Coder Social home page Coder Social logo

[Request] Extensions without %EXT% about ffuf HOT 2 CLOSED

ffuf avatar ffuf commented on May 25, 2024 1
[Request] Extensions without %EXT%

from ffuf.

Comments (2)

Shaddy avatar Shaddy commented on May 25, 2024

Hi!

It seems that running as you pointed out does what you expect.

echo test | ffuf -e '.php','.html' -u https://www.example.com/FUZZ -mc all -w -

        /'___\  /'___\           /'___\
       /\ \__/ /\ \__/  __  __  /\ \__/
       \ \ ,__\\ \ ,__\/\ \/\ \ \ \ ,__\
        \ \ \_/ \ \ \_/\ \ \_\ \ \ \ \_/
         \ \_\   \ \_\  \ \____/  \ \_\
          \/_/    \/_/   \/___/    \/_/

       v0.11git
________________________________________________

 :: Method       : GET
 :: URL          : https://www.example.com/FUZZ
 :: Matcher      : Response status: all
________________________________________________

test.html               [Status: 404, Size: 1270, Words: 338]
test.php                [Status: 404, Size: 1270, Words: 338]
test                    [Status: 404, Size: 1270, Words: 338]
:: Progress: [3/3] :: 0 req/sec :: Duration: [0:00:00] :: Errors: 0 ::

In case it wouldn't, you could have done it using -e '.php','.html','' which will do another extra test request.

So you can use it to also test it as dir, e.g. -e '.php','.html','/'

test                    [Status: 404, Size: 1270, Words: 338]
test.html               [Status: 404, Size: 1270, Words: 338]
test/                   [Status: 404, Size: 1270, Words: 338]
test.php                [Status: 404, Size: 1270, Words: 338]

Hope it helps!

P.S: What would be interesting tho, is to subtract the original payload from the equation using -E for example (which would test just everything but the unreplaced).

from ffuf.

SecT0uch avatar SecT0uch commented on May 25, 2024

I didn't manage to make it work. I'll try again later.

Thanks,

from ffuf.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.