1N3 / Sn1per

Attack Surface Management Platform
https://sn1persecurity.com
Other
7.9k stars 1.82k forks source link

Sn1per Pro 9.3 SE: Ubuntu 20.04.3 LTS: Some apps not working #367

Closed blackstone250 closed 2 years ago

blackstone250 commented 2 years ago

Hi,

The following apps are not working, in spite of, i manually check and install their dependencies. Were tested in a clean Ubuntu 20.04 LTS image before and after installing their dependencies.

imagen

Important Note: i was checking and In this particular case, the same website tested with WPSCAN app was rejected because of a WAF and then because of a website that was not using Wordpress (is a mistake in the Sn1per message error or a general error?)

imagen

imagen imagen

CMSMAP still working after a day scanning

imagen

Important Note:: I was checking IP scanned by CMSMAP and is possible blocked by WAF because of request of the app

OS information

imagen

Openvas installation damages Sniper web interface (Kali Linux & Ubuntu)

imagen

Thank you for your help!

blackstone250 commented 2 years ago

Hi, @1N3 did you tested Sn1per in Ubuntu LTS for non docker installation? (I have Sn1per Pro full) Do you suggest only Kali Linux OSto use Sn1per? Thank you for your help and opinion!

1N3 commented 2 years ago

Sn1per has been tested on Ubuntu 20.04 LTS but the preferred OS is Kali Linux.

Regarding CMSMap getting blocked by WAF, you will need to disable CMSMap in your sniper.conf to get around this or run 'stealth' mode scans only.

For WPScan, try running the scan manually from the CLI and see if you are prompted to upgrade wpscan to the latest version. If so, upgrade and try re-running WPScan via Sn1per to see if that works.

For OpenVAS, try stopping the OpenVAS service (openvas-stop), starting Apache (ie. service apache2 start), then re-start the OpenVAS service again after (openvas-start).

blackstone250 commented 2 years ago

Hi @1N3

Thank you for response!

Regarding CMSMap: Solved:

Regarding WPscan: the error is a false positive when Wpscan cannot scan a website.

Regard Openvas: Always is a problem, i'm waiting for a plugin from Sn1per and instructions to install it.

Thanks!