Closed mkrahal closed 9 years ago
P.S: Sorry for the lengthy post... Log was consequent. I guess that the gist of it all is that i get the following 5 errors:
-[ArgumentError] Missing :url. -Fontconfig error: Cannot load default config file -[NoMethodError] undefined method cookies' for nil:NilClass -Could not respawn the browser, will try again at the next job -Connection refused - SSL_connect for '127.0.0.1:4679'
Thank you for your time.
I've recently identified a memory leak in the JS library used for the WebUI charts and exhausting the available RAM could be the reason behind these issues. So, did you have the charts enabled while monitoring the scan?
Btw, the "Missing :url" and "Fontconfig" errors aren't really important.
Hey zapotek,
Thanks for clearing it up the missing url and font config, at least i dont have to worry about that. As for charts, no these not visible during scan. Only statistics and issues were visible. I'm re-running another scan as we speak with statitics invisible aswell. dont know if that will make such a difference... Any idea what might be causing this?
No problem.
Hm, I'd say resource starvation still, but maybe due to a different cause. What are the resources of your system and how much of them does Arachni use? Keep in mind that the WebUI and the Instances (scanners) live in different processes.
Mmmm, thats odd, ressources don't seem to be the issue here as I've got CPU usage @ ~ 10% and RAM at ~ 50%. Enclosed is the output of top command, captured while scan is up and running.
top - 18:06:31 up 56 min, 4 users, load average: 0.97, 1.13, 1.06
Tasks: 201 total, 2 running, 199 sleeping, 0 stopped, 0 zombie
Cpu(s): 11.2%us, 2.6%sy, 0.0%ni, 81.9%id, 4.2%wa, 0.0%hi, 0.1%si, 0.0%st
Mem: 3825928k total, 3662356k used, 163572k free, 135488k buffers
Swap: 3959932k total, 41200k used, 3918732k free, 1346536k cached
PID USER PR NI VIRT RES SHR S %CPU %MEM TIME+ COMMAND
4056 root 20 0 2095m 47m 19m S 8 1.3 0:23.09 phantomjs
1671 root 20 0 146m 12m 4164 S 2 0.3 1:02.95 Xorg
5347 root 20 0 2088m 42m 19m S 2 1.1 0:07.78 phantomjs
5420 root 20 0 2079m 29m 17m S 2 0.8 0:01.41 phantomjs
6040 root 20 0 17464 1352 956 R 2 0.0 0:00.01 top
23836 ubu1 20 0 558m 16m 9.8m S 2 0.5 0:05.52 gnome-terminal
23984 root 20 0 616m 262m 6952 S 2 7.0 2:04.47 ruby
24269 root 20 0 842m 75m 4880 S 2 2.0 0:17.68 ruby
24301 root 20 0 689m 62m 3264 S 2 1.7 0:08.49 ruby
25428 root 20 0 2671m 392m 5968 S 2 10.5 6:53.02 ruby
29262 root 20 0 0 0 0 R 2 0.0 0:00.82 kworker/0:0
1 root 20 0 24712 2384 1216 S 0 0.1 0:00.89 init
2 root 20 0 0 0 0 S 0 0.0 0:00.00 kthreadd
3 root 20 0 0 0 0 S 0 0.0 0:00.09 ksoftirqd/0
6 root RT 0 0 0 0 S 0 0.0 0:00.06 migration/0
7 root RT 0 0 0 0 S 0 0.0 0:00.01 watchdog/0
8 root RT 0 0 0 0 S 0 0.0 0:00.06 migration/1
10 root 20 0 0 0 0 S 0 0.0 0:00.17 ksoftirqd/1
12 root RT 0 0 0 0 S 0 0.0 0:00.01 watchdog/1
13 root RT 0 0 0 0 S 0 0.0 0:00.10 migration/2
14 root 20 0 0 0 0 S 0 0.0 0:01.96 kworker/2:0
15 root 20 0 0 0 0 S 0 0.0 0:00.07 ksoftirqd/2
16 root RT 0 0 0 0 S 0 0.0 0:00.01 watchdog/2
17 root RT 0 0 0 0 S 0 0.0 0:00.00 migration/3
19 root 20 0 0 0 0 S 0 0.0 0:00.03 ksoftirqd/3
20 root RT 0 0 0 0 S 0 0.0 0:00.01 watchdog/3
21 root 0 -20 0 0 0 S 0 0.0 0:00.00 cpuset
22 root 0 -20 0 0 0 S 0 0.0 0:00.00 khelper
23 root 20 0 0 0 0 S 0 0.0 0:00.00 kdevtmpfs
24 root 0 -20 0 0 0 S 0 0.0 0:00.00 netns
26 root 20 0 0 0 0 S 0 0.0 0:00.00 sync_supers
27 root 20 0 0 0 0 S 0 0.0 0:00.00 bdi-default
28 root 0 -20 0 0 0 S 0 0.0 0:00.00 kintegrityd
29 root 0 -20 0 0 0 S 0 0.0 0:00.00 kblockd
30 root 0 -20 0 0 0 S 0 0.0 0:00.00 ata_sff
31 root 20 0 0 0 0 S 0 0.0 0:00.00 khubd
32 root 0 -20 0 0 0 S 0 0.0 0:00.00 md
35 root 20 0 0 0 0 S 0 0.0 0:00.00 khungtaskd
36 root 20 0 0 0 0 S 0 0.0 0:02.13 kswapd0
37 root 25 5 0 0 0 S 0 0.0 0:00.00 ksmd
38 root 39 19 0 0 0 S 0 0.0 0:00.00 khugepaged
39 root 20 0 0 0 0 S 0 0.0 0:00.00 fsnotify_mark
40 root 20 0 0 0 0 S 0 0.0 0:00.00 ecryptfs-kthrea
41 root 0 -20 0 0 0 S 0 0.0 0:00.00 crypto
49 root 0 -20 0 0 0 S 0 0.0 0:00.00 kthrotld
50 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_0
51 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_1
52 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_2
53 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_3
54 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_4
55 root 20 0 0 0 0 S 0 0.0 0:00.00 scsi_eh_5
60 root 20 0 0 0 0 S 0 0.0 0:00.95 kworker/u:6
80 root 0 -20 0 0 0 S 0 0.0 0:00.00 devfreq_wq
425 root 20 0 0 0 0 S 0 0.0 0:00.08 jbd2/sda7-8
426 root 0 -20 0 0 0 S 0 0.0 0:00.00 ext4-dio-unwrit
563 root 20 0 17232 620 436 S 0 0.0 0:00.10 upstart-udev-br
565 root 20 0 22040 1852 804 S 0 0.0 0:00.09 udevd
601 root -51 0 0 0 0 S 0 0.0 0:00.00 irq/43-mei
761 root 0 -20 0 0 0 S 0 0.0 0:00.00 cfg80211
799 root 0 -20 0 0 0 S 0 0.0 0:00.00 kpsmoused
873 root 20 0 0 0 0 S 0 0.0 0:00.17 kworker/u:1
904 root 20 0 0 0 0 S 0 0.0 0:01.75 kworker/3:2
968 root 0 -20 0 0 0 S 0 0.0 0:00.00 kmpathd
971 root 0 -20 0 0 0 S 0 0.0 0:00.00 kmpath_handlerd
986 root 0 -20 0 0 0 S 0 0.0 0:00.00 hd-audio0
1088 ubu1 20 0 762m 52m 22m S 0 1.4 0:01.36 chrome
1163 root 20 0 19200 880 604 S 0 0.0 0:00.00 rpcbind
1199 root 20 0 15188 392 188 S 0 0.0 0:00.01 upstart-socket-
1244 root 0 -20 0 0 0 S 0 0.0 0:00.00 hci0
1300 root 20 0 0 0 0 S 0 0.0 0:00.67 jbd2/sda5-8
1301 root 0 -20 0 0 0 S 0 0.0 0:00.00 ext4-dio-unwrit
1328 root 0 -20 0 0 0 S 0 0.0 0:00.00 rpciod
1340 root 0 -20 0 0 0 S 0 0.0 0:00.00 nfsiod
1353 root 20 0 25540 320 100 S 0 0.0 0:00.00 rpc.idmapd
1370 syslog 20 0 243m 1036 912 S 0 0.0 0:00.15 rsyslogd
1371 messageb 20 0 24784 1924 796 S 0 0.1 0:01.12 dbus-daemon
1382 root 20 0 21188 1476 1152 S 0 0.0 0:00.00 bluetoothd
1391 root 10 -10 0 0 0 S 0 0.0 0:00.00 krfcommd
1392 root 20 0 235m 4032 2864 S 0 0.1 0:00.34 NetworkManager
1394 avahi 20 0 32308 1424 1116 S 0 0.0 0:00.03 avahi-daemon
1395 avahi 20 0 32180 388 132 S 0 0.0 0:00.00 avahi-daemon
1398 root 20 0 190m 3728 2492 S 0 0.1 0:00.51 polkitd
1471 root 20 0 101m 2720 1636 S 0 0.1 0:00.03 cupsd
1477 root 20 0 31800 1480 916 S 0 0.0 0:00.75 wpa_supplicant
1479 statd 20 0 21504 1164 704 S 0 0.0 0:00.00 rpc.statd
1492 root 20 0 23788 932 764 S 0 0.0 0:00.00 getty
1498 root 20 0 23788 928 764 S 0 0.0 0:00.00 getty
1511 root 20 0 23788 928 764 S 0 0.0 0:00.00 getty
1512 root 20 0 23788 928 764 S 0 0.0 0:00.00 getty
1513 root 20 0 128m 3292 2268 S 0 0.1 0:00.00 mdm
1515 root 20 0 23788 924 764 S 0 0.0 0:00.00 getty
1535 root 20 0 4460 808 524 S 0 0.0 0:00.00 acpid
1541 root 20 0 15980 680 504 S 0 0.0 0:00.49 irqbalance
1548 root 20 0 258m 3620 1872 S 0 0.1 0:00.33 libvirtd
1566 root 20 0 19112 956 716 S 0 0.0 0:00.00 cron
1567 daemon 20 0 16908 376 216 S 0 0.0 0:00.00 atd
1580 root 35 15 21868 6160 960 S 0 0.2 0:05.05 preload
1645 root 20 0 182m 3572 2272 S 0 0.1 0:00.03 mdm
1670 libvirt- 20 0 25972 960 748 S 0 0.0 0:00.00 dnsmasq
1682 root 20 0 23788 768 764 S 0 0.0 0:00.00 getty
1736 root 20 0 0 0 0 S 0 0.0 0:00.42 kworker/0:2
2190 root 20 0 7264 1188 688 S 0 0.0 0:00.00 dhclient
2228 nobody 20 0 36824 1460 1224 S 0 0.0 0:00.52 dnsmasq
2357 root 20 0 0 0 0 S 0 0.0 0:00.78 flush-8:0
2846 ubu1 20 0 288m 2612 1900 S 0 0.1 0:00.07 gnome-keyring-d
2849 root 20 0 2042m 3512 2452 S 0 0.1 0:00.28 console-kit-dae
2922 ubu1 20 0 385m 8080 5392 S 0 0.2 0:00.23 x-session-manag
2991 ubu1 20 0 12568 324 0 S 0 0.0 0:00.00 ssh-agent
2994 ubu1 20 0 26560 488 220 S 0 0.0 0:00.00 dbus-launch
2995 ubu1 20 0 25136 2248 600 S 0 0.1 0:01.32 dbus-daemon
3006 ubu1 20 0 738m 15m 8684 S 0 0.4 0:02.16 gnome-settings-
3013 root 20 0 214m 3736 2624 S 0 0.1 0:00.28 upowerd
3073 ubu1 20 0 56184 2136 1736 S 0 0.1 0:00.02 gvfsd
3078 ubu1 20 0 267m 2420 1924 S 0 0.1 0:00.00 gvfs-fuse-daemo
3307 colord 20 0 488m 9780 6912 S 0 0.3 0:00.10 colord
3318 ubu1 20 0 309m 19m 7800 S 0 0.5 0:29.19 compiz
3475 ubu1 20 0 61656 3404 1872 S 0 0.1 0:00.10 gconfd-2
3606 root 20 0 118m 3040 2496 S 0 0.1 0:00.07 accounts-daemon
3681 ubu1 20 0 49964 2008 1560 S 0 0.1 0:00.18 gvfsd-metadata
3682 ubu1 20 0 20184 812 640 S 0 0.0 0:01.43 syndaemon
3687 ubu1 9 -11 352m 3904 1956 S 0 0.1 0:00.08 pulseaudio
3689 rtkit 21 1 164m 1308 1084 S 0 0.0 0:00.02 rtkit-daemon
3692 ubu1 20 0 468m 9.9m 6372 S 0 0.3 0:00.14 bluetooth-apple
3693 ubu1 20 0 579m 13m 8928 S 0 0.4 0:00.21 nm-applet
3695 ubu1 20 0 603m 39m 9496 S 0 1.0 0:11.94 gnome-panel
3698 ubu1 20 0 444m 7276 4936 S 0 0.2 0:00.09 gnome-fallback-
3699 ubu1 20 0 1096m 64m 14m S 0 1.7 0:50.19 nautilus
3700 ubu1 20 0 226m 7212 5016 S 0 0.2 0:00.11 polkit-gnome-au
3709 ubu1 20 0 216m 3576 2672 S 0 0.1 0:00.03 gvfs-gdu-volume
3712 root 20 0 197m 3644 2688 S 0 0.1 0:00.11 udisks-daemon
3719 ubu1 20 0 255m 2512 1880 S 0 0.1 0:00.20 dconf-service
3729 root 20 0 45516 772 420 S 0 0.0 0:00.00 udisks-daemon
3732 ubu1 20 0 142m 2004 1508 S 0 0.1 0:00.00 gvfs-afc-volume
3735 ubu1 20 0 64140 2204 1656 S 0 0.1 0:00.00 gvfs-gphoto2-vo
3736 ubu1 20 0 4400 532 432 S 0 0.0 0:00.00 sh
3737 ubu1 20 0 320m 11m 8280 S 0 0.3 0:01.70 gtk-window-deco
3742 ubu1 20 0 60852 2852 2228 S 0 0.1 0:00.04 gvfsd-trash
3745 ubu1 20 0 56212 2356 1940 S 0 0.1 0:00.00 gvfsd-burn
3750 ubu1 20 0 382m 9.8m 6396 S 0 0.3 0:00.14 trashapplet
3754 ubu1 20 0 487m 13m 8528 S 0 0.4 0:01.54 indicator-apple
3759 ubu1 20 0 339m 4204 3152 S 0 0.1 0:00.03 indicator-appli
3762 ubu1 20 0 591m 4932 3548 S 0 0.1 0:00.07 indicator-sessi
3764 ubu1 20 0 483m 5452 3836 S 0 0.1 0:00.02 indicator-datet
3766 ubu1 20 0 520m 5244 3744 S 0 0.1 0:00.09 indicator-sound
3767 ubu1 20 0 403m 8168 5392 S 0 0.2 0:00.09 indicator-print
3773 ubu1 20 0 628m 4592 3304 S 0 0.1 0:00.04 indicator-messa
3789 ubu1 20 0 47884 2312 1868 S 0 0.1 0:00.01 geoclue-master
3802 ubu1 20 0 324m 5436 4176 S 0 0.1 0:00.05 ubuntu-geoip-pr
3811 ubu1 20 0 177m 7836 5288 S 0 0.2 0:00.09 gdu-notificatio
4406 ubu1 20 0 407m 4824 3564 S 0 0.1 0:00.14 zeitgeist-datah
4412 ubu1 20 0 340m 4344 3232 S 0 0.1 0:00.18 zeitgeist-daemo
4418 ubu1 20 0 239m 6608 4404 S 0 0.2 0:00.18 zeitgeist-fts
4426 ubu1 20 0 15184 580 484 S 0 0.0 0:00.00 cat
4546 root 20 0 0 0 0 S 0 0.0 0:00.11 kworker/1:2
4648 root 20 0 2092m 42m 19m S 0 1.1 0:23.39 phantomjs
5184 root 20 0 0 0 0 S 0 0.0 0:00.00 kworker/u:0
5454 ubu1 20 0 801m 119m 25m S 0 3.2 0:04.94 chrome
5655 root 20 0 0 0 0 S 0 0.0 0:00.06 kworker/0:1
5745 root 20 0 2006m 25m 14m S 0 0.7 0:00.79 phantomjs
5813 ubu1 20 0 705m 36m 16m S 0 1.0 0:00.22 chrome
5993 root 20 0 1997m 20m 12m S 0 0.6 0:00.23 phantomjs
11794 ubu1 20 0 70708 34m 5884 S 0 0.9 0:08.01 ruby
11832 ubu1 20 0 267m 2532 2016 S 0 0.1 0:00.00 at-spi-bus-laun
13666 root 20 0 21732 1096 348 S 0 0.0 0:00.00 udevd
23116 root 20 0 0 0 0 S 0 0.0 0:00.00 kworker/3:0
23842 ubu1 20 0 14788 848 684 S 0 0.0 0:00.00 gnome-pty-helpe
23843 ubu1 20 0 32316 5268 1504 S 0 0.1 0:00.23 bash
23961 root 20 0 88400 2004 1396 S 0 0.1 0:00.01 sudo
23962 root 20 0 89996 1748 1256 S 0 0.0 0:00.00 su
23970 root 20 0 28980 2028 1532 S 0 0.1 0:00.00 bash
23999 ubu1 20 0 1467m 98m 49m S 0 2.6 0:38.68 chrome
24008 ubu1 20 0 15184 536 448 S 0 0.0 0:00.00 cat
24009 ubu1 20 0 15184 508 420 S 0 0.0 0:00.00 cat
24011 ubu1 20 0 6460 392 312 S 0 0.0 0:00.00 chrome-sandbox
24012 root 20 0 22036 1372 324 S 0 0.0 0:00.00 udevd
24013 ubu1 20 0 344m 26m 18m S 0 0.7 0:00.04 chrome
24015 ubu1 20 0 6460 396 312 S 0 0.0 0:00.00 chrome-sandbox
24016 ubu1 20 0 83684 3608 2508 S 0 0.1 0:00.00 nacl_helper
24018 ubu1 20 0 352m 8568 756 S 0 0.2 0:00.02 chrome
24038 ubu1 20 0 556m 88m 31m S 0 2.4 0:23.88 chrome
24045 ubu1 20 0 321m 7308 424 S 0 0.2 0:00.00 chrome
24090 root 20 0 0 0 0 S 0 0.0 0:00.00 kworker/2:1
24091 ubu1 20 0 927m 232m 24m S 0 6.2 1:08.79 chrome
24128 ubu1 20 0 32316 5264 1504 S 0 0.1 0:00.20 bash
24245 root 20 0 88400 1984 1396 S 0 0.1 0:00.01 sudo
24247 root 20 0 89996 1256 1256 S 0 0.0 0:00.00 su
24255 root 20 0 28976 1600 1532 S 0 0.0 0:00.01 bash
24281 root 20 0 168m 62m 3268 S 0 1.7 0:08.83 ruby
24286 root 20 0 299m 63m 3264 S 0 1.7 0:09.08 ruby
24291 root 20 0 428m 62m 3260 S 0 1.7 0:09.15 ruby
24296 root 20 0 430m 62m 3264 S 0 1.7 0:08.47 ruby
24330 ubu1 20 0 766m 59m 22m S 0 1.6 0:03.62 chrome
24367 root 20 0 1926m 21m 10m S 0 0.6 0:05.41 phantomjs
27482 ubu1 20 0 788m 79m 26m S 0 2.1 0:16.94 chrome
27717 ubu1 20 0 674m 25m 9892 S 0 0.7 0:00.80 chrome
27842 root 20 0 0 0 0 S 0 0.0 0:00.40 kworker/1:1
31735 root 20 0 0 0 0 S 0 0.0 0:00.32 kworker/1:0
32433 ubu1 20 0 32316 5444 1588 S 0 0.1 0:00.23 bash
32626 root 20 0 88400 2176 1412 S 0 0.1 0:00.02 sudo
32677 root 20 0 89996 1872 1256 S 0 0.0 0:00.00 su
32685 root 20 0 28976 2084 1576 S 0 0.1 0:00.02 bash
Oh god... that was way longer than i thought...
Arachni may not be using a lot of memory, but the system is almost out regardless: 3825928k total, 3662356k used
If this is a VM, could you please increase the RAM and retry?
I see that there's plenty of swap available, but humour me for a second.
No its not a VM its an actual OS install, as such Increasing RAM would not be an option... and yeah i guess the swap is pretty large, i had alot of unnecessary disk space while partitioning, ergo large swap.
Anything i could do to reduce RAM usage??
I dont mind running in command line interface. I'm just wondering if that will dramatically decrease RAM usage. And will the final output be the same as with a web interface? (i.e are reports generated, would i be able to export them to different formats, will i get a description for each vulnerability etc...) Or better yet, would it be possible for me to scan using command line, then import scan results back into the web interface to use its functionality (I know thats a long shot).
I guess what i'm asking is what would you do in my place. Once again thanks for everything
Yeah better use the CLI scanner and also have a look at: http://support.arachni-scanner.com/kb/general-use/optimizing-for-faster-scans
The above resource will guide you through options that affect performance and resource usage, in your case decreasing the values of these options would be the best course of action; that'll decrease performance but what can you do.
And yeah you'll be able to get a synopsis at the end and an AFR file you can convert to the supported formats via the arachni_reporter
executable.
You can also import that file into the WebUI with the arachni_web_scan_import
executable and it'll look as if the scan was performed via the WebUI.
By the way, I see a few more ruby
processes than I expected so be sure to kill them manually if necessary, along with any phantomjs
ones before you start using the CLI.
However, that would still leave you with about 1GB for Arachni and its browsers which is usually fine, but doesn't leave a lot of wiggle room.
Let me know how that works out.
Cheers
Closing this since I don't think there's anything wrong with Arachni, but please do keep my posted on how the scan went.
Cheers
You sir are the arachni whisperer!! The entire memory issue seems to be solved running far more stable now... Awesome. Imported back into the web interface and voila... Magic at its best..
Only, for some reason the scan didnt go through all the checks it used to preform on the web interface which was running on the default profile. I was getting something like 158 issues when scanning with the web ui. now i only found 32....
To run arachni from command line i issued the command: arachni http://www.xxxxxxxxxxxx.com/
Am i missing a parameter in this command??? should arachni be told to use all profiles?? How do i specify through the command line that arachni should use the default profile when scaning?? I tried looking at https://github.com/Arachni/arachni/wiki/Command-line-user-interface. but couldnt find it.
Thanks again Zapotek.
Well, Arachni has a dev team of 1 (me) so I'm intimately familiar with all of it, that makes debugging easier. :)
About the profiles, the CLI default options are identical to the WebUI "Default" profile.
The large amount of issues is a bit worrying though, these wouldn't by any chance be common or backup files and directories? v1.0 had some trouble identifying custom-404 responses in some edge-cases and that used to yield lots of discovery FPs. Thankfully, the upcoming v1.1 release shouldn't have that issue as it'll include more advanced analysis and also allow for more edge cases to be easily accommodated once spotted.
You can call me Tasos btw.
Alright cool, well Tasos your doing one hell of an awesome job here... Really its quite something, especially alone. Hats off!
Um well yeah a majority of the issues that were dropped were in fact common or backup files and directories, but it also dropped a few Blind No SQL Injections and a few reqular SQL injections.
I'm also worried that it is not using the actual default profile as a new profile was created when i imported the the .afr file. called "Created for imported scan 3"
When i check the configuration of this profile and compare it to that of Default the two are in fact very different. (ie not all elements ticked in Default are ticked in "Created for imported scan 3", input values are non-existant in the one created for scan 3 etc...)
Is there anyway i can force it through the command line to use the Default profile (the one shown on the web ui).
Other than that its awesome thanks for this great tool! Runs smooooth and clean now ...
Ohh and btw if i'm calling you Tasos you gotta call me Moe :+1:
I think i got it correct me if i'm wrong...
Download the default profile afp file through the web interface, place it in /bin then call arachni using: arachni http://www.xxxxxxxxxxx.com Load DefaultProfile.afp
Will test and be back with results.
Hm, I doubt that both a NoSQL and an SQL injection were true, or either for that matter. Would you mind sending me the data privately in order to make sure they weren't FPs?
About the differences in the profiles, the default Framework options won't be included in the profile associated with the AFR because they don't need to be, as they are the Framework defaults. The only reason these are set in the default WebUI profiles is just that so you can edit them in a fashion more suiting to that user interface. HTTP request concurrency and input values etc. will probably not be set at all, which will essentially have the same result as if they were set to the values of the Default profile.
The ticked elements should be identical though (Links, Forms, Cookies), what are the differences?
Btw, if you made changes to the Default profile of the WebUI and assumed the CLI will use them then I completely misunderstood what you meant. That won't happen, the 2 interfaces don't share anything.
Mmmmm.... i see, it all makes sense considering that not ticked = default.
Yeah i dont mind sending the scan over. Its just that the web ui scan in question stopped when "The Instance encountered a fatal error and stopped." like i mentioned above. Since i haven't been able to extract a report for that scan from the web ui. The buttons reffering to reports are not available on the left hand side of the ui for this scan....
regardin your last point, that wasnt what i meant, i fully understand that the ui is totally indpendent from the CLI. I just wanted to export a
Ah OK, fair enough. If you see anything suspicious (other than the discovery FPs) on subsequent scans please let me know.
Will do thanks again. What your doing is really awesome. keep it up. The internet needs more of these types of ventures
Thanks for the kind words man. :)
Good afternoon,
I'm trying to use arachni to test the we applications on my site, to secure it. Unfortunately while scanning my website using archini_web the scan registers some errors and returns the following message:"This scan has the logged the following errors (you may want to report them):" The scan continues and later freezes up the entire system which needs to be rebooted to recover.
I have tried scanning with different installations of the arachni-1.0.6-0.5.6-linux-x86_64.tar.gz on two different instances of ubuntu 12.04 and 14.04. but i still get errors and eventually the entire system freezes. Below are the errors recorded while scanning, all input would be highly appreciated.
Thank for your consideration, Regards.