
Зондирование и обнаружение HTTP-путей методом перебора (brute-force) с фильтрацией по определённому слову или двум словам одновременно
Обнаружение HTTP-путей методом грубой силы с фильтрацией по одному или двум словам.

Подбор директорий веб-сайтов или HTTP-путей с проверкой только по коду ответа уже неактуален. Этот инструмент поможет вам провести тест на проникновение, так как он может проверять пути по одному или двум ключевым словам, что даёт более точные результаты.
git clone https://github.com/xchopath/pathprober
cd pathprober/
pip3 install -r requirements.txt
Несколько целей, несколько путей и несколько слов:
python3 pathprober.py -T target.txt -P path.txt -w "APP_NAME" -w2 "DB_PASSWORD"
Одна цель, несколько путей и одно слово:
python3 pathprober.py -t https://redacted.com/ -P path.txt -w "APP_NAME"
Несколько целей, один путь, несколько слов и сохранение вывода в файл:
python3 pathprober.py -T target.txt -p /.env -w "APP_NAME" -w2 "TWILIO" -o output.txt
bash:~/pathprober$ python3 pathprober.py --help
___ ____ ___ _ _ ___ ____ ____ ___ ____ ____
|__] |__| | |__| |__] |__/ | | |__] |___ |__/
| | | | | | | | \ |__| |__] |___ | \
Probe HTTP pathname filtered by words
usage: pathprober.py [-h] [-t https://example.com] [-p pathname] [-T target.txt] [-P path.txt] [-w Word] [-w2 Word] [-o output.txt]
PathProber - Probe and discover HTTP pathname using brute-force methodology and filtered by specific word or 2 words at once
optional arguments:
-h, --help show this help message and exit
-t https://example.com
Single website target
-p pathname Single pathname
-T target.txt Multiple target separated by newline
-P path.txt Multiple pathname separated by newline
-w Word A word that you want to find in a path
-w2 Word A second word that you want to find in a path
-o output.txt Save the results to file