cariddi
Take a list of domains, crawl URLs, and scan for endpoints, secrets, API keys, file extensions, tokens, and more…
Name:cariddi
Category:Discovery
Publisher:trickest-mhmdiaa
Created:2/5/2022
Container:
quay.io/trickest/cariddi:v1.3.1
Output Type:
License:Unknown
Source:View Source
Parameters
-err
Hunt for errors in websites.-json
Print the output as JSON in stdout.-debug
Print debug information while crawling.-plain
Print only the results.-proxy
Set a Proxy to be used (http and socks5 supported).
List of domains to scan-headers
Use custom headers for each request E.g. Cookie: auth=yes;;Client: type=2.-t
Set timeout for the requests. (default 10)-info
Hunt for useful informations in websites.-intensive
Crawl searching for resources matching 2nd level domain.-ua
Use a custom User Agent.-headersfile
Read from an external file custom headers (same format of headers flag).-s
Hunt for secrets.-rua
Use a random browser user agent on every request.-ef
Use an external file (txt, one per line) to use custom parameters for endpoints hunting.-e
Hunt for juicy endpoints.-ext
Hunt for juicy file extensions. Integer from 1(juicy) to 7(not juicy).-c
Concurrency level. (default 20)-i
Ignore the URL containing at least one of the elements of this array.-d
Delay between a page crawled and another.-sf
Use an external file (txt, one per line) to use custom regexes for secrets hunting.-it
Ignore the URL containing at least one of the lines of this file.