Arjun v1.1 – HTTP Parameter Discovery Suite

0
10
Arjun v1.1 - HTTP Parameter Discovery Suite

Features

  • Multi-threading
  • Three modes of detection
  • Regex powered heuristic scanning
  • Huge checklist of 3370 parameter names

Usage

Note: Arjun would not work with python < 3.4

Discover parameters
To discover GET parameters, you possibly can merely do:

python3 arjun.py -u https://api.instance.com/endpoint --get

Similarly, use --post to search out POST parameters.

Multi-threading
Arjun makes use of 2 threads by default however you possibly can tune its efficiency based on your community connection.

python3 arjun.py -u https://api.instance.com/endpoint --get -t 22

Delay between requests
You can delay the request through the use of the -d possibility as follows:

python3 arjun.py  -u https://api.instance.com/endpoint --get -d 2

Adding HTTP Headers
Using the --headers swap will open an interactive immediate the place you possibly can paste your headers. Press Ctrl + S to avoid wasting and Ctrl + X to procced.

Note: Arjun makes use of nano because the default editor for the immediate however you possibly can change it by tweaking /core/immediate.py.

Credits
The parameter names checklist has been taken from @SecLists

MoreTip.com

LEAVE A REPLY

Please enter your comment!
Please enter your name here

This site uses Akismet to reduce spam. Learn how your comment data is processed.