rad爬取的数据放入burpsuite,然后x-ray将burpsuite的数据进行测试
rad:
.\rad_windows_amd64.exe -t http://****.com -http-proxy 127.0.0.1:8080
.\rad_windows_amd64.exe -t 待测url -http-proxy 127.0.0.1:8080
.\rad_windows_amd64.exe -t https://www.xxx.cn/ -text-output result.txt
www.xxx.cn
.\rad_windows_amd64.exe -t https://www.xxx.cn/ -text-output result.txt
x-ray:
.\xray_windows_amd64.exe webscan --listen 127.0.0.1:7777 --html-output result.html
nuclei:
https://github.com/projectdiscovery/nuclei/releases
wget https://github.com/projectdiscovery/nuclei/releases/download/v2.9.1/nuclei_2.9.1_linux_amd64.zip
wget https://github.com/projectdiscovery/nuclei/releases/download/v3.3.0/nuclei_3.3.0_linux_arm64.zip
apt install unzip 有则省略
unzip nuclei_3.3.0_linux_arm64.zip
mv nuclei /usr/local/bin/
chmod +x nuclei
nuclei --version
上传云端
nuclei -u https://convocation.apps.sinica.edu.tw/ -t cves/ -p http://127.0.0.1:7890 -cloud-upload -ms
参数








