berikut adalah contoh penggunaan nikto di linux..
sebelumnya… nikto adalah salah satu tools untuk melakukan pengecekan pada web server
apakah suatu web server memiliki celah or lubang or bugs..
yang berpotensi untuk di susupi oleh peretas.. dunia maya…
cara install
linux : root@zer03s:# sudo apt-get install nikto
win#%$ :
[You must be registered and logged in to see this link.]silahkan baca distu ych..heee.,malez ngetik ulang..
prachtheck….==>>>>>>
root@zer03s:/home/zer03s# nikto -h
[You must be registered and logged in to see this link.]- Nikto v2.03/2.04
—————————————————————————
+ Target IP: 222.124.180.250
+ Target Hostname:
[You must be registered and logged in to see this link.]+ Target Port: 80
+ Start Time: 2010-05-23 18:14:05
—————————————————————————
+ Server: Apache
- /robots.txt – contains 1 ‘disallow’ entry which should be manually viewed. (GET)
+ OSVDB-0: Retrieved X-Powered-By header: PHP/5.2.9
+ OSVDB-0: ETag header found on server, inode: 8208522, size: 34, mtime: 0x46bd84b395880
+ OSVDB-637: GET /~root – Enumeration of users is possible by requesting ~username (responds with ‘Forbidden’ for users, ‘not found’ for non-existent users).
+ OSVDB-0: GET /help/ : Help directory should not be accessible
+ OSVDB-0: GET /index.php?module=My_eGallery : My_eGallery prior to 3.1.1.g are vulnerable to a remote execution bug via SQL command injection.
+ OSVDB-0: GET /index.php?option=search&searchword=