scant3r
Scant3r Scans all URLs with multiple HTTP Methods and Tries to look for bugs with basic exploits from Headers and URL Parameters By chaining waybackurls or gau with Scant3r you will have more time to look into functions and get Easy bugs on the way.
Details
Category: Cloud Storage
Publisher: trickest
Created Date: 6/23/2021
Container: quay.io/trickest/scant3r:22efc27
Source URL: https://github.com/knassar702/scant3r
Parameters
api
boolean
Command:
-a
- Start Scant3r APIproxy
string
Command:
-p
- Forward all requests for proxyheader
string
Command:
-H
- Add custom header (ex: Cookies: test=1)module
string
requiredCommand:
-m
- Run scant3r module (ex: example). Available lorsrf, ssrf,paths,xss,sqli,rce,finder,xss_param,ssti,injheaders,reflectsilent
boolean
Command:
-n
- Silent Modemethods
string
Command:
-y
- Methods Allowed on your targettimeout
string
Command:
-t
- Set connection timeout (default: 10)workers
string
Command:
-w
- Number of workers (default: 50)url-list
file
requiredCommand:
- Path to url list file for scan to be performedexternal-host
string
Command:
-x
- Add your host (burpcall,etc..)debugging-mode
boolean
Command:
-d
- Debugging mode (show requests/responses)xss-hunter-host
string
Command:
-b
- Add your xsshunter host (or any xss host)random-parameters
boolean
Command:
-g
- Generate Famouse Parameters if your url dosen't have parametersrandom-user-agent
boolean
Command:
-R
- Use random user agent