0xInfection / TIDoS-Framework

The Offensive Manual Web Application Penetration Testing Framework.
GNU General Public License v3.0
1.75k stars 388 forks source link

[Multiple Suggestions] #16

Open s0md3v opened 5 years ago

s0md3v commented 5 years ago

Hi there,

First of all, this is awesome and thanks for keeping it open source :heart:

Kudos :tada:

0xInfection commented 5 years ago

First of all thank you for taking the time to put together these suggestions. I will definitely take a look at these. Meanwhile I am already working on these:

OGcanviz commented 5 years ago

Thanks for all the work you put into this framework. When do you expect the CLI implementation will be ready? I'd like to bake this into CICD pipelines.

0xInfection commented 5 years ago

@OGcanviz I appreciate your such interest in my work. I can't assure of the time when the implementation will be ready, since I am in the middle of my exams and am running too short on time.

But I can assure you, everything will be ready on next v2 release. I am planning for a big release with total new modular console interface, a campaign feature, new con... shhh... let that be a suspense for now. ;)

OGcanviz commented 5 years ago

Good luck with your exams! Looking forward to seeing V2.

vaclaviklluk commented 5 years ago

What can I do, if website uses some kind of authorization ? I would really appreciate possibility to define user's credentials, HTTP headers (Authorization). But awesome tool anyway. Thanks.

0xInfection commented 5 years ago

@vaclaviklluk, this idea will be implemented in v2, for now there is no method for such implementation.

iNoSec commented 5 years ago

Hi and thanks for this tool. I try to make a framework for automate a lot of recon and maybe exploitation (but on mature company, automation for XSS, SQLi etc is useless and i dont want to make a tool for skiddie to point and click) I only know web coding and bash scripting but i can read some others language like python etc.

So all that to ask if i could reuse some part of your code, i dont know which part for the moment. i would comment your code to say thats yours and make a readme saying your work inspire me and you write some modules and enumerate them.

I dont ask for making part of this amazing project because i cant have more free time for an ther project and i want to make a framework more on automate recon for bug hunting and maybe include some tools like sqlmap for some exploitation.

Thanks for reading and i hope we can talk and maybe code together one day :D

Atavic commented 5 years ago

It is open-source