Drupal Security Scanner Released: DPScan
The very First Security threat scanner for Drupal CMS has been recently released by Ali elouafiq according to his blog. His team has developed a tool which will help to enumerate at least the modules used by Drupal CMS so that people can stimulate aWhite Box auxit on their private machines.
This is a very small tool which is accessible for us and its free. It can be very helpful to auditors and penetration testers to complete their job faster.
The simple Demo of the tool is below. You must download the script (in python) before you try and after you are done simply type:
> python DPScan.py [website url]
The test result by Ali Elouafiq on MTV was like:
python DPScan.py www.mtv.co.uk
node
user_optin
fckeditor
system
gsa
mtv_videobrowse
nice_menus
user
cck
top_tabs
panels
jquery_update
You can download Drupal CMS Security Scanner Here.