CRLFsuite - Fast CRLF injection scanning tool

CRLFsuite is a fast tool specially designed to scan CRLF injection.

⬇️ Installation

git clone
cd CRLFsuite
sudo python3 install
crlfsuite -h

⚙️ Features

  • : Single URL scanning
  • : Multiple URL scanning
  • : Stdin supported
  • : GET & POST method supported
  • : Concurrency
  • : Best Payloads list
  • : Headers supported
  • : ast and efficient scanning with negligible false-positive

📈 Usage

Single URL scanning:

crlfsuite -u ""

Multiple URLs scanning:

$ crlfsuite -i targets.txt

from stdin:

subfinder -d -silent | httpx -silent | crlfsuite -s

Specifying cookies 🍪:

crlfsuite -u "" --cookies "key=val; newkey=newval"

Using POST method:

crlfsuite -i targets.txt -m POST -d "key=val&newkey=newval"

🔑 License

🐞 Bug report

If You’re facing some errors or issues with this tool, you can open a issue here:

👉 Open a issue

