Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally

, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content

Configuration

matthewD-AVI edited this page Sep 6, 2018 · 8 revisions

ADAPT Configuration

Configuring ADAPT behavior(adapt.config)

The file adapt.config provides nearly all of the configuration options that are necessary to operate the main program. This file provides descriptions as to the options that are listed within that file. Please note that command line options override these options inherently. For a brief summary of command line option, see the section at the bottom of this page.

  1. Open your configuration file(adapt.config) in the text editor of your choice.
  2. Edit the settings to fit your needs. Below is a list of settings and what they control.

[GENERAL_OPTIONS]
target <string>: http://localhost
This is the webservice that will be tested.
context <string>: http://localhost
This sets the context for the zap OWASP Zap spider and scan, etc..
confidence <string>: paranoid
This limit’s returned results by matching confidence level and higher.
risk <string>: paranoid
This limit’s returned results by matching risk level or higher.
detail <string>: full
This changes the level of detail within the results.
nmap_script_ports <string>: 80
Specifies a specific port for the nmap script.

[OUTPUT_OPTIONS]
filetype <string>: json
This determines the resulting output’s file format.
specific_filename <string>: outputTest.json
This specifies the output file name. If given none, a timestamped file will be generated.
append <bool>: on
This determines whether a file is overwritten or added to.

[SSH_OPTIONS]
ssh_get_logs <bool>: off
This enables/disables ssh functionality.
hostname <string>: localhost
This sets the host name for the ssh server.
username <string>: root
This specifies the username to login to the ssh server.
password <string>: toor
This specifies the password for the username to login to the ssh server.
port <string>: 22
Specifies the port on which the user connects to the ssh server.
keywords <string>: ERROR
Specifies key words to search for when looking through files (case sensitive).
log_paths <string>: ./Desktop/Test.log ./Desktop/Test2.log
Specifies the paths to search. Multiple paths can be included, but they; must be full paths.
read_direction <string>: full
Specifies where in the file reading begins.
read_amount <string>: 500
Specifies how many lines to read from a given direction. Ignored if direction is full.

[OWASP_ZAP_OPTIONS]
passive_scanning <bool>: on
Enables/disables the OWASP ZAP passive scan feature.
spider_scanning <bool>: on
Enables/disables the OWASP ZAP spider scanning feature.
active_scan <bool>: off
Enables/disables the OWASP ZAP active scan feature.
zap_port <string>: 8080
This setting configures the port OWASP ZAP runs on.
api_key <string>: 9203935709
Sets the api key for OWASP ZAP. Can usually remain as at default; to do so, leave as none.
exclude <string>: /logout.php
This setting configures a list of paths that will not be traversed during testing.

[AUTH_OPTIONS]
auth_module <string>: login_script.py
This setting configures the authentication script the user wishes to point to. Use “none” for no authentication.
valid_username <string>: user
This configures the username to be used for authentication.
valid_password <string>: password
This configures the password to be used in conjunction with the username for authentication.

[OWASP_OPTIONS]
ident_004 <bool>: on
Enables/disables the IDENT-004 test.
authn_001 <bool>: off
Enables/disables the AUTHN-001 test.
authn_002 <bool>: on
Enables/disables the AUThN-002 test.
authn_003 <bool>: off
Enables/disables the AUTHN-003 test.
authz_001 <bool>: on
Enables/disables the AUTHZ-001 test.
config_002 <bool>: off
Enables/disables the CONFIG-002 test.
config_006 <bool>: on
Enables/disables the CONFIG-006 test.
crypst_001 <bool>: off
Enables/disables the CRYPST-001 test.
crypst_002 <bool>: on
Enables/disables the CRYPST-002.
err_001 <bool>: off
Enables/disables the ERR-001 test.
err_002 <bool>: on
Enables/disables the ERR-002 test.
info_002 <bool>: off
Enables/disables the INFO-002 test.
inpval_001 <bool>: on
Enables/disables the INPVAL-001 test.
inpval_002 <bool>: off
Enables/disables the INPVAL-002 test.
inpval_003 <bool>: on
Enables/disables the INPVAL-003 test.
sess_001 <bool>: on
Enables/disables the SESS-001 test.
sess_002 <bool>: on
Enables/disables the SESS-002 test.

[DEBUG_OPTIONS]
astam_verbose <bool>: on
If turned on, progress statements will be output to console.
zap_close <bool>: on
If turned on, OWASP ZAP will close upon script completion.
zap_hidden <bool>: on
If turned on, OWASP ZAP will run as a daemon process.

Configure ADAPT Command Line Options

The following Command Line Options are supported

  • --target : Manually set host as target
  • --port : Manually set target port
  • --verbose : Turn on verbose mode
  • -h, --help : Show help
  • --output : specify output file.

Clone this wiki locally