|
6 | 6 |
|
7 | 7 | - μμ μΆλ ₯([c]olored output)κ³Ό λμ URL([u]RL)μ μ§μ νλ λ¨μ΄ 리μ€νΈ([w]ordlist)λ₯Ό μ¬μ©νμ¬ λλ ν 리λ₯Ό μ΄κ±°: |
8 | 8 |
|
9 | | -`ffuf -c -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://target/FUZZ}}` |
| 9 | +`ffuf -c -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://example.com/FUZZ}}` |
10 | 10 |
|
11 | 11 | - ν€μλ μμΉλ₯Ό λ³κ²½νμ¬ νμ λλ©μΈμ μΉμλ²λ₯Ό μ΄κ±°: |
12 | 12 |
|
13 | | -`ffuf -w {{κ²½λ‘/λμ/μλΈλλ©μΈ.txt}} -u {{http://FUZZ.target.com}}` |
| 13 | +`ffuf -w {{κ²½λ‘/λμ/μλΈλλ©μΈ.txt}} -u {{http://FUZZ.example.com}}` |
14 | 14 |
|
15 | 15 | - μ§μ λ μ€λ λ([t]hreads) (κΈ°λ³Έκ°: 40)λ₯Ό νΌμ§νκ³ νΈλν½μ νλ‘νμΌλ§(pro[x]ying)νκ³ μΆλ ₯([o]utput)μ νμΌμ μ μ₯: |
16 | 16 |
|
17 | | -`ffuf -o -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://target/FUZZ}} -t {{500}} -x {{http://127.0.0.1:8080}}` |
| 17 | +`ffuf -o -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://example.com/FUZZ}} -t {{500}} -x {{http://127.0.0.1:8080}}` |
18 | 18 |
|
19 | 19 | - νΉμ ν€λ([H]eader) ("μ΄λ¦: κ°")λ₯Ό νΌμ§νκ³ HTTP μν μ½λμ μΌμΉμν΄([m]atch): |
20 | 20 |
|
21 | | -`ffuf -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://target.com}} -H "{{Host: FUZZ}}" -mc {{200}}` |
| 21 | +`ffuf -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘.txt}} -u {{http://example.com}} -H "{{Host: FUZZ}}" -mc {{200}}` |
22 | 22 |
|
23 | 23 | - μ§μ λ HTTP λ©μλμ λ°μ΄ν°([d]ata)λ₯Ό νΌμ¦νκ³ , μΌνλ‘ κ΅¬λΆλ μν μ½λ([c]odes)λ₯Ό νν°λ§([f]iltering): |
24 | 24 |
|
25 | | -`ffuf -w {{κ²½λ‘/λμ/ν¬μ€νΈλ°μ΄ν°.txt}} -X {{POST}} -d "{{username=admin\&password=FUZZ}}" -u {{http://target/login.php}} -fc {{401,403}}` |
| 25 | +`ffuf -w {{κ²½λ‘/λμ/ν¬μ€νΈλ°μ΄ν°.txt}} -X {{POST}} -d "{{username=admin\&password=FUZZ}}" -u {{http://example.com/login.php}} -fc {{401,403}}` |
26 | 26 |
|
27 | 27 | - λ€μν λͺ¨λλ₯Ό μ¬μ©νμ¬ μ¬λ¬ λ¨μ΄ λͺ©λ‘μΌλ‘ μ¬λ¬ μμΉλ₯Ό νΌμ¦: |
28 | 28 |
|
29 | | -`ffuf -w {{κ²½λ‘/λμ/keys:KEY}} -w {{κ²½λ‘/λμ/values:VALUE}} -mode {{pitchfork|clusterbomb}} -u {{http://target.com/id?KEY=VALUE}}` |
| 29 | +`ffuf -w {{κ²½λ‘/λμ/keys:KEY}} -w {{κ²½λ‘/λμ/values:VALUE}} -mode {{pitchfork|clusterbomb}} -u {{http://example.com/id?KEY=VALUE}}` |
30 | 30 |
|
31 | 31 | - HTTP MITM νλ‘μ(pro[x]y) (Burp Suite λλ `mitmproxy`)λ₯Ό ν΅ν νλ‘μ μμ²: |
32 | 32 |
|
33 | | -`ffuf -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘}} -x {{http://127.0.0.1:8080}} -u {{http://target.com/FUZZ}}` |
| 33 | +`ffuf -w {{κ²½λ‘/λμ/λ¨μ΄λͺ©λ‘}} -x {{http://127.0.0.1:8080}} -u {{http://example.com/FUZZ}}` |
0 commit comments