My Concept
reflix -l urls.txt -w /home/bugbounty-wordlists/raft-large-words-lowercase.txt -X GET,POST -H "User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:145.0) Gecko/20100101 Firefox/145.0" -o t.txt -po params.txt -c 15 -hd -p nexovir -d --dom --heavy -xtFind Generic Vulnerabilities
./xray_linux_amd64 ws --basic https://www.webucate.in --plugin xss,sqldet,cmd-injection,path-traversal,redirectfor i in $(cat target.txt); do ./xray_linux_amd64 ws --basic-crawler $i --plugins xss,sqldet,cmd-injection,redirect,path-traversal --html-output "$(date +%T).html"; doneFind Broken Access Control
cat livesubdomains.txt | httpx -mc 403 -title -sc -td -server -location && cat livesubdomains.txt | httpx -mc 401 -title -sc -td -server -locationFind OS Command Injection
XSS Hunting
XSS Hunting1
2
3
4
5
6
7
8
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
27
28
29
30
33
34
36
39
40
41
42
43
45
46
Check with wordlist
Check All Paths
Last updated