Files
cariddi/pkg/input/check.go
T
2026-02-16 10:11:43 +01:00

136 lines
3.7 KiB
Go

/*
==========
Cariddi
==========
This program is free software: you can redistribute it and/or modify
it under the terms of the GNU General Public License as published by
the Free Software Foundation, either version 3 of the License, or
(at your option) any later version.
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
GNU General Public License for more details.
You should have received a copy of the GNU General Public License
along with this program. If not, see http://www.gnu.org/licenses/.
@Repository: https://github.com/edoardottt/cariddi
@Author: edoardottt, https://edoardottt.com
@License: https://github.com/edoardottt/cariddi/blob/main/LICENSE
*/
package input
import (
"fmt"
"os"
"strings"
fileUtils "github.com/edoardottt/cariddi/internal/file"
)
// CheckOutputFile checks if the string provided as input
// is formatted in a correct way.
func CheckOutputFile(input string) bool {
invalid := []string{"\\", "/", "'", "\""}
for _, elem := range invalid {
if strings.ContainsAny(input, elem) {
return false
}
}
return true
}
// CheckFlags checks the flags taken as input.
func CheckFlags(flags Input) {
if flags.TXTout != "" {
if !CheckOutputFile(flags.TXTout) {
fmt.Println("The output file must avoid weird symbols. Try to use - , _ , . instead.")
os.Exit(1)
}
}
if flags.HTMLout != "" {
if !CheckOutputFile(flags.HTMLout) {
fmt.Println("The output file must avoid weird symbols. Try to use - , _ , . instead.")
os.Exit(1)
}
}
if flags.Extensions != 0 {
if flags.Extensions < 1 || flags.Extensions > 7 {
fmt.Println("The extension value must go from 1 (juicy) to 7 (not juicy).")
os.Exit(1)
}
}
if flags.EndpointsFile != "" {
if !flags.Endpoints {
fmt.Println("You can't define an endpoint file and not the endpoint search.")
fmt.Println("If you want to scan for custom parameters enter both -e and -ef {filename}.")
os.Exit(1)
}
}
if flags.SecretsFile != "" {
if !flags.Secrets {
fmt.Println("You can't define a secrets file and not the secrets search.")
fmt.Println("If you want to scan for custom regexes enter both -s and -sf {filename}.")
os.Exit(1)
}
}
if flags.Plain && flags.TXTout == "" && flags.HTMLout == "" {
if flags.Secrets || flags.Endpoints || flags.Extensions != 0 {
fmt.Println("In the plain mode cariddi prints only links found on targets.")
fmt.Println("If you want to see the results of secrets, endpoints and extensions found")
fmt.Println("you should define a Txt or/and Html file output, or remove the plain mode.")
fmt.Println("Examples:")
fmt.Println(" - cat urls | cariddi -plain -s -ot {target-name}")
fmt.Println(" - cat urls | cariddi -s")
os.Exit(1)
}
}
if flags.Plain && flags.Debug {
fmt.Println("You cannot use both plain and debug mode.")
os.Exit(1)
}
if flags.IgnoreTXT != "" {
_ = fileUtils.ReadFile(flags.IgnoreTXT)
}
if flags.Timeout < 0 {
fmt.Println("The timeout value must be a positive value.")
os.Exit(1)
}
if flags.Ignore != "" && flags.IgnoreTXT != "" {
fmt.Println("You should use only one among -i and -it.")
fmt.Println("Examples:")
fmt.Println(" - cat urls | cariddi -i forum,blog")
fmt.Println(" - cat urls | cariddi -it ignore.txt")
os.Exit(1)
}
if flags.Headers != "" && flags.HeadersFile != "" {
fmt.Println("You should use only one among -headers and -headersfile.")
fmt.Println("Examples:")
fmt.Println(" - cat urls | cariddi -headers \"Cookie: auth=yes;;Client: type=2\"")
fmt.Println(" - cat urls | cariddi -headersfile headers.txt")
os.Exit(1)
}
if flags.MaxDepth < 0 {
fmt.Println("MaxDepth cannot be less than 0.")
os.Exit(1)
}
}