Webbies Toolkit is a pair of tools that enable asynchronous web recon & enumeration including SSL detection, banner grabbing and presence of login forms.
Webbies Features Respects scope (including redirects) Uses same DNS resolver for enumeration and retrieval by patching aiohttp TCPConnector Cached DNS requests by wrapping aiodns SSLContext can be modified for specific SSL versions Outputs a simple CSV for easy grep-fu of results Asynchronous http(s) and dns Specialized bingapi search on ip and hostname given bing key FDB Features Fast directory/web application eumeration Dir bust numerous hosts simultaneously and save all results in a directory in a CSV file per host Task control to limit requests per second Multiple progress bars for current status on running FDB’s Include word list used, target, extensions, and start and stop times in CSV file 404 detection based on response structure and content Usage usage: classify.webbies.py [-h] [-A] [-b BING_KEY] [-g GNMAP] [-G GNMAPDIR] [-i INPUTLIST] [-n NESSUS] [-N NESSUSDIR] [-o OUTPUT] [-R NAMESERVERS] [-s SCOPE] [-T THREADS] [-u USERAGENTS] [-v] [-V] enumerateand displaydetailedinformationaboutweblisteners optionalarguments: -h, --helpshowthis helpmessageand exit -A, --analyzeanalyzeweblistenersresponsesand groupaccording similarity -b BING_KEY, --bing_keyBING_KEY bingAPIkey -g GNMAP, --gnmapGNMAP gnmapinputfile -G GNMAPDIR, --gnmapdirGNMAPDIR Directorycontaininggnmapinputfiles -i INPUTLIST, --inputListINPUTLIST inputfilewithhostslistedhttp(s)://ip:port/ or ip:portperline -n NESSUS, --nessusNESSUS nessusinputfile -N NESSUSDIR, --nessusdirNESSUSDIR Directorycontainingnessusfiles -o OUTPUT, --outputOUTPUT Outputfile. Supportedtypesarecsv. default is lastrun.csv -R NAMESERVERS, --nameserversNAMESERVERS