EN
ENNA

httpx vs Interactsh

GitHub Stats

9.8k
Stars
4.3k
1.0k
Forks
451
7
Issues
14
7d ago
Updated
8d ago
MIT
License
MIT
Go
Language
Go

About httpx

Httpx is a fast and versatile HTTP toolkit designed for probing and analyzing HTTP servers. It efficiently handles retries and fallbacks to ensure comprehensive server detection and supports a wide range of features like URL filtering and request concurrency. Built in Go, Httpx is optimized for performance and is part of the ProjectDiscovery suite, making it a valuable asset for security professionals conducting web reconnaissance and HTTP-based assessments.

About Interactsh

Interactsh is an open-source tool from ProjectDiscovery for detecting out-of-band (OOB) interactions - the callbacks that prove blind vulnerabilities like SSRF, blind XSS, blind SQLi, and log4shell are exploitable. It provides unique callback URLs for DNS, HTTP, SMTP, FTP, and LDAP protocols, and records any interactions that hit those URLs. When testing for blind vulnerabilities, you inject an Interactsh URL as a payload and wait for the target to make a callback, proving the vulnerability exists even when there's no direct response. Interactsh can be self-hosted for privacy or used via the public server at interact.sh. It integrates directly with Nuclei, httpx, and other ProjectDiscovery tools, and provides a web dashboard, CLI client, and API for monitoring interactions in real-time.

Platform Support

๐Ÿงlinux๐ŸŽmacos๐ŸชŸwindows
๐Ÿงlinux๐ŸŽmacos๐ŸชŸwindows

Tags

Shared

projectdiscovery

httpx only

http-probetech-detection

Interactsh only

oobblind-vulncallbackssrfdns