
A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets
This is a tool used to discover endpoints, discover potential parameters, generate a target specific wordlist and find secrets for a given target. It can find them by:
waymore -mode R and also requesting URLs from waymore.txt and the original URLs from waymore_index.txt - see waymore README.md)The python script is based on the link finding capabilities of my Burp extension GAP. As a starting point, I took the amazing tool LinkFinder by Gerben Javado, and used the Regex for finding links, but with additional improvements to find even more.
xnLinkFinder supports Python 3.
Install xnLinkFinder in default (global) python environment.
pip install xnLinkFinder
OR
pip install git+https://github.com/xnl-h4ck3r/xnLinkFinder.git -v
You can upgrade with
pip install --upgrade xnLinkFinder
Quick setup in isolated python environment using pipx
pipx install git+https://github.com/xnl-h4ck3r/xnLinkFinder.git
NOTE: To extract links from PDF files, you can install pdftotext on your system. You can install it using sudo apt install -y poppler-utils on Linux or brew install poppler on macOS. If you don't have pdftotext installed, xnLinkFinder will fall back to using the pypdf Python library. If no text is found (e.g. for scanned PDFs), it will attempt to use ocrmypdf if installed (e.g. sudo apt install -y ocrmypdf). Using pdftotext and ocrmypdf will generally give much better results than pypdf alone.