Are there any open source website vulnerability software packages out there?
8 20 Sep 2016 19:20 by u/Codewow
I'm wanting to test my own sites for vulnerabilities as best I can, are there any good resources?
Extra ?: Is there any way simulate DDoSing or is there any way to DDoS my own websites on much smaller scales than say, an attack on Facebook or Blizzard Entertainment?
4 comments
1 u/Stavon 20 Sep 2016 19:34
There is a bunch. Some are bundled with Kali.
Don't try DDoS over the internet, your provider might cut you off. But in a local network it's a good idea to look where the bottleneck will be.
0 u/Codewow [OP] 20 Sep 2016 19:36
I only intended local network testing. Was going to throw up my dedicated server with the website and spam it until it dies. I just don't know how haha.
0 u/Stavon 20 Sep 2016 19:42
As said Kali bundles some tools. The classic would be Metasploit, which is free for some checks but others are commercial IIRC. If you want a simple load test, just script curl or wget, but without JS the load profile might not be that realistic.
0 u/CameBackForAVent 02 Oct 2016 09:54
For load testing, you can try JMeter: https://jmeter.apache.org/ Would be good if you are combining it with a J2EE environment.
[edit: typo]