{"repo":"cyinnove/paramx","free":true,"listed":false,"github":"https://github.com/cyinnove/paramx","clone":"git clone https://github.com/cyinnove/paramx.git","description":"ParamX is a tool designed to extract and categorize interesting subdomains and parameters from URLs.","language":"Go","stars":33,"topics":["automation","bugbounty","bugbounty-tool","cybersecurity","parameters","penetration-testing","pentesting","rce","security-tools","securtiy"],"license":"MIT","category":"security-tools","readme_excerpt":"Overview ParamX is a tool designed to extract interesting subdomains and parameters from URLs. It can be handy for bug hunters and penetration testers looking for specific types of vulnerabilities such as XSS, SQLi, LFI, RCE, IDOR, SSRF, SSTI, and open redirects. - inspired from gf by tomnomnom but edited with more clean code and easy configuration using YAML templates Features - Extracts parameters based on specified bug types. - Supports custom templates. - Can update and download YAML configuration templates. - Processes URLs from files or standard input. - Custom parameter value replacement. - Easy configuration using YAML templates not JSON like gf - Supports all-tags mode to search across all vulnerability types - Supports all-params mode to find any parameterized URLs Templates - You can find our written templates here paramx-tempalets or you can create your own, it's so easy to do -the syntax is basic Installation To install ParamX: Usage ParamX is executed via command-line interface (CLI) with several options to customize its behavior. Below are the available flags: - -tp : Directory where YAML configuration files are located. - -l : Path to a file containing URLs (one per line). - -tag : The type of bug to extract the URLs based on it (default: \"xss\"). Supported values: xss, sqli, lfi, rce, idor, ssrf, ssti, redirect. - -at : Search for URLs matching all vulnerability tags. - -ap : Hunt for all kinds of parameterized URLs regardless of tag. - -rw : Replace the param","default_branch":null,"files":null,"tree":[],"storefront":"/r/cyinnove","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cyinnove/paramx/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}