Are there any open source website vulnerability software packages out there?

8    20 Sep 2016 19:20 by u/Codewow

I'm wanting to test my own sites for vulnerabilities as best I can, are there any good resources?

Extra ?: Is there any way simulate DDoSing or is there any way to DDoS my own websites on much smaller scales than say, an attack on Facebook or Blizzard Entertainment?

4 comments

1

There is a bunch. Some are bundled with Kali.

Don't try DDoS over the internet, your provider might cut you off. But in a local network it's a good idea to look where the bottleneck will be.

0

I only intended local network testing. Was going to throw up my dedicated server with the website and spam it until it dies. I just don't know how haha.

0

As said Kali bundles some tools. The classic would be Metasploit, which is free for some checks but others are commercial IIRC. If you want a simple load test, just script curl or wget, but without JS the load profile might not be that realistic.

0

For load testing, you can try JMeter: https://jmeter.apache.org/ Would be good if you are combining it with a J2EE environment.

[edit: typo]