Pantera Passive Analysis (PPA)
Pantera Passive Analysis (PPA) Engine works by passively monitoring and analyzing all requests and responses.
PPA uses a plugin arquitecture that is very easy to understand. (read the PPA plugins)
PPA plugins are divided into several categories:
recon: Plugins for recon operations.
ssl: Plugins for SSL checks.
email: Plugins for Emails checks.
script: Plugins for Scripts checks.
form: Plugins for Form checks.
auth_form: Plugins for Authentication Forms checks.
cookie: Plugins for Cookies checks.
session_id: Plugins for Session ID checks.
external_link: Plugins for Links checks.
comment: Plugins for Comment checks.
vuln: Plugins for Vulnerabilities checks.
hidden: Plugins for Hidden tags checks.
object: Plugins for Objects checks.
postauth: Plugins for POST Authentication checks.
queryst: Plugins for URI parameters checks.
auth: Plugins for Authentication checks.
PPA checks can set different levels of warning, that are:
: Information
: Low
: Medium.
: High
: Safe
2006 (C) http://www.roseslabs.com