Sunday, 11 May 2014

How to use Joomscan in kali linux ?

// Introduction:-

 The main purpose of Joomscan is to detects file inclusion, sql injection, command execution vulnerabilities of a target Joomla! web site.Joomla! is probably the most widely-used CMS out there due to its flexibility, user-friendlinesss, extensibility to name a few. So, watching its vulnerabilities and adding such vulnerabilities as KB to Joomla scanner takes ongoing activity.It will help web developers and web masters to help identify possible security weaknesses on their deployed Joomla! sites.

// How To Open :-


A. GUI Method
Application →Kali linux → Web Applications → Web Vulnerability Scanners → joomscan

// B. open terminal and type joomscan



2. This command is used to scan a target for finding the vulenerabilities .
Syntax :- joomscan –u target url
Ex :– joomscan –u djmaza.in


3. As you can see the scan has been started and as result it is showing us – server information means which server using this website, Anti scanner and joomla firewall etc.


4. This is the 2nd image of our scan result ( sorry I can’t show you whole scan image due to large scanning). So, here you can seefingerprinting, and the most important part  ‘Vulnerabilities’. At the end of #1 scan you will notice this is saying ‘Vulnerable ? Yes’ It means we got a weakness of target website.



5. Here you can see total number of vulnerabilities which found on scan and you can also notice the scan time.



That's It 

1 comment:

  1. Do you need to increase your credit score?
    Do you intend to upgrade your school grade?
    Do you want to hack your cheating spouse Email, whatsapp, Facebook, instagram or any social network?
    Do you need any information concerning any database.
    Do you need to retrieve deleted files?
    Do you need to clear your criminal records or DMV?
    Do you want to remove any site or link from any blog?
    you should contact this hacker, he is reliable and good at the hack jobs..
    contact : cybergoldenhacker at gmail dot com

    ReplyDelete