Waldo - A Multithreaded Directory & Subdomain Bruteforcer
Waldo is a lightweight and multithreaded directory and subdomain bruteforcer implemented in Python. It can be used to locate hidden web resources and undiscovered subdomains of the specified target.
Key Features:
- Quickly and easily generate a list of all subdomains of the target domain
- Discover hidden web resources that can be potentially leveraged as part of an attack
- Written in Python and very portable
- Fast, multithreaded design
Setup:
Dependencies can be installed by running:
$ pip install -r pip.req
To run the waldo:
$ python waldo.py
Usage:
- To enumerate subdomains at some-fake-site.example, execute the following:
$ python waldo.py -m s -d some-fake-site.example
- To enumerate directories at some-fake-site.example, execute the following:
$ python waldo.py -m d -d some-fake-site.example
- By default, output will be logged to waldo-output.txt. To specify a custom output file, use the -l flag:
$ python waldo.py -m s -l my-log-file.txt -d some-fake-site.example
- Waldo uses 4 threads by default. To specify a custom threadpool size, use the -t flag:
$ python waldo.py -m s -d some-fake-site.example -t 15
You might also like:
- Advanced Encryption Package - A File Encryption Software for Windows
- Haveged - A Simple Entropy Daemon
- FGscanner - An Open-source URL Scanner
- Havij - Automated SQL Injection Tool
- DVIA - Damn Vulnerable iOS Application
- WAF-FLE - An Open-source ModSecurity Console
- ParameterFuzz - Web Application Security Scanner
- Dumb0 - Simple Script To Harvest Usernames From Popular Forums and CMS
- Burp CO2 - A Collection Of Enhancements for Burp Suite
- Maltrieve - Tool To Retrieve Malware Directly From the Source
- Rekall - Memory Forensic Framework
- Anonymous FTP Scanner - Anonymous FTP Finder for Windows
- Rootkit Hunter - Security Monitoring and Analyzing Tool
- Quarks PwDump - Tool To Extract Credentials From Windows Operating Systems
- iGoat - A Deliberately Insecure iOS Application
- Charles - A Web Debugging Proxy for Windows, Mac OS, and Linux
- pMap - Tool for Passive Discovery, Scanning, and Fingerprinting
- Killtrojan Syslog - Tool To Detect Malware Activity On a System
- Azazel - Userland Anti-debugging & Anti-detection Rootkit
- Pac4Mac - Forensics Framework for Mac OS X
Post a Comment