WS-Attacker Logo

WS-Attacker

0
Free
Visit Website

WS-Attacker is a modular framework for web services penetration testing developed by the Chair of Network and Data Security, Ruhr University Bochum, and Hackmanit GmbH. It allows loading WSDL files, sending SOAP messages, and extending functionality with plugins and libraries for specific Web Services attacks. More information on its architecture and extensibility can be found in the Penetration Testing Tool for Web Services Security paper. Current version supports SOAPAction spoofing, WS-Addressing spoofing, XML Signature Wrapping, and XML-based DoS attacks.

FEATURES

ALTERNATIVES

A powerful penetration testing platform for identifying vulnerabilities and weaknesses in computer systems.

GraphSpy is a token management tool that allows users to store and manage access and refresh tokens for multiple users and scopes in one location.

A powerful XSS scanning and parameter analysis tool

Emulates Docker HTTP API with event logging and AWS deployment script.

A free online wargame for practicing hacking skills and learning security concepts.

Ultimate Internet of Things/Industrial Control Systems reconnaissance tool powered by Shodan.

A payload creation framework designed to bypass Endpoint Detection and Response (EDR) systems.

A subdomain enumeration tool for bug hunting and pentesting