Performs non-intrusive testing, sending packets to the target that appear as regular web page requests. Uses command line arguments to conduct a passive analysis.
02
Technology detection
Examines web server HTTP Headers and the HTML source of a web page to determine technologies in use. Identifies web server and version (nginx, IIS, apache), content management system (wordpress, joomla, drupal), management applications (phpmyadmin, tomcat administration pages), javascript frameworks (ember.js, angularjs), web analytics javascript (google analytics), and server backend scripting languages (cold fusion, php, django, java).
03
Version detection
Determines the type and version of software, which can be used to find exploits that affect particular versions of the software.
04
Plugin system
Utilizes over 250 plugins to identify known technologies, even when 'Powered By' references are removed.