No announcement yet.

Tool - DirBuster

  • Time
  • Show
Clear All
new posts

  • Tool - DirBuster

    Tool: dirbuster
    Use: Enumeration of directories and files on web servers.
    Version: 1.0-RC1
    OS: Linux
    Vendor/Author: James Fisher & John Anderson
    Status: Inactive (Last commit is from 2009) however it now exists as an OWASP Zap add-on.
    Description: DirBuster is a multi threaded java application designed to brute force directories and files names on web/application servers.

    Even though this tool is no longer being updated it is very popular for a reason. It works very well. The tools is very useful for finding hidden files and directories on web servers. It supports both brute forcing and dictionary attacks and it comes with nine different wordlists. The tool is very similar to the DIRB tool except that DirBuster is controlled using a graphical user interface and DIRB is not.
    Click image for larger version  Name:	dirbuster.png Views:	1 Size:	49.4 KB ID:	666

    Certified Security Geek