<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
		<id>https://wiki.owasp.org/index.php?action=history&amp;feed=atom&amp;title=Performing_Directory_Brute-Force_Attack</id>
		<title>Performing Directory Brute-Force Attack - Revision history</title>
		<link rel="self" type="application/atom+xml" href="https://wiki.owasp.org/index.php?action=history&amp;feed=atom&amp;title=Performing_Directory_Brute-Force_Attack"/>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Performing_Directory_Brute-Force_Attack&amp;action=history"/>
		<updated>2026-04-05T12:10:32Z</updated>
		<subtitle>Revision history for this page on the wiki</subtitle>
		<generator>MediaWiki 1.27.2</generator>

	<entry>
		<id>https://wiki.owasp.org/index.php?title=Performing_Directory_Brute-Force_Attack&amp;diff=41619&amp;oldid=prev</id>
		<title>D0ubl3 h3lix: New page: '''Description'''  There are dozens of tools that let us brute-forcing directories names for sensitive information digging. In this movie, we illustrated Directory Brute-Forcing with the t...</title>
		<link rel="alternate" type="text/html" href="https://wiki.owasp.org/index.php?title=Performing_Directory_Brute-Force_Attack&amp;diff=41619&amp;oldid=prev"/>
				<updated>2008-09-30T15:27:20Z</updated>
		
		<summary type="html">&lt;p&gt;New page: &amp;#039;&amp;#039;&amp;#039;Description&amp;#039;&amp;#039;&amp;#039;  There are dozens of tools that let us brute-forcing directories names for sensitive information digging. In this movie, we illustrated Directory Brute-Forcing with the t...&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;'''Description'''&lt;br /&gt;
&lt;br /&gt;
There are dozens of tools that let us brute-forcing directories names for sensitive information digging. In this movie, we illustrated Directory Brute-Forcing with the tool called 'JBroFuzz'. The reason why we like it is that it can brute force a large number of directories. As of this writing,the latest version JBroFuzz 0.8 has 58658 directories names that are commonly used by today's web sites. The only defense is you must not place/protect sensitive information in server-side (.htaccess). Just wanna show you - Security Through Obscurity is broken.&lt;br /&gt;
Size: 3.51 MB &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
'''Download:'''&lt;br /&gt;
&lt;br /&gt;
http://yehg.net/lab/pr0js/files.php/performing_directory_bruteforce_attack.zip&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:Non-OWASP_Trainings]]&lt;/div&gt;</summary>
		<author><name>D0ubl3 h3lix</name></author>	</entry>

	</feed>