Fuzzing avanzado con ffuf
ffuf -u http://192.168.5.211:8080/W1/W2 -w /usr/share/seclists/Discovery/Web-Content/directory-list-2.3-small.txt:W1 -w /usr/share/seclists/Discovery/Web-Content/directory-list-2.3-medium.txt:W2
/'___\ /'___\ /'___\
/\ \__/ /\ \__/ __ __ /\ \__/
\ \ ,__\\ \ ,__\/\ \/\ \ \ \ ,__\
\ \ \_/ \ \ \_/\ \ \_\ \ \ \ \_/
\ \_\ \ \_\ \ \____/ \ \_\
\/_/ \/_/ \/___/ \/_/
v2.1.0-dev
________________________________________________
:: Method : GET
:: URL : http://192.168.5.211:8080/W1/W2
:: Wordlist : W1: /usr/share/seclists/Discovery/Web-Content/directory-list-2.3-small.txt
:: Wordlist : W2: /usr/share/seclists/Discovery/Web-Content/directory-list-2.3-medium.txt
:: Follow redirects : false
:: Calibration : false
:: Timeout : 10
:: Threads : 40
:: Matcher : Response status: 200-299,301,302,307,401,403,405,500
________________________________________________
[Status: 403, Size: 290, Words: 21, Lines: 11, Duration: 4ms]
* W1: cgi-bin
* W2:
[Status: 403, Size: 288, Words: 21, Lines: 11, Duration: 0ms]
* W1: icons
* W2:
[Status: 200, Size: 5153, Words: 259, Lines: 38, Duration: 10ms]
* W1: images
* W2:
[Status: 200, Size: 2311, Words: 136, Lines: 23, Duration: 2ms]
* W1: documents
* W2:
[Status: 200, Size: 944, Words: 65, Lines: 17, Duration: 1ms]
* W1: apps
* W2:
[Status: 200, Size: 3160, Words: 539, Lines: 125, Duration: 1ms]
* W1: admin
* W2:
[Status: 200, Size: 940, Words: 65, Lines: 17, Duration: 1ms]
* W1: db
* W2:
[Status: 200, Size: 1555, Words: 102, Lines: 20, Duration: 8ms]
* W1: js
* W2:
[Status: 200, Size: 2592, Words: 164, Lines: 25, Duration: 6ms]
* W1: fonts
* W2:
[Status: 302, Size: 0, Words: 1, Lines: 1, Duration: 546ms]
* W1:
* W2:
[Status: 200, Size: 3363, Words: 204, Lines: 28, Duration: 2ms]
* W1: soap
* W2:
[Status: 200, Size: 1366, Words: 88, Lines: 19, Duration: 12ms]
* W1: passwords
* W2:
[Status: 200, Size: 1437, Words: 79, Lines: 19, Duration: 17ms]
* W1: stylesheets
* W2:
[Status: 302, Size: 0, Words: 1, Lines: 1, Duration: 12ms]
* W1: W2
* W2:
[Status: 302, Size: 0, Words: 1, Lines: 1, Duration: 16ms]
* W1:
* W2:
[Status: 403, Size: 295, Words: 21, Lines: 11, Duration: 58ms]
* W1: cgi-bin
* W2: index
[Status: 301, Size: 321, Words: 20, Lines: 10, Duration: 1ms]
* W1:
* W2: images
[Status: 403, Size: 296, Words: 21, Lines: 11, Duration: 3ms]
* W1: cgi-bin
* W2: images
[Status: 301, Size: 321, Words: 20, Lines: 10, Duration: 8ms]
* W1:
* W2: images
[Status: 403, Size: 298, Words: 21, Lines: 11, Duration: 0ms]
* W1: cgi-bin
* W2: download
[WARN] Caught keyboard interrupt (Ctrl-C)Fuzzing sobre los campos de login de un request_post.txt
Herramienta Radamsa con ffuf, denegacion de servicio
Last updated