[~] The config file is expected to be at "/root/.rustscan.toml" [!] File limit is lower than default batch size. Consider upping with --ulimit. May cause harm to sensitive servers [!] Your file limit is very small, which negatively impacts RustScan's speed. Use the Docker image, or up the Ulimit with '--ulimit 5000'. Open 10.10.11.55:22 Open 10.10.11.55:80 [~] Starting Script(s) [>] Script to be run Some("nmap -vvv -p {{port}} {{ip}}")
[~] Starting Nmap 7.80 ( https://nmap.org ) at 2025-05-09 08:25 UTC Initiating Ping Scan at 08:25 Scanning 10.10.11.55 [4 ports] Completed Ping Scan at 08:25, 0.18s elapsed (1 total hosts) Initiating Parallel DNS resolution of 1 host. at 08:25 Completed Parallel DNS resolution of 1 host. at 08:25, 0.00s elapsed DNS resolution of 1 IPs took 0.00s. Mode: Async [#: 2, OK: 0, NX: 1, DR: 0, SF: 0, TR: 1, CN: 0] Initiating SYN Stealth Scan at 08:25 Scanning 10.10.11.55 [2 ports] Discovered open port 80/tcp on 10.10.11.55 Discovered open port 22/tcp on 10.10.11.55 Completed SYN Stealth Scan at 08:25, 0.52s elapsed (2 total ports) Nmap scan report for 10.10.11.55 Host is up, received echo-reply ttl 63 (0.26s latency). Scanned at 2025-05-09 08:25:00 UTC for 1s
PORT STATE SERVICE REASON 22/tcp open ssh syn-ack ttl 63 80/tcp open http syn-ack ttl 63
Read data files from: /usr/bin/../share/nmap Nmap done: 1 IP address (1 host up) scanned in 0.83 seconds Raw packets sent: 6 (240B) | Rcvd: 6 (236B
┌──(root㉿kali)-[~/Desktop/tmp/tmp] └─# wfuzz -w /usr/share/wordlists/seclists/Discovery/Web-Content/directory-list-2.3-medium.txt --hw 28 -u "http://10.10. 11.55" -H "Host: FUZZ.titanic.htb" /usr/lib/python3/dist-packages/wfuzz/__init__.py:34: UserWarning:Pycurl is not compiled against Openssl. Wfuzz might not work correctly when fuzzing SSL sites. Check Wfuzz's documentation for more information. ******************************************************** * Wfuzz 3.1.0 - The Web Fuzzer * ********************************************************
Target: http://10.10.11.55/ Total requests: 220559
===================================================================== ID Response Lines Word Chars Payload =====================================================================
000000001: 400 10 L 35 W 303 Ch "# directory-list-2.3-medium.txt" 000000003: 400 10 L 35 W 303 Ch "# Copyright 2007 James Fisher" 000000007: 400 10 L 35 W 303 Ch "# license, visit http://creativecommons.org/licenses/b y-sa/3.0/" 000000010: 400 10 L 35 W 303 Ch "#" 000000011: 400 10 L 35 W 303 Ch "# Priority ordered case-sensitive list, where entries were found" 000000009: 400 10 L 35 W 303 Ch "# Suite 300, San Francisco, California, 94105, USA." 000000005: 400 10 L 35 W 303 Ch "# This work is licensed under the Creative Commons" 000000013: 400 10 L 35 W 303 Ch "#" 000000008: 400 10 L 35 W 303 Ch "# or send a letter to Creative Commons, 171 Second Str eet," 000000006: 400 10 L 35 W 303 Ch "# Attribution-Share Alike 3.0 License. To view a copy of this" 000000012: 400 10 L 35 W 303 Ch "# on at least 2 different hosts" 000000002: 400 10 L 35 W 303 Ch "#" 000000004: 400 10 L 35 W 303 Ch "#" 000000834: 200 275 L 1278 W 13870 Ch "dev"