- INFO
- Whois lookup information about host
- Search for links, keywords related to sensitive data, emails and code comments
- Present HTTP response code and headers
- HEADERS
- Verify the use of security headers and information about the Server version and framework
- COOKIES
- If cookies are detected, verify the use of Secure and HttpOnly flags
- METHODS
- Send HTTP request using different methods and show status code and reason for each case
- AUTOCOMPLETE
- If any password input is detected, verify the use of 'autocomplete=off' parameter
- ENUM
- Enumerate directories,using 'diretorios.txt' text file
- SPIDER
- Spidering of webpage;
Downloading it
- git clone https://github.com/sampzzz/pluma/
To install the required libraries:
- pip3 install -r requirements.txt