作者: Letda Kes dr. Sobri, S.Kom.
一款渗透测试工具,用于通过多种HTTP头操作技术和路径模糊测试绕过HTTP 401/403响应。
# 克隆仓库
git clone https://github.com/sobri3195/pegasus-forbidden-buster.git
cd pegasus-forbidden-buster
# 安装依赖
pip install -r requirements.txt
基本用法:
python pegasus_cli.py -u https://example.com/restricted-area
高级用法:
python pegasus_cli.py -u https://example.com/admin -m POST -H "Authorization: Basic YWRtaW46YWRtaW4=" -d '{"username":"admin"}' -p http://127.0.0.1:8080 --rate-limit 5 --include-all --threads 10 --output report.html --format html
| 选项 | 描述 |
|---|---|
-u, --url | 目标URL(必需) |
-m, --method | 使用的HTTP方法(默认:GET) |
-H, --header | 添加自定义头(格式:"Name: Value") |
-d, --data | 请求体数据(支持JSON字符串) |
-p, --proxy | 使用的代理(格式:http://ip:port) |
--rate-limit | 每秒请求速率限制(默认:10) |
--threads | 并行扫描线程数(默认:5) |
--include-unicode | 启用Unicode路径模糊测试 |
--include-user-agent | 启用User-Agent模糊测试 |
--include-params | 启用参数污染攻击 |
--include-cookies | 启用Cookie操作技术 |
--include-all | 启用所有绕过技术 |
--discover | 启用内容发现模式 |
--wordlist | 内容发现词表文件路径 |
--extensions | 逗号分隔的尝试扩展名列表 |
--output | 保存结果的输出文件 |
--format | 输出格式(json、html、text) |
-v, --verbose | 启用详细输出 |
-q, --quiet | 抑制横幅和非必要输出 |
--timeout | 请求超时秒数(默认:10) |
--user-agent | 使用的自定义User-Agent |
--cookies | 使用的Cookie(格式:"name1=value1; name2=value2") |
--auth | HTTP基本认证(格式:"username:password") |
--depth | 路径遍历深度(默认:3) |
# 基本扫描
python pegasus_cli.py -u https://example.com/admin
# 全量扫描(使用所有技术)
python pegasus_cli.py -u https://example.com/admin --include-all
# 内容发现扫描
python pegasus_cli.py -u https://example.com/admin --discover --wordlist wordlists/common.txt --extensions php,html,txt
# 生成HTML报告
python pegasus_cli.py -u https://example.com/admin --include-all --output reports/report.html --format html
# 使用自定义头和代理
python pegasus_cli.py -u https://example.com/admin -H "X-Custom-Header: Value" -H "Authorization: Bearer token" -p http://127.0.0.1:8080
pegasus-forbidden-buster/
├── pegasus_cli.py # Main CLI entry point
├── requirements.txt # Dependencies
├── README.md # Documentation
├── src/
│ ├── core/ # Core scanner functionality
│ ├── modules/ # Bypass technique modules
│ ├── utils/ # Utility functions
│ └── data/ # Data files and payloads
├── reports/ # Generated reports
└── examples/ # Example configurations
欢迎贡献!请随时提交Pull Request。
如果您觉得这个工具有用,可以考虑支持开发:
本工具仅供合法渗透测试和安全研究使用。未经明确许可对任何系统使用本软件是违法的,并非本软件的预期用途。
本项目采用MIT许可证 - 详情请参阅LICENSE文件。