An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and scans for some low hanging vulnerabilities automatically.
hey everyone ,i ran this garud tool for the first time and i wonder if anything is wrong here because i am not getting any vunerabilities or subdomain takeover etc ,these are the typo here -
https://vulnerable-website.com/
OUTPUT> home < kali < Desktop < https: < vulnerable-website.com < _2023_40_21-21_40_23
Unknown option -silent
STARTING SUBDOMAIN SCANNING ON https://vulnerable-website.com/ (it may take time)
STARTING WEBCRAWLING ON https://vulnerable-website.com/ (it may take time)
hey everyone ,i ran this garud tool for the first time and i wonder if anything is wrong here because i am not getting any vunerabilities or subdomain takeover etc ,these are the typo here -
https://vulnerable-website.com/ OUTPUT> home < kali < Desktop < https: < vulnerable-website.com < _2023_40_21-21_40_23 Unknown option -silent
https://github.com/internetwache/GitTools
https://www.exploit-db.com/ghdb/6630 https://github.com/cve-search/git-vuln-finder etc etc
STARTING NUCLEI VULNERABILITY SCANNING ON https://vulnerable-website.com/ (it may take time) STARTING INJECTION VULNERABILITY SCANNING ON https://vulnerable-website.com/ (it may take time) STARTING DIRECTORY FUZZING ON https://vulnerable-website.com/ (it may take time)
SCANNING COMPLETED SUCCESSFULY ON https;// vulnerable-website.com/