Click Jacking Test Script

Some of you may have been observant and noticed that Nikto has alerted about the lack of the X-Frame-Options header from web servers. This headers gives hints to the user agent on how it should be handled from within a frame, effectively preventing click-jacking, or the overlaying of information over a frame to fool a user into clicking on something they don't want to.

Nikto Dev Now on Github

Recently all new Nikto development has moved from Assembla to GitHub!

NIkto 2.1.5

We're happy to announce the immediate availability of Nikto 2.1.5, and that Nikto is now sponsored by Sunera LLC!

Nikto is an open source web server scanner which performs comprehensive tests against web servers for multiple items, including over 6500 potentially dangerous files/CGIs, checks for outdated versions of over 1200 servers, and version specific problems on over 270 servers.

Nikto 2.1.4 available!

We're happy to announce the immediate availability of Nikto 2.1.4!

Nikto is an open source web server scanner which performs comprehensive tests against web servers for multiple items, including over 6400 potentially dangerous files/CGIs, checks for outdated versions of over 1000 servers, and version specific problems on over 270 servers.

This release contains a number of important bug fixes, as well as new functionality and improvements, including:

HTTPS Everywhere Rules

Here are some easy rules to use for HTTPS Everywhere with cirt.net and assembla.com.

File: assembla.xml

File: cirt.xml

Use it by placing it in the HTTPSEverywhereUserRules/ subdirectory in your Firefox profile directory, and then restarting Firefox.

Using Nikto with Nessus (Video)

Paul over at Tenable Security Podcast has put together a concise video on how to integrate Nikto directly into Nessus. Definitely worth watching if you're trying to get that set up.

Pages

Error | CIRT.net

Error

The website encountered an unexpected error. Please try again later.