URL bruteforcing
DIRB
dirb <site url> -r -z <delay ms> #non recursive
dirb <site or internal folder url> -z <delay> #full scan / folder recursive scan
dirb <site or internal folder url> -w #ignore warnings (to use when not logged in)With dictionary
dirb <site url> <dictionary>Detailed scan
dirb <site url> <dict> -ifGobuster
gobuster dir -u <domain> -w <path to dict> -s '<http codes i.e. 200,403>' -ek
gobuster dir -u <domain> -w <path to dict> -s '<http codes i.e. 200,403>' -x <file extension> -ekCommon search patterns
gobuster dir -u <domain> -w <path to dict> -ekInteresting HTTP codes:
WFUZZ
Directory traversal
GET bruteforce
Bruteforce argument name
Bruteforce GET login
POST bruteforce
bruteforce argument
POST form bruteforce
Last updated