Some HTTP parameter names are more commonly associated with one functionality than the others. For example, the parameter
?url=
usually contains URLs as the value and hence often falls victim to file inclusion, open redirect and SSRF attacks. Parth can go through your burp history, a list of URLs or it's own disocovered URLs to find such parameter names and the risks commonly associated with them. Parth is designed to aid web security testing by helping in prioritization of components for testing.Usage
Import targets from a file
This option works for all 3 supported import types: Burp Suite history, newline delimited text file or a HTTP request text file.
python3 parth.py -i example.history
Find URLs for a domain
This option will make use of CommonCrawl, Open Threat Exchange and Waybackmachine to find URLs of the target domain.
python3 parth.py -t example.com
Ignore duplicate parameter names
Same parameter names across all URLs are ignored.
python3 parth.py -ut example.com
Save parameter names
This option will write all the parameter names found in a file with name
params-{target}.txt
for later use.python3 parth.py -pt example.com
JSON Output
The following command will save the result as a JSON object in the specified file.
python3 parth.py -t example.com -o example.json
Credits
The database of parameter names and the risks associated with them is mainly created from the public work of various people of the community.
via KitPloit
More info
- Hack Tools
- Hacking Tools Name
- Hacking Tools Github
- Github Hacking Tools
- New Hack Tools
- Hacking Tools For Windows
- Hak5 Tools
- Hacking Tools And Software
- Hack Tools
- Hacker Tools Online
- Pentest Tools Github
- Pentest Automation Tools
- Hacking Tools For Windows 7
- Hack Tools Download
- Pentest Tools For Android
- Hack And Tools
- Hacking Tools 2019
- Underground Hacker Sites
- Hack Tools For Games
- Pentest Tools Tcp Port Scanner
- Game Hacking
- Pentest Tools Port Scanner
- How To Install Pentest Tools In Ubuntu
- Hacker Tools Mac
- Hacker Tools Linux
- Hacker Tools For Windows
- Pentest Tools Github
- Hack And Tools
- Hacking Tools Usb
- Blackhat Hacker Tools
- Hacking Tools Windows
- Hack Tool Apk
- Bluetooth Hacking Tools Kali
- Pentest Tools Alternative
- Hack Tools Github
- Hacker Tools Free Download
- Hacking Tools Usb
- Pentest Tools Url Fuzzer
- Best Pentesting Tools 2018
- Hacker Tools 2020
- Pentest Tools Download
- Pentest Tools Port Scanner
- Pentest Tools Website Vulnerability
- Hacking Tools 2019
- Nsa Hack Tools Download
- Hacking Tools For Mac
- Hacker Tools Online
- Pentest Tools For Mac
- Pentest Tools Apk
- Github Hacking Tools
- Pentest Tools Port Scanner
- Hacker Tools For Ios
- Hack Tool Apk No Root
- Underground Hacker Sites
- Beginner Hacker Tools
- Pentest Tools Nmap
- Pentest Tools Kali Linux
- Pentest Tools Url Fuzzer
- Hacking Tools Windows 10
- Wifi Hacker Tools For Windows
- Hack Tools For Ubuntu
- Install Pentest Tools Ubuntu
- Pentest Tools For Windows
- Best Pentesting Tools 2018
- Hacking Tools Pc
- Hack Tools For Pc
- Hacking Tools And Software
- Hacks And Tools
- Pentest Tools Website
- Hacker
- Hacking Tools For Windows
- Hacker Tools Mac
- Hackers Toolbox
- Pentest Tools Download
- Pentest Tools Tcp Port Scanner
- Nsa Hack Tools Download
- Hacking Apps
- Pentest Automation Tools
- Pentest Tools Download
- Hacking Tools 2020
- Nsa Hacker Tools
- Pentest Tools Url Fuzzer
- Pentest Recon Tools
- What Are Hacking Tools
- Hacker Tools Free
- Hack Tools Online
- Hacker Tools Apk Download
- Pentest Tools Windows
- Hacker Tools Online
- Pentest Tools For Windows
- Pentest Tools For Ubuntu
- Pentest Tools Download
- Hack Tools Download
- What Are Hacking Tools
- Hack App
- Growth Hacker Tools
- Beginner Hacker Tools
- Hacker Tools List
- What Are Hacking Tools
- Hack Tools For Windows
- Pentest Tools Open Source
- Pentest Tools For Windows
- Hack Tool Apk No Root
- Pentest Tools Nmap
- Hacker Tools Hardware
- Hack Tools
- Hack App
- Hack Tools For Windows
- Pentest Tools Website
- Pentest Tools Bluekeep
- Pentest Tools Open Source
- Pentest Tools Bluekeep
- Hack Tool Apk No Root
- Pentest Tools Url Fuzzer
- Beginner Hacker Tools
- Hacker Tools For Windows
- Pentest Tools Kali Linux
- Nsa Hacker Tools
- Hacker Search Tools
- Hacking App
- Hacker Tools 2020
- Pentest Tools For Ubuntu
- Nsa Hacker Tools
- Hacking Tools Software
- Pentest Tools For Windows
- Pentest Tools For Windows
- Hacking Tools 2020
- Pentest Tools Port Scanner
- Nsa Hack Tools
- Hack Tools For Ubuntu
- Hacks And Tools
- Kik Hack Tools
- Termux Hacking Tools 2019
- Free Pentest Tools For Windows
- Hacker Tools For Windows
- Pentest Tools Kali Linux
- Hacker Search Tools
Nenhum comentário:
Postar um comentário