Giter VIP home page Giter VIP logo

fuzzit-web-scanner's Introduction

Fuzzit-Web-Scanner

Simple web input/cookie/url scanner written in python. Uses a json rule file to match injection cases against web app output.

Currently a work in progress.

Supported: Get, Post value injections, Cookie injection, and Page Discovery.

Usage

Fuzzit.py [RHOST] [WORDLIST] [RULE_FILE]

RHOST Format: www.url.com/script.php?injection_point=*
    - Mark injection points with a '*'.
    - Input values for non-injection points.
    - For status scans, mark a single '*' where WORDLIST will be appended.

-t, --type [get/post/cookie/status]
    - get: Send a get request with values from WORDLIST.
    - post: Send a post request with values from WORDLIST.
    - cookie: Send a get request with cookie values from WORDLIST.
    - status: Check if a url from WORDLIST exists.

-c, --cookie [COOKIE]
    - Specify cookie.
--cookie-file [FILE]
    - Specify cookie from file.

-o, --output [FILE]
    - Output to FILE

-v, -vv
    - v: Show NEGATIVE requests and headers.
    - vv: Show response page.

fuzzit-web-scanner's People

Contributors

iwakura1ain avatar

Stargazers

 avatar

Watchers

 avatar

fuzzit-web-scanner's Issues

In retrospect...

In retrospect, opening a new thread for every single scan is slow and resource intensive, although sometimes necessary for scans that ping back...

Should have made this a Producer/Consumer thing.

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.