Web Application Penetration Automation Testing Tool - WAPATT

  • Unique Paper ID: 154789
  • PageNo: 493-497
  • Abstract:
  • We are making a automation Tool for Finding a bugs in website or web application. There are many tools available on OPEN SOURCE Platforms (github, gitlab.) in this project tools are used perform specific working. To find bugs like XSS, SQL Injection, OPEN REDIRECTION, and also find CVE (Common Vulnerabilities & Exposures) based Vulnerabilities. Project Hunt Bull is a collection of OPEN SOURCE tools, this project helps to find larger amount of subdomains, filter out the live or dead host and save in list and increase the chances of vulnerability exists in websites . The tool first of all enumerate all subdomains of the provided target domain using AMASS, SUBLISTER, SUBFINDER, and ASSETFINDER, then filters all valid domains from the entire subdomain list, then uses httpx to extract subdomain titles, and finally uses nuclei-tool to scan for CVE based vulnerability. Then it uses waybackurl tool to extract url parameters, then run gf-patterns tool to filter the xss, ssti, ssrf, and sqli parameters from those subdomains, and last it checks The output will be stored as target xss.txt in a text file , then manual testing of this parameter and increase the chances of vulnerability exists in websites , then send notifications on discord, telegram using the notify-tool.

Copyright & License

Copyright © 2026 Authors retain the copyright of this article. This article is an open access article distributed under the Creative Commons Attribution License which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.

BibTeX

@article{154789,
        author = {Nitesh Kumar and Prajwal Bajpai and Dr. Raju Ranjan},
        title = {Web Application Penetration Automation Testing Tool - WAPATT},
        journal = {International Journal of Innovative Research in Technology},
        year = {},
        volume = {8},
        number = {12},
        pages = {493-497},
        issn = {2349-6002},
        url = {https://ijirt.org/article?manuscript=154789},
        abstract = {We are making a automation Tool for Finding a bugs in website or web application. There are many tools available on OPEN SOURCE Platforms (github, gitlab.) in this project tools are used perform specific working. To find bugs like XSS, SQL Injection, OPEN REDIRECTION, and also find CVE (Common Vulnerabilities & Exposures) based Vulnerabilities.
Project Hunt Bull is a collection of OPEN SOURCE tools, this project helps to find larger amount of subdomains, filter out the live or dead host and save in list and increase the chances of vulnerability exists in websites .
The tool first of all enumerate all subdomains of the provided target domain using AMASS, SUBLISTER, SUBFINDER, and ASSETFINDER, then filters all valid domains from the entire subdomain list, then uses httpx to extract subdomain titles, and finally uses nuclei-tool to scan for CVE based vulnerability. Then it uses waybackurl tool to extract url parameters, then run  gf-patterns tool to filter the  xss, ssti, ssrf, and sqli parameters from those subdomains, and last it checks The output will be stored as target xss.txt in a text file , then manual testing of this parameter and increase the chances of vulnerability exists in websites , then send notifications on discord, telegram using the notify-tool.},
        keywords = {Automation, Tool, Scan , XSS , Open Redirect ,internet (key wοrds) , CVE, SQL},
        month = {},
        }

Cite This Article

Kumar, N., & Bajpai, P., & Ranjan, D. R. (). Web Application Penetration Automation Testing Tool - WAPATT. International Journal of Innovative Research in Technology (IJIRT), 8(12), 493–497.

Related Articles