Skip to content

Alternative to burp's intruder built on top of httpx

Notifications You must be signed in to change notification settings

Giardi77/IntruderX

Repository files navigation

IntruderX - An alternative to Burp's intruder

IntruderX menu

I got really annoyed by the slowness and limitations on burp suite community's intruder, so i decided to try and make my version of it.

Setup

How does it work

I've tried my best to make it super easy and comprehesible, the main feature of this tool is that you can easily add more stuff.

The easiest thing you can do it's sending a request with -m (method) and -t (target) switches

simple req

this will send a simple get request to the TARGET.

As i mentioned previously you can add more stuff like parameters, headers or application/x-www-form-urlencoded data in the body (JSON for POST requests). Let's add all of that.

custom req

Now the fun part. You can use the -sc switch (--special_char) followed by a key-value pair where key is the special char and the value is the list of objects to iterate by replacing his special char.

Special char can be ranges of numbers like "range(10)" (from 0 to 9) or list of char like "abcde" or list of lines of a file .txt (just give the right path to it). special chars can be used anywhere except for the target.

to this last combination

you can also use the --inclues or --omits switch to check i a certain string in present or not in a response, if the condition is reached the request it get's saved in a file (under outputs dir).

About

Alternative to burp's intruder built on top of httpx

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages