pen-test
[Top] [All Lists]

Creating API for SSS & Appscan

To: Pen-Testing <pen-test@securityfocus.com>, security-basics@securityfocus.com, webappsec@securityfocus.com
Subject: Creating API for SSS & Appscan
From: "Vivek P" <iamherevivek@gmail.com>
Date: Thu, 24 May 2007 14:00:35 +0530
Delivered-to: sp-com-lists@consult.net
Delivered-to: pentest-list2@consult.net
Delivered-to: mailing list pen-test@securityfocus.com
Delivered-to: moderator for pen-test@securityfocus.com
Dkim-signature: a=rsa-sha1; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:mime-version:content-type:content-transfer-encoding:content-disposition; b=F530dVVwu+mZLqsqgMedJK/zeP2cN3Aev4Y6DXiDqkmUo1zOaVXccHUndA+ePbaIXFjchgdFFBfq9mxAdL8GWkZ/RE0yazC3MfOzUIYltfhBY8BFXXd9TJ/ONnya1pWOaERDDxAri63Vh87LwPOvaXyKVUpY8S90dz4cvd9MHJc=
Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=received:message-id:date:from:to:subject:mime-version:content-type:content-transfer-encoding:content-disposition; b=gWwJr+/+6l4jJO9vl8Sf2c5zTQAi4Y6IoJDPEcrpndyMC8U6Qi3NBzHW8CvDn8S2NWlv+riM1/zZFwHpTBRnpUCeX9Kjy+q1ySJs4OLv4kave+fVh0+Qp4wo7cAOY+w4VBE/TuG1um+xVfhMWajM/mJbFhdwnygTmu30hRRJvfM=
List-help: <mailto:pen-test-help@securityfocus.com>
List-id: <pen-test.list-id.securityfocus.com>
List-post: <mailto:pen-test@securityfocus.com>
List-subscribe: <mailto:pen-test-subscribe@securityfocus.com>
List-unsubscribe: <mailto:pen-test-unsubscribe@securityfocus.com>
Mailing-list: contact pen-test-help@securityfocus.com; run by ezmlm
Resent-date: Thu, 24 May 2007 18:56:28 -0600 (MDT)
Resent-from: pen-test-return-1078484244@securityfocus.com
Resent-message-id: <20070525005628.284CB144044@outgoing2.securityfocus.com>
Resent-sender: listbounce@securityfocus.com
Sender: listbounce@securityfocus.com
Hi to all @securityfocus

I am on look out for some solutions to automate and imrove pentesting
setup of mine, i use an array of tools & alot of internal domains to
test atleast 10000 of them. I use SSS, Appscan etc for that.

I had a logical solution to make things simple by developing an API so
that i can run tools like
pentest -sss.exe -appscan.exe --www.targetsite.com /all options... or
something like that

I would like to get help on topics

a) some API's that are available for sss (related documentations)
b) some API for appscan (or related documentations)
c) some peek into tools that can sniff queries done from core of
these testing tools to the kernel (so that i can duplicate the
replies)

This is just a research level discussion. Please reply with your
valuable suggestions.


thanx for your time..
--
Vivek P Nair
Vice President, Technology
ASG
www.vivekpnair.co.nr
iamherevivek@gmail.com
vivek.p.nair@appingroup.com
d3@d Br@iN
"i thought i would change the world, But they wouldnt gimme the source Code !!"

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Are you using SPI, Watchfire or WhiteHat?
Consider getting clear vision with Cenzic
See HOW Now with our 20/20 program!

http://www.cenzic.com/c/2020
------------------------------------------------------------------------


<Prev in Thread] Current Thread [Next in Thread>