Kaboom - Automatic Pentest


kaboom is a script that automates the penetration test. It performs several tasks for each stage of pentest:
  1. Information gathering [nmap-unicornscan]
    • TCP scan
    • UDP scan
  2. Vulnerability assessment [nmap-nikto-dirb-searchsploit-msfconsole]
    It tests several services:
    • smb
    • ssh
    • snmp
    • smtp
    • ftp
    • tftp
    • ms-sql
    • mysql
    • rdp
    • http
    • https
    • and more...
    It finds the CVEs in addition to and hence searchs them on exploit-db or Metasploit db.
  3. Exploitation [hydra]
    • brute strength ssh

Usage
kaboom supports ii mode:
  • Interactive mode:
    kaboom [ENTER] ...and the script does the rest
  • NON-interactive mode:
    kaboom [-s or --shutdown]
If you lot role the shutdown option, kaboom volition shutdown the machine at the destination of tasks.
If you lot desire come across this help:
kaboom -h (or --help)

Directory Hierarchy
kaboom saves the results of commands inwards this way: