![]() |
|
VHostScan - Printable Version +- Sinisterly (https://sinister.li) +-- Forum: Hacking (https://sinister.li/Forum-Hacking) +--- Forum: Hacking Tools (https://sinister.li/Forum-Hacking-Tools) +--- Thread: VHostScan (/Thread-VHostScan) |
VHostScan - ZanGetsu - 10-05-2017 A virtual host scanner that can be used with pivot tools, detect catch-all scenarios, aliases and dynamic default pages. First presented at SecTalks BNE in September 2017
Product Comparisons: Usage Examples: Code: $ VHostScan.py -t example.com![]() Port forwarding Say you have an SSH port forward listening on port 4444 fowarding traffic to port 80 on example.com's development machine. You could use the following to make VHostScan connect through your SSH tunnel via localhost:4444 but format the header requests to suit connecting straight to port 80: Code: $ VHostScan.py -t localhost -b example.com -p 4444 -r 80STDIN If you want to pipe information into VHostScan you can use the - flag: Code: $ cat bank.htb | VHostScan.py -t 10.10.10.29 -![]() |