Brutemap is an open source penetration testing tool that automates testing accounts to the site’s login page, based on Dictionary Attack.
With this, you no longer need to search for other bruteforce tools and you also no longer need to ask CMS What is this? only to find parameter forms, because it will do it automatically.
It is also equipped with an attack method that makes it easy for you to do account checking or test forms with the SQL injection bypass authentication technique.
Also Read – Pown Recon : A Powerful Target Reconnaissance Framework Powered By Graph Theory
Installation
It uses selenium to interact with the website. So, you need to install Web Driver for selenium first. See here. If you have installed the git package, you only need to clone the repository Git. Like this:
$ git clone https://github.com/brutemap-dev/brutemap.git
And, install the required modules:
$ pip install -r requirements.txt
For basic use:
$ python brutemap.py -t http://www.example.com/admin/login.php -u admin -p default
To display a list of available options:
$ python brutemap.py -h
The sort command in Linux reads lines from files or standard input and writes them to standard…
The wall command in Linux sends a message to the terminals of all currently logged-in users. The…
journalctl queries logs collected by systemd-journald, the systemd logging daemon. It gives you structured access to kernel…
The stat command in Linux displays detailed metadata about files and filesystems. Where ls gives a condensed summary suitable…
In Linux, groups organize user accounts and define shared access to files and resources. Every…
The touch command in Linux does two things: it creates new empty files, and it updates the…