reddit hackernews mail facebook facebook linkedin
ChopChop

ChopChop

Scan endpoints and identify exposition of sensitive services/files/folders.

ChopChop is a command-line tool for dynamic application security testing on web applications, initially written by the Michelin CERT.

Its goal is to scan several endpoints and identify exposition of services/files/folders through the webroot. Checks/Signatures are declared in a config file, fully configurable, and especially by developers.