
OWASP D4N155 - Lista de palavras inteligente e dinâmica usando OSINT
BUG: Extrair urls por domínio não funciona. Crawler do Google parou. Vou corrigir.
![]()
![]()
É uma ferramenta de auditoria de segurança da informação que cria wordlists inteligentes baseadas no conteúdo da página alvo.
Ajude-nos, Veja alguns cálculos usados
Projetos em andamento 👷: D4N155 no Docker 🎁, API Web D4N155 ☁️, Bot do Telegram 🤖
Necessário: Python3.6, Bash (GNU Bourne-Again SHell), Go
Opcional: Git
git clone https://github.com/owasp/D4N155.git
cd D4N155
pip3 install -r requirements.txt
bash main --help
Ou sem git
wget -qO- https://github.com/owasp/D4N155/archive/master.zip | bsdtar -xf-
cd D4N155-master
pip3 install -r requirements.txt
bash main --help
Na imagem:
FROM docker.pkg.github.com/owasp/d4n155/d4n155:latest
Cli:
docker pull docker.pkg.github.com/owasp/d4n155/d4n155:latest
docker run -it d4n155
D4N155: Tool for smart audit security
Usage: bash main <option> <value>
All options are optionals
Options:
-w, --wordlist* <domain|ip> Make the smartwordlist based in informations
on website.
-t, --targets <file> Make the smart-wordlist based in your passed
source informations in urls.
-b, --based <file> Analyze texts to generate the
custom wordlist
-r, --rate <time> Defines time interval between requests
-o, --output <file> For to store the all wordlist.
-?a, --aggressive Aggressive reading with headless
-h, --help Show this mensage.
Value: <url | ip | source | file | time>
DOMAIN DOMAIN target, example: scanme.nmap.org
IP IP address
TIME Time, example: 2.5. I.e: 00:00:02:30.. 0 are default
FILE File, for save the result, get urls or using in
wordlist
* Crawler google dont work