From 388bb77a81ac7518b3af6159f7b1a07203ff9b42 Mon Sep 17 00:00:00 2001 From: topscoder <86197446+topscoder@users.noreply.github.com> Date: Wed, 10 May 2023 19:54:14 +0200 Subject: [PATCH] Added some more headers --- README.md | 2 +- fourohme.go | 4 ++++ 2 files changed, 5 insertions(+), 1 deletion(-) diff --git a/README.md b/README.md index ee84add..b005f05 100644 --- a/README.md +++ b/README.md @@ -6,7 +6,7 @@ FourOhMe is a tool for testing HTTP headers on a website in order to try to bypa Install Golang, then run: -`go install -v github.com/topscoder/fourohme` +`go install -v github.com/topscoder/fourohme@latest` ## Usage diff --git a/fourohme.go b/fourohme.go index d972fec..a2750ad 100644 --- a/fourohme.go +++ b/fourohme.go @@ -20,9 +20,13 @@ func main() { headersList := []map[string]string{ {"X-Forwarded-For": "127.0.0.1:80"}, {"X-Custom-IP-Authorization": "127.0.0.1"}, + {"X-Host": "127.0.0.1"}, {"X-Original-URL": "%URL%"}, {"X-Original-URL": "%PATH%"}, + {"X-rewrite-url": "%PATH%"}, + {"Content-Length": "0", "HTTP": "POST"}, {"HTTP": "OPTIONS"}, + {"HTTP": "TRACE"}, } urls := readUrlsFromInput(urlPtr, filePtr)