Skip to content

Commit

Permalink
Update CTFBOX.md
Browse files Browse the repository at this point in the history
  • Loading branch information
ZishanAdThandar authored Oct 27, 2024
1 parent 0970c5c commit 9193312
Showing 1 changed file with 4 additions and 6 deletions.
10 changes: 4 additions & 6 deletions notes/CTFBOX.md
Original file line number Diff line number Diff line change
Expand Up @@ -16,13 +16,11 @@
- Wordlist generator
`cewl http://domain.tld/ | grep -v CeWL > custom-wordlist.txt`
- Subdomain Enumeration
```bash
gobuster vhost -u http://monitorsthree.htb --append-domain -w /opt/wordlist/SecLists/Discovery/DNS/subdomains-top1million-5000.txt -r
ffuf -w /opt/wordlist/SecLists/Discovery/DNS/subdomains-top1million-110000.txt:FUZZ -u http://domain.tld -H 'Host: FUZZ.permx.htb' -fw 18
```
1. Gobuster ```gobuster vhost -u http://monitorsthree.htb --append-domain -w /opt/wordlist/SecLists/Discovery/DNS/subdomains-top1million-5000.txt -r```
2. ffuf ```ffuf -w /opt/wordlist/SecLists/Discovery/DNS/subdomains-top1million-110000.txt:FUZZ -fw 18 -u http://domain.tld -H 'Host: FUZZ.permx.htb'```
- Directory Busting
1. Directory`ffuf -w /opt/wordlist/SecLists/Discovery/Web-Content/raft-large-directories.txt -u https://target.com/FUZZ/`
2. Files `ffuf -w /opt/wordlist/SecLists/Discovery/Web-Content/raft-large-directories.txt,/opt/wordlist/SecLists/Discovery/Web-Content/raft-large-files.txt -u https://target.com/FUZZ/`
1. Directory`ffuf -w /opt/wordlist/SecLists/Discovery/Web-Content/raft-large-directories.txt -u https://target.com/FUZZ/`
2. Files `ffuf -w /opt/wordlist/SecLists/Discovery/Web-Content/raft-large-directories.txt,/opt/wordlist/SecLists/Discovery/Web-Content/raft-large-files.txt -u https://target.com/FUZZ/`
- Recursive directory busting `ffuf -w /opt/wordlist/SecLists/Discovery/Web-Content/raft-large-directories.txt,/opt/wordlist/SecLists/Discovery/Web-Content/raft-large-files.txt -recursion -recursion-depth 3 -u https://target.com/FUZZ/`
- BruteForce
- Check outdated or vulnerable version for any service or software using exploitdb and google
Expand Down

0 comments on commit 9193312

Please sign in to comment.