ffuf-web-fuzzing - Fuzz Web Targets with FFUF
Provides guidance for FFUF web fuzzing, including authenticated raw-request fuzzing, auto-calibration, filtering, and result analysis.
Tags
Updated: 2026-10-02Capabilities
Typical Inputs
Typical Outputs
What this skill does
- Discover hidden web content
- Fuzz URLs and parameters
- Fuzz headers and request bodies
- Use raw authenticated requests
- Apply matchers and filters
- Auto-calibrate response baselines
- Control scan rate and timing
- Export scan results
- Analyze fuzzing results
Inputs
- Target URLs
- Wordlists
- FUZZ-marked request templates
- Authenticated raw HTTP requests
- HTTP headers and cookies
- Authentication tokens
- Matcher and filter settings
- Rate and timing settings
- Output paths and formats
Outputs
- Console scan output
- Fuzzing findings
- Filtered scan results
- JSON, HTML, or CSV files
Requirements
- FFUF command-line binary
- Network access to targets
- Credentials or tokens for authenticated requests
