wfuzz

1. 개요

2. 사용법

┌──(root㉿kali)-[/home/kali/labs/Flight]
└─# wfuzz -u http://10.129.37.19 -H "Host: FUZZ.flight.htb" -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-5000.txt 
 /usr/lib/python3/dist-packages/wfuzz/__init__.py:34: UserWarning:Pycurl is not compiled against Openssl. Wfuzz might not work correctly when fuzzing SSL sites. Check Wfuzz's documentation for more information.
********************************************************
* Wfuzz 3.1.0 - The Web Fuzzer                         *
********************************************************

Target: http://10.129.37.19/
Total requests: 4989

=====================================================================
ID           Response   Lines    Word       Chars       Payload                                           
=====================================================================

000000007:   200        154 L    530 W      7069 Ch     "webdisk"                                         
000000001:   200        154 L    530 W      7069 Ch     "www"                                             
000000047:   200        154 L    530 W      7069 Ch     "news"                                            
000000003:   200        154 L    530 W      7069 Ch     "ftp"                                             
000000031:   200        154 L    530 W      7069 Ch     "mobile"                                          
000000015:   200        154 L    530 W      7069 Ch     "ns"                                              
000000048:   200        154 L    530 W      7069 Ch     "portal"                                          
000000046:   200        154 L    530 W      7069 Ch     "img"                                             
000000050:   200        154 L    530 W      7069 Ch     "wiki"                                            
000000049:   200        154 L    530 W      7069 Ch     "server"                                          
000000045:   200        154 L    530 W      7069 Ch     "www1"                                            
[...SNIP...]
┌──(root㉿kali)-[/home/kali/labs/Flight]
└─# wfuzz -u http://10.129.37.19 -H "Host: FUZZ.flight.htb" -w /usr/share/seclists/Discovery/DNS/subdomains-top1million-5000.txt --hh 7069
 /usr/lib/python3/dist-packages/wfuzz/__init__.py:34: UserWarning:Pycurl is not compiled against Openssl. Wfuzz might not work correctly when fuzzing SSL sites. Check Wfuzz's documentation for more information.
********************************************************
* Wfuzz 3.1.0 - The Web Fuzzer                         *
********************************************************

Target: http://10.129.37.19/
Total requests: 4989

=====================================================================
ID           Response   Lines    Word       Chars       Payload                                           
=====================================================================

000000624:   200        90 L     412 W      3996 Ch     "school"                                          
Updated on