BugSpy – Crawls The Web For Open Source Software Bugs

Keep on Guard!


BugSpy is an interesting web site I came across recently, put together using a Python Framework (django) it aggregates bugs from as many open source projects as it can find. Preferably critical bugs.

BugSpy

You can search by tag (e.g java, email or php ) or by product name (e.g Ubuntu, Typo3 or Samba).

http://bugspy.net/

Posted in: Exploits/Vulnerabilities, Web Hacking

,


Latest Posts:


OWASP ZSC - Obfuscated Code Generator Tool OWASP ZSC – Obfuscated Code Generator Tool
OWASP ZSC is an open source obfuscated code generator tool in Python which lets you generate customized shellcodes and convert scripts to an obfuscated script.
A Look Back At 2017 – Tools & News Highlights A Look Back At 2017 – Tools & News Highlights
So here we are in 2018, taking a look back at 2017, quite a year it was. Here is a quick rundown of some of the best hacking/security tools released in 2017, the biggest news stories and the 10 most viewed posts on Darknet as a bonus.
Spectre & Meltdown Checker - Vulnerability Mitigation Tool For Linux Spectre & Meltdown Checker – Vulnerability Mitigation Tool For Linux
Spectre & Meltdown Checker is a simple shell script to tell if your Linux installation is vulnerable against the 3 "speculative execution" CVEs that were made public early 2018.
Hijacker - Reaver For Android Wifi Hacker App Hijacker – Reaver For Android Wifi Hacker App
Hijacker is a native GUI which provides Reaver for Android along with Aircrack-ng, Airodump-ng and MDK3 making it a powerful Wifi hacker app.
Sublist3r - Fast Python Subdomain Enumeration Tool Sublist3r – Fast Python Subdomain Enumeration Tool
Sublist3r is a Python-based tool designed to enumerate subdomains of websites using OSINT. It helps penetration testers and bug hunters collect and gather subdomains for the domain they are targeting.
coWPAtty Download - Audit Pre-shared WPA Keys coWPAtty Download – Audit Pre-shared WPA Keys
coWPAtty is a C-based tool for running a brute-force dictionary attack against WPA-PSK and audit pre-shared WPA keys.


6 Responses to BugSpy – Crawls The Web For Open Source Software Bugs

  1. Navin May 21, 2009 at 12:39 pm #

    There was another attempt at a site like this a few yrs ago…..don’t exactly remember the name…..tht one lasted for a very small time, hoping tht bugspy lasts longer!!

  2. Kevin May 21, 2009 at 12:52 pm #

    The “Exploitables Detector” link (http://bugspy.net/exposer) is interesting. From what I understand, it tries to guess which bugs pose security vulnerabilities.

  3. cbrp1r8 May 21, 2009 at 6:11 pm #

    Don’t know about earlier ones but I know there is also the opensourcedb which is doing roughly the same thing, only via email notification.

    Also, if anyone cares to you can normally sign up for maillist of bugtraq and others to get similar info.

  4. David May 21, 2009 at 10:49 pm #

    Nice work, specially exposer section. This will make a step closer to a full disclosure script kiddie in my opinion.

  5. ethicalhack3r May 22, 2009 at 12:33 am #

    Does this scan for known vulns or does it search through the source code and find them itself?

  6. Darknet May 22, 2009 at 5:45 am #

    I believe it pulls the info from the bug repository of all the projects and aggregates it, it doesn’t scan code for ‘new’ bugs.