Arjun is a python script for finding hidden GET & POST parameters using regex and bruteforce.
- requests
- threading
Here's how you can scan a webpage for get parameters
python arjun.py -u http://example.com/index.php --get
For POST, just use the --post flag. To specify the number of threads you can use the --threads option as following:
python arjun.py -u http://example.com/index.php --get --threads 4
Here's a screenshot you can fap to:
This work is licensed under a Creative Commons Attribution 4.0 International License.