Security

feroxbuster – recursive discovery tool

feroxbuster is a tool designed to perform Forced Browsing. It’s a fast, simple, recursive content discovery tool.

Forced browsing is an attack where the aim is to enumerate and access resources that are not referenced by the web application, but are still accessible by an attacker.

feroxbuster uses brute force combined with a wordlist to search for unlinked content in target directories. These resources may store sensitive information about web applications and operational systems, such as source code, credentials, internal network addressing, etc…

This attack is also known as Predictable Resource Location, File Enumeration, Directory Enumeration, and Resource Enumeration.

This is free and open source software.

Features include:

  • Cross-platform support – runs under Linux, macOS, and Windows.

Website: github.com/epi052/feroxbuster
Support:
Developer: epi
License: MIT License

feroxbuster in action
Click image for full size

Ferox is short for Ferric Oxide. Ferric Oxide, simply put, is rust.

feroxbuster is written in Rust. Learn Rust with our recommended free books and free tutorials.

Subscribe
Notify of
guest

This site uses Akismet to reduce spam. Please read our Comment FAQ before posting a comment.

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments