ACUNETIX
ACUNETIX
Installation Phase
1. Open your Firefox on kali, then go to link https://github.com/securi3ytalent/acunetix-13-kali-
linux (installation source for acunetix).
2. Scroll down in this page and you will see what we have to do for setting up acunetix.
cd Downloads
cd ACUNETIX\ LINUX --this file location can be different in your computer so check its name with
‘ls’.
Then it will ask if you accept license. So write yes then provide informations required like mail,
password, hostname.
6. At the end of process you will see link provide access to acunetix interface. Click link and open
site.
If you have problem on accessing to site check if the acunetix server is running or not by running
command : service acunetix status . If it is running you will se:
Else if it is not running try to stop and then start it again by running commands sequencely:
7. You will face page that says site can not be secure but don’t worry about it, it happens just due
to absence of ssl certificate. Click advanced then ‘Accept risk and continue’ button, then enter
your email and password which you defined them on the installation part.
Here, Dashboard of Acunetix:
Use Phase
As you can see on the left side of dashboard we have several sections targets, vulnerabilities,
scans, reports and etc. In this documentation I will show to to scan web site with Acunetix.
Firstly we have to determine target what site we want to scan then create scan.
One of the most essential parts is scan speed. It determines how many request will be sent to site
concurrently. It is advised set it slow or moderate to don’t damage site.
If your site requires authentication you can activate site login parameter.
You can choose file for testing site for file upload vulnerability.
4. You can see your scans on the scan section. You can click on them and can get further
information about scan.
5. This is the scan result of testphp:
6. At the end of scan you can create report of any vulnerability automatically. For this just click
‘generate report’ button and choose report type: