Hacking Articles Tips Tricks Videos Tutorials
Photo
KitPloit - PenTest Tools!
Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More...
http://3.bp.blogspot.com/-OklvPqP3nfM/YNkPIeB6wFI/AAAAAAAAepE/mopor0H84ds4rt5u25idXAdquuTVih68wCK4BGAYYCw/w640-h102/cariddi_1_logo-715640.png Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more...Previewhttps://1.bp.blogspot.com/-llbDqYMlNpY/YN5pey68plI/AAAAAAAAfko/2waKpPXewQYx8YGboP-bNT6pXUy5xVx-QCNcBGAsYHQ/w640-h344/Cariddi.png InstallationYou need Go.
*
Linux
*
*
Or in one line:
Windows (executable works only in cariddi folder.)
*
*
*
*
*
*
*
*
*
*
*
*
*
*
*
*
*
*
For Windows use
Help me building this!
A special thanks to:
* zricethezav
To do:
*
Tests
*
Tor support
*
Proxy support
*
Ignore specific types of urls
*
Plain output (print only results)
*
HTML output
*
Build an Input Struct and use it as parameter
*
Output color
* Endpoints (parameters) scan[...]
___________________________
@hacking_Attack
@Hacking_Video
Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More...
http://3.bp.blogspot.com/-OklvPqP3nfM/YNkPIeB6wFI/AAAAAAAAepE/mopor0H84ds4rt5u25idXAdquuTVih68wCK4BGAYYCw/w640-h102/cariddi_1_logo-715640.png Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more...Previewhttps://1.bp.blogspot.com/-llbDqYMlNpY/YN5pey68plI/AAAAAAAAfko/2waKpPXewQYx8YGboP-bNT6pXUy5xVx-QCNcBGAsYHQ/w640-h344/Cariddi.png InstallationYou need Go.
*
Linux
*
git clone https://github.com/edoardottt/cariddi.git* cd cariddi* go get* make linux(to install)*
make unlinux(to uninstall)Or in one line:
git clone https://github.com/edoardottt/cariddi.git; cd cariddi; go get; make linux* Windows (executable works only in cariddi folder.)
*
git clone https://github.com/edoardottt/cariddi.git* cd cariddi* go get* .\make.bat windows(to install)*
.\make.bat unwindows(to uninstall) Get Startedcariddi -hprints the help in the command line. Usage of cariddi:
-c int
Concurrency level. (default 20)
-cache
Use the .cariddi_cache folder as cache.
-d int
Delay between a page crawled and another.
-e Hunt for juicy endpoints.
-ef string
Use an external file (txt, one per line) to use custom parameters for endpoints hunting.
-examples
Print the examples.
-ext int
Hunt for juicy file extensions. Integer from 1(juicy) to 7(not juicy).
-h Print the help.
-i string
Ignore the URL containing at least one of the elements of this array.
-it string
Ignore the URL containing at least one of the lines of this file.
-oh string
Write the output into an HTML file.
-ot string
Write the output into a TXT file.
-plain
Print only the results.
-s Hunt for secrets.
-sf string
Use an external file (txt, one per line) to use custom regexes for s ecrets hunting.
-version
Print the version. Examples* cariddi -version(Print the version)*
cariddi -h(Print the help)*
cariddi -examples(Print the examples)*
cat urls | cariddi -s(Hunt for secrets)*
cat urls | cariddi -d 2(2 seconds between a page crawled and another)*
cat urls | cariddi -c 200(Set the concurrency level to 200)*
cat urls | cariddi -e(Hunt for juicy endpoints)*
cat urls | cariddi -plain(Print only useful things)*
cat urls | cariddi -ot target_name(Results in txt file)*
cat urls | cariddi -oh target_name(Results in html file)*
cat urls | cariddi -ext 2(Hunt for juicy (level 2 of 7) files)*
cat urls | cariddi -e -ef endpoints_file(Hunt for custom endpoints)*
cat urls | cariddi -s -sf secrets_file(Hunt for custom secrets)*
cat urls | cariddi -i forum,blog,community,open(Ignore urls containing these words)*
cat urls | cariddi -it ignore_file(Ignore urls containing at least one line in the input file)*
cat urls | cariddi -cache(Use the .cariddi_cache folder as cache.)*
For Windows use
powershell.exe -Command "cat urls | .\cariddi.exe"Contributing Just open an issue/pull request. See also CONTRIBUTING.md and CODE OF CONDUCT.mdHelp me building this!
A special thanks to:
* zricethezav
To do:
*
Tests
*
Tor support
*
Proxy support
*
Ignore specific types of urls
*
Plain output (print only results)
*
HTML output
*
Build an Input Struct and use it as parameter
*
Output color
* Endpoints (parameters) scan[...]
___________________________
@hacking_Attack
@Hacking_Video
KitPloit - PenTest & Hacking Tools
Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More...
Hacking Articles Tips Tricks Videos Tutorials
KitPloit - PenTest Tools! Cariddi - Take A List Of Domains, Crawl Urls And Scan For Endpoints, Secrets, Api Keys, File Extensions, Tokens And More... http://3.bp.blogspot.com/-OklvPqP3nfM/YNkPIeB6wFI/AAAAAAAAepE/mopor0H84ds4rt5u25idXAdquuTVih68wCK4BGAYYCw/w640…
* Secrets scan
*
Extensions scan
*
TXT output Download Cariddi
___________________________
@hacking_Attack
@Hacking_Video
*
Extensions scan
*
TXT output Download Cariddi
___________________________
@hacking_Attack
@Hacking_Video
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Tech Supp0rt
https://cdn-images-1.medium.com/max/1098/0*3svZeSRIHoY1avSn.png
Link: https://www.vulnhub.com/entry/tech_supp0rt-1,708/
Box: Easy
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Tech Supp0rt
https://cdn-images-1.medium.com/max/1098/0*3svZeSRIHoY1avSn.png
Link: https://www.vulnhub.com/entry/tech_supp0rt-1,708/
Box: Easy
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Tech Supp0rt
Link: https://www.vulnhub.com/entry/tech_supp0rt-1,708/
Box: Easy
Box: Easy
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Bastion
https://cdn-images-1.medium.com/max/600/0*4tmrYtmX6ZIK2UiK.png
Nmap
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Bastion
https://cdn-images-1.medium.com/max/600/0*4tmrYtmX6ZIK2UiK.png
Nmap
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Bastion
Nmap
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Career Jump Start: Pre-Security with TryHackMe
https://cdn-images-1.medium.com/max/1301/1*gcXmZyIbAe_X051YbZ70ew.png
Hi, my name is Rahul and I am 4th year Btech(IT) Student in IIIT Gwalior.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Career Jump Start: Pre-Security with TryHackMe
https://cdn-images-1.medium.com/max/1301/1*gcXmZyIbAe_X051YbZ70ew.png
Hi, my name is Rahul and I am 4th year Btech(IT) Student in IIIT Gwalior.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Career Jump Start: Pre-Security with TryHackMe
Hi, my name is Rahul and I am 4th year Btech(IT) Student in IIIT Gwalior. I am currently pursuing cybersecurity and have been learning from…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Kabuğu Ters Çevir — Kabuğu Bağla
https://cdn-images-1.medium.com/max/794/1*4oXBH5FizNtMJ9cPTQ9itA.jpeg
Kabuk
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Kabuğu Ters Çevir — Kabuğu Bağla
https://cdn-images-1.medium.com/max/794/1*4oXBH5FizNtMJ9cPTQ9itA.jpeg
Kabuk
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Reverse Shell — Bind Shell
Kabuk
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Is Bug Bounty Too Saturated in 2021 ?
https://cdn-images-1.medium.com/max/1400/1*m0glPvftF48AZe9ScW4mww.jpeg
Read this to get your answer, is it really saturated or not.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Is Bug Bounty Too Saturated in 2021 ?
https://cdn-images-1.medium.com/max/1400/1*m0glPvftF48AZe9ScW4mww.jpeg
Read this to get your answer, is it really saturated or not.
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Is Bug Bounty Too Saturated in 2021 ?
Read this to get your answer, is it really saturated or not.
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
Open-source information gathering tool — InfoG
https://cdn-images-1.medium.com/max/800/1*UDgR_CCDCS5jV3mNVZNeUw.jpeg
InfoG is a Shell script tool used to perform information gathering. To download it, visit the following GitHub page…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
Open-source information gathering tool — InfoG
https://cdn-images-1.medium.com/max/800/1*UDgR_CCDCS5jV3mNVZNeUw.jpeg
InfoG is a Shell script tool used to perform information gathering. To download it, visit the following GitHub page…
Continue reading on Purple TEAM »
___________________________
@hacking_Attack
@Hacking_Video
Medium
Open-source information gathering tool — InfoG
InfoG is a Shell script tool used to perform information gathering. To download it, visit the following GitHub page…
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
El parche de emergencia de Microsoft no soluciona por completo la vulnerabilidad de PrintNightmare…
https://cdn-images-1.medium.com/max/928/0*L1Dn01WOSgnB1Rln
POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
El parche de emergencia de Microsoft no soluciona por completo la vulnerabilidad de PrintNightmare…
https://cdn-images-1.medium.com/max/928/0*L1Dn01WOSgnB1Rln
POR EHACKING
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
El parche de emergencia de Microsoft no soluciona por completo la vulnerabilidad de PrintNightmare RCE.
POR EHACKING
Hacking Articles Tips Tricks Videos Tutorials
Photo
Hacking on Medium
WildPressure APT Equips with New Malware to Targets Both Windows and MacOS. — CyberWorkx
https://cdn-images-1.medium.com/max/840/0*vg_oDAr5sO3f6xS8
Researchers from Kaspersky have identified a malicious malware campaign which was targeting many industries in Middle East since 2019 has…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
WildPressure APT Equips with New Malware to Targets Both Windows and MacOS. — CyberWorkx
https://cdn-images-1.medium.com/max/840/0*vg_oDAr5sO3f6xS8
Researchers from Kaspersky have identified a malicious malware campaign which was targeting many industries in Middle East since 2019 has…
Continue reading on Medium »
___________________________
@hacking_Attack
@Hacking_Video
Medium
WildPressure APT Equips with New Malware to Targets Both Windows and MacOS. — CyberWorkx
Researchers from Kaspersky have identified a malicious malware campaign which was targeting many industries in Middle East since 2019 has…
Is Bug Bounty Too Saturated in 2021 ?
Read this to get your answer, is it really saturated or not.Continue reading on Medium »
Read more...
Read this to get your answer, is it really saturated or not.Continue reading on Medium »
Read more...
hacking: security in practice
DNS hijacked router and HTTPS prevention
if someone hijacked our DNS route could they capable to route https://bank.com to https://bank.com on an IP that belongs to them.
i've seen some scenarios that it's available to route it to http but does https available also?!
submitted by /u/Kraxen666
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
DNS hijacked router and HTTPS prevention
if someone hijacked our DNS route could they capable to route https://bank.com to https://bank.com on an IP that belongs to them.
i've seen some scenarios that it's available to route it to http but does https available also?!
submitted by /u/Kraxen666
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
DNS hijacked router and HTTPS prevention
if someone hijacked our DNS route could they capable to route [https://bank.com](https://bank.com) to [https://bank.com](https://bank.com) on an...
hacking: security in practice
Bypassing restriction on advanced settings on KD58C bicycle display
Hey guys, I got an ebike with a KD58C but I found out that the manufacturer locked the advanced settings part so I can’t access it. If anyone has any advice on how to bypass this it would be greatly appreciated
submitted by /u/coolguy1003
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
Bypassing restriction on advanced settings on KD58C bicycle display
Hey guys, I got an ebike with a KD58C but I found out that the manufacturer locked the advanced settings part so I can’t access it. If anyone has any advice on how to bypass this it would be greatly appreciated
submitted by /u/coolguy1003
[link] [comments]
___________________________
@hacking_Attack
@Hacking_Video
reddit
Bypassing restriction on advanced settings on KD58C bicycle display
Hey guys, I got an ebike with a KD58C but I found out that the manufacturer locked the advanced settings part so I can’t access it. If anyone has...