TuurlijkNiet

Xposer - Check, Monitor & Stay Secure

by
The complete solution for website technology detection and security monitoring. Detects exact version, shows cves, comes with an API and webextensions. Try for free

Add a comment

Replies

Best
TuurlijkNiet
Maker
📌
I’d like to share Xposer, a tool that uses fingerprinting to detect exact software versions (e.g., WordPress, Drupal, Magento, TYPO3 etc.) on websites, without relying on obvious tags like the Generator meta tag. It analyzes headers, files, and patterns to identify versions with high accuracy, though success may vary depending on site configuration. Once a version is detected, Xposer cross-references it with a vulnerability database to list applicable CVEs, which could be useful for recon or assessing web app security. It also offers an API for bulk testing and a browser extension for real-time checks, potentially streamlining workflows for researchers or pentesters. What are your thoughts? How does its fingerprinting compare to tools like WhatWeb or manual analysis? Any experience with automated CVE lookups, or ideas for improving version detection reliability?