Skip to content

Automatically look for paramater reflections in the HTTP response

License

Notifications You must be signed in to change notification settings

bebiksior/CaidoReflector

Folders and files

NameName
Last commit message
Last commit date

Latest commit

Apr 29, 2024
fd00f38 · Apr 29, 2024

History

4 Commits
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024
Apr 29, 2024

Repository files navigation

CaidoReflector

CaidoReflector is a passive workflow for Caido that will automatically look for paramater reflections in the HTTP response.

Installation [Recommended]

  1. Install EvenBetter extension https://github.com/bebiksior/EvenBetter
  2. Go to Workflows -> Library
  3. Search for CaidoReflector and click Add
  4. Done 🎉

Installation [without EvenBetter plugin]

  1. Download https://github.com/bebiksior/CaidoReflector/blob/main/Reflector.json
  2. In Caido, navigate to the Workflows page
  3. Click Import and select the downloaded JSON file.
  4. Done 🎉

TODO

  • support query parameters without value
  • support JSON request body
  • allow users to easily disable scanning POST requests

Contribution

Feel free to contribute! If you'd like to request a feature or report a bug, please create a GitHub Issue.

About

Automatically look for paramater reflections in the HTTP response

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published