
أداة عالية الأداء لاكتشاف مسارات الويب وفرض القوة الغاشمة على الدلائل. تكتشف الملفات والدلائل ونقاط النهاية المخفية باستخدام قوائم كلمات قابلة للتخصيص وفلاتر وفحص تكراري لاختبار الاختراق.
الإصدار الحالي: v1.4 (20222.09.03)
أداة سطر أوامر متقدمة مصممة لتخمين الدلائل والملفات في خوادم الويب، وتُعرف أيضًا باسم ماسح مسارات الويب
الفكرة بواسطة @maurosoria و@shelld3v
Developement-2022 يتم تطويره بنشاط بواسطة @nu11secur1ty
المتطلب: python 3.10.5 أو أحدث
اختر أحد خيارات التثبيت التالية:
git clone https://github.com/nu11secur1ty/insect.git --depth 1 (موصى به)docker build -t "insect:latest" . (يمكن العثور على مزيد من المعلومات هنا)pip3 install dirsearchsudo apt-get install dirsearch (مهمل)الملخص:
%EXT% بامتدادات من خيار -e.%EXT% (مثل SecLists)، فإن مفتاح -f | --force-extensions مطلوب لإلحاق الامتدادات بكل كلمة في قائمة الكلمات، بالإضافة إلى /.wordlist1.txt,wordlist2.txt.أمثلة:
سيؤدي تمرير **asp** و **aspx** كامتدادات إلى توليد القاموس التالي:```
index
index.asp
index.aspx
سيؤدي تمرير **php** و **html** كامتدادات مع علامة **-f**/**--force-extensions** إلى إنشاء القاموس التالي:```
admin
admin.php
admin.html
admin/
عند تمرير **jsp** و**jspa** كامتدادات مع العلم **-O**/**--overwrite-extensions** سيتم توليد القاموس التالي:```
login.html
login.jsp
login.jspa
الخيارات -------``` Usage: insect.py [-u|--url] target [-e|--extensions] extensions [options]
Options: --version show program's version number and exit -h, --help show this help message and exit
Mandatory:
-u URL, --url=URL Target URL(s), support multiple flags
-l PATH, --url-file=PATH
URL list file
--stdin Read URL(s) from STDIN
--cidr=CIDR Target CIDR
--raw=PATH Load raw HTTP request from file (use --scheme flag
to set the scheme)
-s SESSION_FILE, --session=SESSION_FILE
Session file
--config=PATH Full path to config file, see 'config.ini' for
example (Default: config.ini)
Dictionary Settings:
-w WORDLISTS, --wordlists=WORDLISTS
Customize wordlists (separated by commas)
-e EXTENSIONS, --extensions=EXTENSIONS
Extension list separated by commas (e.g. php,asp)
-f, --force-extensions
Add extensions to the end of every wordlist entry. By
default insect only replaces the %EXT% keyword with
extensions
-O, --overwrite-extensions
Overwrite other extensions in the wordlist with your
extensions (selected via -e)
--exclude-extensions=EXTENSIONS
Exclude extension list separated by commas (e.g.
asp,jsp)
--remove-extensions
Remove extensions in all paths (e.g. admin.php ->
admin)
--prefixes=PREFIXES
Add custom prefixes to all wordlist entries (separated
by commas)
--suffixes=SUFFIXES
Add custom suffixes to all wordlist entries, ignore
directories (separated by commas)
-U, --uppercase Uppercase wordlist
-L, --lowercase Lowercase wordlist
-C, --capital Capital wordlist
General Settings: -t THREADS, --threads=THREADS Number of threads -r, --recursive Brute-force recursively --deep-recursive Perform recursive scan on every directory depth (e.g. api/users -> api/) --force-recursive Do recursive brute-force for every found path, not only directories -R DEPTH, --max-recursion-depth=DEPTH Maximum recursion depth --recursion-status=CODES Valid status codes to perform recursive scan, support ranges (separated by commas) --subdirs=SUBDIRS Scan sub-directories of the given URL[s] (separated by commas) --exclude-subdirs=SUBDIRS Exclude the following subdirectories during recursive scan (separated by commas) -i CODES, --include-status=CODES Include status codes, separated by commas, support ranges (e.g. 200,300-399) -x CODES, --exclude-status=CODES Exclude status codes, separated by commas, support ranges (e.g. 301,500-599) --exclude-sizes=SIZES Exclude responses by sizes, separated by commas (e.g. 0B,4KB) --exclude-texts=TEXTS Exclude responses by texts, separated by commas (e.g. 'Not found', 'Error') --exclude-regex=REGEX Exclude responses by regex (e.g. '^Error$') --exclude-redirect=STRING Exclude responses if this regex (or text) matches redirect URL (e.g. '/index.html') --exclude-response=PATH Exclude responses similar to response of this page, path as input (e.g. 404.html) --skip-on-status=CODES Skip target whenever hit one of these status codes, separated by commas, support ranges --min-response-size=LENGTH Minimum response length --max-response-size=LENGTH Maximum response length --max-time=SECONDS Maximum runtime for the scan