CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.
quay.io/trickest/cookiemonster:7e8826e
-url
An HTTP URL to retrieve cookies from instead of providing a cookie-cookie
The cookie to attempt to decode and unsign-resign
Unencoded data to resign the cookie with; presently only supported by Django-verbose
Enables additional output on how the cookie is decoded.-wordlist
The path to load a base64-encoded wordlist from; the default is the builtin list.-concurrency
How many attempts should run concurrently; the default is 100