Jump to content
YOUR-AD-HERE
HOSTING
TOOLS

Locked XSRFProbe


0x1

Recommended Posts

The Prime Cross Site Request Forgery Audit and Exploitation Toolkit

This is the hidden content, please

XSRFProbe is an advanced Cross Site Request Forgery (CSRF/XSRF) Audit and Exploitation Toolkit. Equipped with a Powerful Crawling Engine and Numerous Systematic Checks, it is now able to detect most cases of CSRF vulnerabilities, their related bypasses and futher generate (maliciously) exploitable proof of concepts with each found vulnerability.

Some Features:

  • Performs several types of checks before declaring an endpoint as vulnerable.
  • Can detect several types of Anti-CSRF tokens in POST requests.
  • Features a powerful crawler which features continuous crawling and scanning.
  • Out of the box support for custom cookie values and generic headers.
  • Accurate Token-Strength Detection and Analysis using various algorithms.
  • Can generate both normal as well as maliciously exploitable CSRF PoCs.
  • Follows a redirect when there is a 30x response.
  • Well documented code and highly generalised automated workflow.
  • The user is in control of everything whatever the scanner does.
  • Has a user-friendly interaction environment with full verbose support.
  • Detailed logging system of errors, vulnerabilities, tokens and other stuffs.

Gallery:

Lets see some real-world scenarios of XSRFProbe in action:

Spoiler
This is the hidden content, please
This is the hidden content, please

This is the hidden content, please

This is the hidden content, please
This is the hidden content, please

Version and License:

XSRFProbe v2.0 release is now a stable release and the work is licensed under the GPL v3 License.

Source & Download

This is the hidden content, please

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.