
Implementing SQLi, LFI, RFI scanner

Opened this issue · 5 comments

Currently Vault only supports XSS Scanning, we need to extend this support to SQLi, LFI, RFI.

I would like work on this issue and also i would like to first implement LFI and RFI scanning, then SQLi.

Go ahead :)

Do you know any live vulnerable (intended) website where i can test before pushing?

You can host dvwa or bwapp on your local host for testing the scanner

@realsdx, 0xPrateek is right, install a Metaspoiltable box on your virtual machine and perform every test there.
Join this gitter channel, you'll come to know : https://gitter.im/vault_scanner/kwoc