Ahmed Hamza
  • Home
  • Writeups
  • Tutorials
  • IT-Project

Sensitive Information Disclosure Through Config File

 Title    : Sensitive Information Disclosure Through Config File 
 Weakness : Information Disclosure 
 Severity : High 
 Impact   : An attacker can access private information.  
   
 Steps To Reproduce:
 └─$ ffuf -c -ac -r -u https://target.com/FUZZ -w wordlist.txt 
 
 Wordlists:
 1. https://wordlists.assetnote.io
 2. https://github.com/danielmiessler/SecLists
 3. https://github.com/six2dez/OneListForAll