Ethiack Docs

Continuous Engine Supported Tests

List of test categories and test types supported by the Continuous engine.

The Continuous engine supports the following test categories and test types. This list is always evolving and may be updated multiple times.

Test CategoryTest Type
Infrastructure - DNSZone transfer
Infrastructure - DNSRecord exposures (TXT, NS, MX, CAA)
Infrastructure - DNSWAF/SaaS detection
Infrastructure - DNSDMARC/SPF/DKIM misconfigurations
Infrastructure - EmailProtocol detection (SMTP, IMAP, POP3, ESMTP)
Infrastructure - EmailSTARTTLS missing
Infrastructure - EmailSMTP without TLS
Infrastructure - FTPAnonymous login
Infrastructure - FTPWeak credentials
Infrastructure - FTPMissing TLS
Infrastructure - SSHWeak ciphers/MACs/key exchange
Infrastructure - SSHWeak host keys
Infrastructure - SSHPassword login enabled
Infrastructure - SSHKnown attacks (Terrapin, regreSSHion)
Infrastructure - DatabasesMySQL/Postgres/MongoDB/SQL Server exposure
Infrastructure - DatabasesWeak/default credentials
Infrastructure - DatabasesDump file leaks
Infrastructure - Directory ServicesLDAP anonymous/null binds
Infrastructure - File/Service ExposureRsync enumeration
Infrastructure - File/Service ExposureSMB signing disabled
Infrastructure - File/Service ExposureMemcached exposure
Infrastructure - File/Service ExposureProFTPD/OpenSSH/Erlang/Exim vulnerabilities
Infrastructure - Monitoring/ExportersPrometheus
Infrastructure - Monitoring/ExportersNode/DB exporters
Infrastructure - Monitoring/ExportersKubernetes metrics
Infrastructure - Monitoring/ExporterscAdvisor
Infrastructure - Monitoring/ExportersGanglia
Infrastructure - Monitoring/ExportersConsul
Infrastructure - Monitoring/ExportersGrafana
Infrastructure - Web ServersApache
Infrastructure - DevOps & CI/CDJenkins
Infrastructure - DevOps & CI/CDGitLab
Infrastructure - Identity & Access ManagementKeycloak
MobilePermission misconfigurations
MobileVulnerable versions
MobileClear-text traffic
MobileWorld-writable files
MobileDebug certificates
Web Apps - CMS/FrameworksWordPress (Plugin CVEs, SQLi, XSS, uploads, enumeration, config/backup/debug)
Web Apps - CMS/FrameworksJoomla
Web Apps - CMS/FrameworksDrupal
Web Apps - CMS/FrameworksMagento
Web Apps - CMS/FrameworksMoodle
Web Apps - CMS/FrameworksLiferay
Web Apps - CMS/FrameworksLaravel
Web Apps - CMS/FrameworksDjango
Web Apps - CMS/FrameworksSpring Boot
Web Apps - CMS/FrameworksPHP apps (phpMyAdmin, PhpSysInfo, etc.)
Web Apps - Enterprise SoftwareSAP
Web Apps - Enterprise SoftwareJira
Web Apps - Generic IssuesSensitive file/config exposure (.env, .git, backups)
Web Apps - Generic IssuesMissing/malformed security headers (HSTS, CSP, X-Frame, X-Content-Type, Cookies)
Web Apps - Generic IssuesSSL/TLS issues (expired/mismatched certs, weak ciphers)
Web Apps - Generic IssuesAPI/metadata/key exposures
Web Apps - Generic IssuesDirectory listing
Web Apps - Generic IssuesOpen proxy
Web Apps - Generic IssuesSubdomain takeover
Web Apps - Generic IssuesMixed content
Web Apps - Generic IssuesAuthentication/authorization flaws (default creds, bypass, missing auth, IDOR)
Web Apps - Generic IssuesInjection (SQLi: error/time/blind; command injection; CRLF; XInclude; SSTI)
Web Apps - Generic IssuesXSS (reflected, stored, DOM)
Web Apps - Generic IssuesFile/Path issues (LFI, traversal, arbitrary file upload/read)
Web Apps - Generic IssuesServer-side issues (RCE, SSRF, XXE, cache poisoning, open redirect)
Web Apps - Generic IssuesSession/Token flaws (fixation, weak/missing CSRF, leaks)
Web Apps - Generic IssuesInformation disclosure (stack traces, internal IPs, PII/password exposure)
Advanced - Cloud & SaaSAWS bucket exposure/takeover
Advanced - Cloud & SaaSAzure tenant leaks
Advanced - Cloud & SaaSGitHub/Bitbucket/Netlify takeovers
Advanced - Cloud & SaaSCDN poisoning
Advanced - IoT/DevicesExposed cameras, DVRs, routers, industrial software (e.g., Hikvision, Reolink, TP-Link, Cisco ASA)
Advanced - Special CasesCritical CVEs and exploits (e.g., Log4j RCE, Text4Shell, Oracle WebLogic RCE, Exchange RCE, Okta/Zoom/Jitsi vulnerabilities, WP2shell, KindaRails2Shell)
Threat IntelExposed Secrets (API keys, Private Keys, etc.) in publicly available repositories
Threat IntelExposed Credentials in publicly available repositories