Welcome to The Forum

Register now to gain access to all of our features. Once registered and logged in, you will be able to create topics, post replies to

existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile

and so much more. This message will be removed once you have signed in.

Active Hackers

The best community of active hackers. This community has been working in hacking for more than 10 years.

Hacker Forum

Hacker from all countries join this community to share their knowledge and their hacking tools

 

    Hacking Tools

    You can find thousands of tools shared by hackers. RAT's, Bot's, Crypters FUD, Stealers, Binders, Ransomware,, Mallware, Virus, Cracked Accounts, Configs, Guides, Videos and many other things.

      PRIV8

      Become a Priv8 user and access all parts of the forum without restrictions and without limit of download. It only costs 100 dollars, and it will last you for a lifetime.

      Read Rules

      In this community we follow and respect rules, and they are the same for everyone, regardless of the user's rank. Read the rules well not to be prohibited.

      Sign in to follow this  
      0x1

      H2T

      1 post in this topic

      h2t - HTTP Hardening Tool

      Description

      h2t is a simple tool to help sysadmins to hardening their websites.

      Until now h2t checks the website headers and recommends how to make it better.

      Dependences

      • Python 3
      • colorama
      • requests

      Install

      Hidden Content

        Give reaction to this post to see the hidden content.

      Usage

      h2t has subcommands: list and scan.

      Hidden Content

        Give reaction to this post to see the hidden content.

      List Subcommand

      The list subcommand lists all headers cataloged in h2t and can show informations about it as a description, links for more information and for how to's.

      Hidden Content

        Give reaction to this post to see the hidden content.

      Scan Subcommand

      The scan subcommand perform a scan in a website looking for their headers.

      Hidden Content

        Give reaction to this post to see the hidden content.

      Output

      For now the output is only in normal mode. Understant it as follows:

      • [+] Red Headers are bad headers that open a breach on your website or maybe show a lots of information. We recommend fix it.
      • [+] Yellow Headers are good headers that is not applied on your website. We recommend apply them.
      • [-] Green Headers are good headers that is already used in your website. It's shown when use -s flag.

      Example:

      Hidden Content

        Give reaction to this post to see the hidden content.

      • Cookie HTTP Only would be good to be applied
      • Cookie over SSL/TLS would be good to be applied
      • Server header would be good to be removed
      • Referrer-Policy would be good to be applied
      • X-Frame-Options is already in use, nothing to do here
      • X-XSS-Protection is already in use, nothing to do here

      Screenshots

      List h2t catalog

      Hidden Content

        Give reaction to this post to see the hidden content.

      Scan from file

      Hidden Content

        Give reaction to this post to see the hidden content.

      Scan url

      Hidden Content

        Give reaction to this post to see the hidden content.

      Scan verbose

      Hidden Content

        Give reaction to this post to see the hidden content.

      Headers information

      Hidden Content

        Give reaction to this post to see the hidden content.

      Source & Download

      Hidden Content

        Give reaction to this post to see the hidden content.

      • Like 1

      Share this post


      Link to post
      Share on other sites

      Create an account or sign in to comment

      You need to be a member in order to leave a comment

      Create an account

      Sign up for a new account in our community. It's easy!

      Register a new account

      Sign in

      Already have an account? Sign in here.

      Sign In Now
      Sign in to follow this