[开源工具] - BypassFuzzer

logo

BypassFuzzer是一个基于Python的模糊测试工具,用于绕过安全防护。该工具能够通过标头、路径规范化、谓词等执行各种检查,以尝试绕过ACL或URL验证。模糊测试,并使用预定义的规则来绕过常见的防护措施。

text

git clone https://github.com/intrudir/BypassFuzzer
cd BypassFuzzer
pip install -r requirements.txt

text

python3 bypassfuzzer.py

help

json

python3 bypassfuzzer.py -u https://xxx.demo.com/shell.jsp

403

json

python3 bypassfuzzer.py -u https://xxx.demo.com/shell.jsp -s 403

filter403

json

bypassfuzzer.py -u https://xxx.demo.com/shell.jsp --proxy http://127.0.0.1:7890

json

bypassfuzzer.py -u https://xxx.demo.com/shell.jsp -hl 505

相关内容