firewall (mybb plugin issue #142) 2017-11-14 12:53:54 -06:00
ekultek
55b1285809 multiple tamper scripts now implemented (issue #149), checks if the status code is a 404 before saying it's XSS vulnerable (issue #147) 2017-11-14 11:46:14 -06:00
ekultek
10987c4e14 can now search multiple pages with a random dork using the -r flag (issue #146) 2017-11-14 11:15:02 -06:00
ekultek
a805afd1fa minor update so that it will not keep pulling the Apache server error, this way it will truly only pull what it believes are WAF/IDS/IPS's 2017-11-13 20:46:26 -06:00
ekultek
c4af51be6d created a blacklist, when a dork pulls no URLs it will add it to a blacklist, if the dork is in the blacklist and you use it again, it will prompt you if you want to continue or not 2017-11-13 20:45:32 -06:00
ekultek
9cb82a7096 minor update to webseal WAF script, will better recognize now 2017-11-13 20:43:41 -06:00
ekultek
2639eeadef updated modsecurity and created a new waf scripts for wordfence 2017-11-13 14:35:46 -06:00
ekultek
c91ba86fef patches an issue where warnings would be display (issue #145) 2017-11-13 14:35:24 -06:00
ekultek
ef97ce7094 fix or an issue when an error occurs during the WhoIs lookup it will exit (issue #144) 2017-11-13 14:29:32 -06:00
ekultek
d4c1e2dc1c patch for an issue where the firefox profile would fail, will now specify the binary path if you hit this error (issue #143) 2017-11-13 09:48:02 -06:00
ekultek
f2cad88415 initial push for issue #142, created a few WAF scripts to detect, will also save the fingerprint of the WAF script if the protection is declared to be generic 2017-11-12 19:13:00 -06:00
ekultek
1eb861ae16 patch for a reported issue (private) where if there are no URL's left it will keep going until it hits the max page, will now stop 2017-11-11 16:30:03 -06:00
ekultek
cec5a4c7c5 will now save discovered cookies to a log file 2017-11-11 16:02:34 -06:00
ekultek
77bc6dc956 multiple page searching no longer requires Google's API, you can now perform as many requests as you want and get as many links as you want as long as it does not go over 500 pages. Removed a couple dependencies that needed to be there for Google's API 2017-11-11 15:11:06 -06:00
ekultek
11976b7018 minor updates, removed the dict args option in sqlmaphook and fixed some output coloring issues 2017-11-11 15:09:20 -06:00
ekultek
17c5771eac minor adjustments to the coding style, nothing that will cause any problems 2017-11-11 10:43:50 -06:00
ekultek
ed3d15c26f threading has been enabled on admin panel finder, be careful when going over 10 threads, you will be warned if you go over 2017-11-11 10:43:19 -06:00
ekultek
0046932f60 moved intel AMT bypass code to the deprecated folder and added it to the gitignore 2017-11-11 10:42:17 -06:00
ekultek
d4d6630f59 patches an error where if you are unable to retrieve the headers it will fail, will not just output that it is unable to retreive the headers (issue #141) 2017-11-11 06:25:33 -06:00
ekultek
b35f8afe3b is now able to parse sqlmap configuration files, so if you have a saved conf file from sqlmap that you like to use, you can use it here with the --sqlmap-conf flag 2017-11-10 14:30:01 -06:00
ekultek
7747f58700 patch for a privatley reported issue where enumerating a certain file would only allow you to run the latest log file, no matter what file was passed, will now allow you to run any file you want and if nothing is passed will run the latest log file 2017-11-10 13:32:06 -06:00
ekultek
70b5612f07 deprecated intel AMT bypass scanner, full batch functionality implemented, edited the deprecation method so it will no longer try to connect to the function, added extracted to the skip schema when writing log files, created a way to display the question with the default choice displayed as well, welcome to version 1.2 2017-11-10 11:02:30 -06:00
ekultek
3db01c4dcf will only display the headers that are equipped for protection and will no longer prompt you if you want to continue, a warning should be enough, fixed a new line issue in an inof message 2017-11-10 11:00:21 -06:00
ekultek
33ac2f961a same as admin panel, full batch functionaility has been implemented 2017-11-10 10:59:16 -06:00
ekultek
d5575b51ec has been deprecated, code will be moved to a deprecated folder inside of etc/deprecated by version 1.3 2017-11-10 10:58:45 -06:00
ekultek
c6c27f8b26 created full batch functionality for the admin panel finder, will display the default if batch is requested 2017-11-10 10:58:11 -06:00
ekultek
150ebef721 will now save all headers to the log file 2017-11-09 14:40:23 -06:00
ekultek
4ac02a8ff1 patch for a reported issue where saving the files would save over the important logs, such as url-log-1 -> url-log(1), blackwidow-log-1 -> blackwidow-log(1) (privatley reported) 2017-11-09 10:57:51 -06:00
ekultek
49cfc78d9e patch for an issue where I rolled back a search setting 2017-11-09 08:31:29 -06:00
ekultek
d258803efc moved the run attacks function to the settings file 2017-11-09 08:26:29 -06:00
ekultek
0151d26449 fixed some circular importing issues 2017-11-09 08:25:46 -06:00
ekultek
65744104f3 minor tweak to output colors, when run in batch will not prompt if you want to save the URL's, will just delete them 2017-11-08 20:02:51 -06:00
ekultek
769f4c5dc6 minor tweak to the output coloring 2017-11-08 20:01:43 -06:00
ekultek
42ee8e6a2b removed deprecated commented out code, minor tweak to the color output 2017-11-08 20:01:12 -06:00
ekultek
61d25ec6be minor tweaks to the output colors 2017-11-08 20:00:27 -06:00
ekultek
1445ac4a2e edited so that when something is clickjack vulnerable, you'll know it is 2017-11-08 19:59:48 -06:00
ekultek
68842f8d31 edited so that when something good happens you will know it's good, robots.txt will not prompt when running in batch mode 2017-11-08 19:58:44 -06:00
ekultek
79c0174105 added two new colors to the set_color function (bold yellow and bold green), created a deprecation function that will display if something is going to be deprecated soon or not 2017-11-08 19:57:33 -06:00
ekultek
856e38b970 while writing to a log file, if the file is already present, it will now write to a seperate file with the duplicate number in it, IE www.google.com-clickjacking.html will be www.google.com(1).html, www.google.com(2).html, etc.. (issue #140) 2017-11-08 14:00:31 -06:00
ekultek
864983250f when a header is present it will now display as a warning instead of an error 2017-11-08 13:57:45 -06:00
ekultek
b5ca0225b6 created a header check whilst running attacks. if a protection header is found in the headers found, it will prompt you and warn you 2017-11-07 14:52:57 -06:00
ekultek
46930fd19c patch for a reported issue (private) will now successfully search through the ports that may contain the AMT exploitable bypass 2017-11-07 12:22:53 -06:00
ekultek
826906487e bumped version number for new items 2017-11-07 11:57:14 -06:00
ekultek
dfb39c8eb3 added a timeout to the WhoIs lookup, this will prevent the API from stopping us 2017-11-07 11:56:51 -06:00
ekultek
b28fd3eac4 minor edits to most information, some updates to intel scans verbosity, comment edits to sqlmap 2017-11-06 12:25:53 -06:00
ekultek
bfdc001de2 minor edit to an invalid function call 2017-11-04 09:17:19 -05:00
ekultek
c8a823b2f6 edited the file path to reflect the file changes, optimizations to some of the functions, bumped version number, added another URL to the skip schema 2017-11-04 09:13:26 -05:00
ekultek
9b623cf8e0 edited the file paths to reflect the new direcetories 2017-11-04 09:10:58 -05:00
ekultek
25e674d4b7 patch for an issue where the attacks would fail due to non-extracted webcache URLs 2017-11-04 08:25:30 -05:00
ekultek
90ba39f3ed patch for an issue where if the site refuses connection it would keep trying to crawl it (issue #134) 2017-11-03 09:49:58 -05:00
ekultek
69fd18d5a5 you are now able to use Tor to do the searching by passing the --tor flag, the firefox browser settings will mimic the tor browser settings and you will be able to connect via Tor, be careful, Google does not like Tor. You will also be able to connect to Tor to do the parsing 2017-11-02 10:27:08 -05:00