mirror of
https://github.com/0xMarcio/PentestPilot.git
synced 2026-02-13 13:32:55 +00:00
Initial commit of PentestPilot — AI‑assisted pentest recon and orchestration toolkit.\n\nHighlights:\n- Resumeable pipelines (full_pipeline) with manifest state and elapsed timings\n- Rich dashboard (colors, severity bars, durations, compact/json modes)\n- Web helpers: httpx→nuclei auto, tech routing + quick scanners\n- Agents: multi‑task orchestrator (web/full/ad/notes/post) with resume\n- AD/SMB, password utils, shells, transfer, privesc, tunnels\n- QoL scripts: proxy toggle, cleanup, tmux init, URL extractor\n- Docs: README (Quick Start + Docs Index), HOWTO (deep guide), TOOLKIT (catalog with examples)\n\nStructure:\n- bin/automation: pipelines, dashboard, manifest, resume, tech_actions\n- bin/web: routing, scanners, helpers\n- bin/ai: orchestrators + robust AI utils\n- bin/ad, bin/passwords, bin/shells, bin/transfer, bin/privesc, bin/misc, bin/dns, bin/scan, bin/windows, bin/hashes\n- HOWTO.md and TOOLKIT.md cross‑linked with examples\n\nUse:\n- settarget <target>; agent full <domain|hosts.txt>; dashboard --compact\n- See HOWTO.md for setup, semantics, and examples.
25 lines
661 B
Bash
Executable File
25 lines
661 B
Bash
Executable File
#!/usr/bin/env bash
|
|
set -euo pipefail
|
|
|
|
usage(){
|
|
cat >&2 <<USAGE
|
|
Usage: $(basename "$0") <url-with-FUZZ> [wordlist]
|
|
e.g. http://10.10.10.10/index.php?FUZZ=1
|
|
default wordlist: /usr/share/wordlists/seclists/Discovery/Web-Content/burp-parameter-names.txt
|
|
USAGE
|
|
exit 1
|
|
}
|
|
|
|
url=${1:-}
|
|
[[ -z "$url" ]] && usage
|
|
wordlist=${2:-/usr/share/wordlists/seclists/Discovery/Web-Content/burp-parameter-names.txt}
|
|
|
|
outdir=${OUTDIR:-scans}
|
|
mkdir -p "$outdir"
|
|
ts=$(date +%Y%m%d_%H%M%S)
|
|
base="$outdir/ffuf_params_$(echo -n "$url" | tr '/:' '__')_${ts}"
|
|
|
|
ffuf -u "$url" -w "$wordlist" -fs 0 -of csv -o "$base.csv" 2>&1 | tee "$base.log"
|
|
echo "[+] Results saved to $base.csv"
|
|
|