Information Gathering

Waymore – A Comprehensive URL Retrieval And Archival Tool For Advanced Reconnaissance

The idea behind waymore is to find even more links from the Wayback Machine than other existing tools.

The biggest difference between waymore and other tools is that it can also download the archived responses for URLs on wayback machine so that you can then search these for even more links, developer comments, extra parameters, etc. etc. šŸ‘‰

Also, other tools do not currenrtly deal with the rate limiting now in place by the sources, and will often just stop with incomplete results and not let you know they are incomplete.

Anyone who does bug bounty will have likely used the amazing waybackurls by @TomNomNoms. This tool gets URLs from web.archive.org and additional links (if any) from one of the index collections on index.commoncrawl.org.

You would have also likely used the amazing gau by @hacker_ which also finds URL’s from wayback archive, Common Crawl, but also from Alien Vault and URLScan.

Now waymore gets URL’s from ALL of those sources too (with ability to filter more to get what you want):

  • Wayback Machine (web.archive.org)
  • Common Crawl (index.commoncrawl.org)
  • Alien Vault OTX (otx.alienvault.com)
  • URLScan (urlscan.io)
  • Virus Total (virustotal.com)

šŸ‘‰ It’s a point that many seem to miss, so I’ll just add it again šŸ™‚ … The biggest difference between waymore and other tools is that it can also download the archived responses for URLs on wayback machine so that you can then search these for even more links, developer comments, extra parameters, etc. etc.

šŸ‘‰ PLEASE READ ALL OF THE INFORMATION ON THIS PAGE TO MAKE THE MOST OF THIS TOOL, AND ESPECIALLY BEFORE RAISING ANY ISSUES 🤘

šŸ‘‰ THIS TOOL CAN BE VERY SLOW, BUT IT IS MEANT FOR COVERAGE, NOT SPEED

āš ļø A common mistake that is made is passing a file of subdomains to get everything for a domain. DON’T DO IT! Just pass the domain only to get all subs for that domain. It will be SO much quicker, and you won’t miss anything.

Installation

NOTE: If you already have a config.yml file, it will not be overwritten. The file config.yml.NEW will be created in the same directory. If you need the new config, remove config.yml and rename config.yml.NEW back to config.yml.

waymore supports Python 3.

Install waymore in default (global) python environment.

pip install waymore

OR

pip install git+https://github.com/xnl-h4ck3r/waymore.git -v

You can upgrade with

pip install --upgrade waymore

pipx

Quick setup in isolated python environment using pipx

pipx install git+https://github.com/xnl-h4ck3r/waymore.git

For more information click here.

Varshini

Varshini is a Cyber Security expert in Threat Analysis, Vulnerability Assessment, and Research. Passionate about staying ahead of emerging Threats and Technologies.

Recent Posts

cat Command: Read and Combine File Contents in Linux

TheĀ catĀ command short for concatenate, It is a fast and versatile tool for viewing and merging…

1 hour ago

Port In Networking

What is a Port? A port in networking acts like a gateway that directs data…

3 hours ago

ls Command: List Directory Contents in Linux

TheĀ lsĀ command is fundamental for anyone working with Linux. It’s used to display the files and…

7 hours ago

pwd Command: Find Your Location in Linux

TheĀ pwdĀ (Print Working Directory) command is essential for navigating the Linux filesystem. It instantly shows your…

20 hours ago

cd Command in Linux

Navigating a Linux system is effortless when you master theĀ cdĀ command. The name stands for ā€œchange…

20 hours ago

The Shell: Your Entry Point to Linux Control

Introduction The shell is where real Linux power begins. Acting as an interface between you…

20 hours ago