Awesome Open Source
Awesome Open Source

DirDar v1.0


🏴‍☠️ bypass forbidden directories - find and identify dir listing - you can use it as directory brute-forcer as well


This tool is compatible with all kind of operating systems as long as you have GO compiler installed


You can use this command if you have Go installed and configured.

go get -u

Or you can download a release. To make it easier to execute you can put the directory to the binary in your environment variable %PATH%.

Share on Twitter!

Website LinkedIn Website

Tool screen:

  • Linux


  • Windows



  -threads int
    	Number of threads (Defaulf 40)
    	If you want to show errors!(Includes 404 errors) [True-False]
    	Print out only OK (Bypassed and dir listing) 
  -single string
    	Only scan single target e.g (-single
  -t int
    	Set the timeout of the requests (default 10000)
  -wl string
    	Forbidden directories WordList

  • Screenshot


Bugs found by DirDar: (Will share the write up ASAP)

  • BackUp files at MTN Group (Triaged)
  • OLD php scripts to SQLi at MTN Group (Triaged)
  • OLD Files to information disclosure at BOSCH (Triaged)



Get A Weekly Email With Trending Projects For These Topics
No Spam. Unsubscribe easily at any time.
go (15,168
golang (3,887
hacking (563
pentest (212
bypass (62
bug-bounty (49