Web Application Security

Byp4Xx – Simple Bash Script To Bypass “403 Forbidden”

0

A bash script to bypass “403 Forbidden” responses with well-known methods discussed in #bugbountytips

    __                __ __           
   / /_  __  ______  / // / _  ___  __
  / __ \/ / / / __ \/ // /_| |/_/ |/_/
 / /_/ / /_/ / /_/ /__  __/>  <_>  <  
/_.___/\__, / .___/  /_/ /_/|_/_/|_|  
      /____/_/                        

Installation:

git clone https://github.com/lobuhi/byp4xx.git
cd byp4xx
chmod u+x byp4xx.sh

Usage: Start URL with http or https.

./byp4xx.sh [OPTIONS] http(s)://url/path

OPTIONS:
  -c Return the entire curl command if response is 200
  -r Redirects if the response is 3XX

Example:

./byp4xx.sh https://www.google.es/test

Features:

  • Multiple HTTP verbs/methods
  • Multiple methods mentioned in #bugbountytips
  • Multiple headers: Referer, X-Custom-IP-Authorization…
  • Allow redirects
  • Return the entire curl command if response is 200

Tips:

  • You can add proxychains to use with BurpSuite
  • Interlace is a good option for multithreading multiples URLs

Download Byp4Xx

OpenCTI – Open Cyber Threat Intelligence Platform

Previous article

Urlhunter – A Recon Tool That Allows Searching On URLs That Are Exposed Via Shortener Services

Next article

You may also like

Comments

Leave a reply

E-posta hesabınız yayımlanmayacak. Gerekli alanlar * ile işaretlenmişlerdir