Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

module 'cgi' has no attribute 'escape' #721

Closed
DropsThose opened this issue Apr 17, 2020 · 52 comments
Closed

module 'cgi' has no attribute 'escape' #721

DropsThose opened this issue Apr 17, 2020 · 52 comments

Comments

@DropsThose
Copy link

Expected Behaviour
Print output
Screenshot 2020-04-16 20:07:55

Put here what the expected behaviour should be when reporting an issue

Actual Behaviour
Exception happened during processing of request from ('0.0.0.0', 63279)
Traceback (most recent call last):
File "/usr/lib/python3.8/socketserver.py", line 650, in process_request_thread
self.finish_request(request, client_address)
File "/usr/lib/python3.8/socketserver.py", line 360, in finish_request
self.RequestHandlerClass(request, client_address, self)
File "/usr/lib/python3.8/socketserver.py", line 720, in init
self.handle()
File "/usr/lib/python3.8/http/server.py", line 427, in handle
self.handle_one_request()
File "/usr/lib/python3.8/http/server.py", line 415, in handle_one_request
method()
File "/usr/share/set/src/webattack/harvester/harvester.py", line 334, in do_POST
filewrite.write(cgi.escape("PARAM: " + line + "\n"))
AttributeError: module 'cgi' has no attribute 'escape'
Set Version
8.0.3

Description:	Kali GNU/Linux Rolling
Release:	2020.2
Codename:	kali-rolling
@acheong08
Copy link

acheong08 commented Apr 17, 2020

I have the same issue on my macOS but it works fine on my VirtualBox Parrot Security OS. Are you using macOS or Kali Linux?
Screenshot 2020-04-17 at 6 00 49 PM

@acheong08
Copy link

ParrotSecurityOS:
Screenshot 2020-04-17 at 6 07 08 PM

@DropsThose
Copy link
Author

I'm on Kali 2020.2.

@momobit
Copy link

momobit commented Apr 19, 2020

same issue on my kali 2020.2
Cattura

@lmh122
Copy link

lmh122 commented Apr 21, 2020

I have the same problem

@neorampage
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

@DropsThose
Copy link
Author

That fixed it. Appreciate the help.

@fbracon
Copy link

fbracon commented Apr 23, 2020

Parrot-2020-04-23-06-40-13
Parrot-2020-04-23-06-41-12
Parrot-2020-04-23-06-41-23

@ranajunaid1999
Copy link

i have the same problem
kindly suggest a solution.
ss

@neorampage
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

you need to do that in /usr/.............../harvester.py

seandheath added a commit to seandheath/social-engineer-toolkit that referenced this issue May 4, 2020
@omprakashpuniya5132
Copy link

Yes it worked.

@rinxhen17
Copy link

This didnt work for me

@rinxhen17
Copy link

image
Need help

@neorampage
Copy link

image
Need help

well, you have the same problem so this can work for you, can you show your file harvester.py

@rinxhen17
Copy link

image
image
Even if i changes those things it aint working

@neorampage
Copy link

image
image
Even if i changes those things it aint working

oh! i see the problem, the correct file path is /usr/share/......./harvester.py but you edited in /home/......./harvester.py

@rinxhen17
Copy link

rinxhen17 commented May 17, 2020 via email

@neorampage
Copy link

But i dont have webattack folder on user/src

On Sat, May 16, 2020 at 8:35 PM neorampage @.***> wrote: [image: image] https://user-images.githubusercontent.com/62866594/82132976-1296c680-97b4-11ea-908a-e44fd8b17bf8.jpg [image: image] https://user-images.githubusercontent.com/62866594/82132981-1de9f200-97b4-11ea-8a48-f131c513fabc.jpg Even if i changes those things it aint working oh! i see the problem, the correct file path is /usr/share/......./harvester.py but you edited in /home/......./harvester.py — You are receiving this because you commented. Reply to this email directly, view it on GitHub <#721 (comment)>, or unsubscribe https://github.com/notifications/unsubscribe-auth/AO7UJITBJIXSLD76WPTXGPLRR4WMRANCNFSM4MKNB56A .

ls /usr/share/setoolkit/ ?????

@rinxhen17
Copy link

rinxhen17 commented May 17, 2020 via email

@rinxhen17
Copy link

rinxhen17 commented May 17, 2020 via email

@neorampage
Copy link

Sorry to bother you again . I got new error.

On Sat, May 16, 2020 at 8:41 PM neorampage @.> wrote: But i dont have webattack folder on user/src … <#m_-3078964578600670655_> On Sat, May 16, 2020 at 8:35 PM neorampage @.> wrote: [image: image] https://user-images.githubusercontent.com/62866594/82132976-1296c680-97b4-11ea-908a-e44fd8b17bf8.jpg [image: image] https://user-images.githubusercontent.com/62866594/82132981-1de9f200-97b4-11ea-8a48-f131c513fabc.jpg Even if i changes those things it aint working oh! i see the problem, the correct file path is /usr/share/......./harvester.py but you edited in /home/......./harvester.py — You are receiving this because you commented. Reply to this email directly, view it on GitHub <#721 (comment) <#721 (comment)>>, or unsubscribe https://github.com/notifications/unsubscribe-auth/AO7UJITBJIXSLD76WPTXGPLRR4WMRANCNFSM4MKNB56A . ls /usr/share/setoolkit/ ????? — You are receiving this because you commented. Reply to this email directly, view it on GitHub <#721 (comment)>, or unsubscribe https://github.com/notifications/unsubscribe-auth/AO7UJIRO5QLWJF3BJO5AGF3RR4XDJANCNFSM4MKNB56A .

show it

@chaoswlz
Copy link

I got local variable 'html' referenced before assignment after change my harvester.py.

@rinxhen17
Copy link

rinxhen17 commented May 22, 2020 via email

@chaoswlz
Copy link

that works

@rinxhen17
Copy link

rinxhen17 commented May 22, 2020 via email

@tumelo-mapheto
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

Thank, fix worked.

@RedClient231
Copy link

on Vm Machine I am Using Kali Linux. Problem with the same attribution error. Module CGI. Please i need to Fix with Full details. Anyone Kali linux users available?

@NEROGLAZKONOV275
Copy link

Same problem , kali 2020 , virtual machine , I’m beginner so I have no idea where you actually edit the code .

@Nak-gt
Copy link

Nak-gt commented Jun 17, 2020

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: session[username_or_email]=asdasd

Exception happened during processing of request from ('127.0.0.1', 37132)
Traceback (most recent call last):
File "/usr/lib/python3.8/socketserver.py", line 650, in process_request_thread
self.finish_request(request, client_address)
File "/usr/lib/python3.8/socketserver.py", line 360, in finish_request
self.RequestHandlerClass(request, client_address, self)
File "/usr/lib/python3.8/socketserver.py", line 720, in init
self.handle()
File "/usr/lib/python3.8/http/server.py", line 427, in handle
self.handle_one_request()
File "/usr/lib/python3.8/http/server.py", line 415, in handle_one_request
method()
File "/usr/share/set/src/webattack/harvester/harvester.py", line 334, in do_POST
filewrite.write(cgi.escape("PARAM: " + line + "\n"))
AttributeError: module 'cgi' has no attribute 'escape'

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: session[username_or_email]=asdasd

Exception happened during processing of request from ('127.0.0.1', 37134)
Traceback (most recent call last):
File "/usr/lib/python3.8/socketserver.py", line 650, in process_request_thread
self.finish_request(request, client_address)
File "/usr/lib/python3.8/socketserver.py", line 360, in finish_request
self.RequestHandlerClass(request, client_address, self)
File "/usr/lib/python3.8/socketserver.py", line 720, in init
self.handle()
File "/usr/lib/python3.8/http/server.py", line 427, in handle
self.handle_one_request()
File "/usr/lib/python3.8/http/server.py", line 415, in handle_one_request
method()
File "/usr/share/set/src/webattack/harvester/harvester.py", line 334, in do_POST
filewrite.write(cgi.escape("PARAM: " + line + "\n"))
AttributeError: module 'cgi' has no attribute 'escape'

how to fix it

@Nak-gt
Copy link

Nak-gt commented Jun 17, 2020

how to fix it

@Nak-gt
Copy link

Nak-gt commented Jun 17, 2020

from html import escape aa html_escape
And change cgi.escape to html_escape It use it but when i try to save it. it shows this
Screenshot 2020-06-17 06:12:40

@rinxhen17
Copy link

rinxhen17 commented Jun 17, 2020 via email

@Divyansh003
Copy link

Hi..I am a new learner. I am also getting the same attribute error. Can anyone please guide me step by step on how can i reslove this issue?
I will be very thankful to you.

@stefanman125
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

you need to do that in /usr/.............../harvester.py

It worked, thanks!

@jeetxon
Copy link

jeetxon commented Jul 8, 2020

how to edit harvester.py file
it says permission denied

@jeetxon
Copy link

jeetxon commented Jul 8, 2020

Its because this file can only be accessed by root user. Give it access using chmod

On Tue, Jun 16, 2020 at 8:15 PM Nak-gt @.***> wrote: from html import escape aa html_escape And change cgi.escape to html_escape It use it but when i try to save it. it shows this [image: Screenshot 2020-06-17 06:12:40] https://user-images.githubusercontent.com/67030649/84840616-e47dfe00-b061-11ea-90a7-8a817632c330.png — You are receiving this because you commented. Reply to this email directly, view it on GitHub <#721 (comment)>, or unsubscribe https://github.com/notifications/unsubscribe-auth/AO7UJIXQTMFH44KXR6JMYE3RXADJ7ANCNFSM4MKNB56A .

how to edit harvester.py file plz tell me step by step

@jeetxon
Copy link

jeetxon commented Jul 8, 2020

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

how do I add because
84840616-e47dfe00-b061-11ea-90a7-8a817632c330

permission denied

@502-DropDread
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

@neorampage
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

Screanshot?

@502-DropDread
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

Screanshot?

I get the text entered in the user, but not the password
Captura de pantalla_2020-07-13_14-53-35

@502-DropDread
Copy link

sorry if it seems too heavy to read all this, but this is the text that I find when doing the test

` 10.0.2.15 - - [13/Jul/2020 14:49:46] "GET / HTTP/1.1" 200 -
10.0.2.15 - - [13/Jul/2020 14:49:49] "GET /intern/common/referer_frame.php HTTP/1.1" 404 -
[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="ts"

1594673391367
-----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="q"

[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_dropdown","prefill_type":"contact_point"},1594673391364,0,99]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------65848238410183289321473689393--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="ts"

1594673391554
-----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":"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","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"categorized_ods","send_method":"ajax","compression":"snappy_base64","snappy_ms":33},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[34]}}},1594673391520,0,51]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[33]}}},1594673391520,0,47]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------162066027313439892851116638267--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="ts"

1594673391737
-----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="q"

[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_onload","prefill_type":"contact_point"},1594673391735,0,97]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------17100139412599297751483920862--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------392910638984098151733831907
Content-Disposition: form-data; name="ts"

1594673393078
-----------------------------392910638984098151733831907
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594671900879,"act",1594671900875,2,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},684,367,0,0,"tng441","/login.php"],1594671900878,0,151]],"user":"0","webSessionId":"2toe9a:uwakqs:tng441","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673392992,"act",1594673392988,1,"email","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},564,268,0,0,"lxb4sc","/login.php"],1594673392991,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673393063,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673393068,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------392910638984098151733831907--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------186824930678138621516920702
Content-Disposition: form-data; name="ts"

1594673398500
-----------------------------186824930678138621516920702
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["time_spent_bit_array",{"tos_id":"lxb4sc","start_time":1594673390,"tos_array":[239,0],"tos_len":9,"tos_seq":0,"tos_cum":7,"sid_raw":"6a4o5w:uuxyrl:lxb4sc"},1594673398477,0,132]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"time_spent_bit_array","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673398480,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673398481,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------186824930678138621516920702--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"

1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
POSSIBLE PASSWORD FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"

1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: __user=0
PARAM: __a=1
PARAM: __dyn=7xe6Fo4OQ1PyUbFuC1swgE98nwgU6C7UW3q327E2vwXx60kO4o3Bw5VCwjE3awbG783pwlU7i0n2US1kyE1oU884y0Mo28xe0SU2swdq0Ho2ew
PARAM: __csr=
PARAM: __req=7
PARAM: __beoa=0
PARAM: __pc=PHASED:DEFAULT
PARAM: dpr=1
PARAM: __ccg=MODERATE
PARAM: __rev=1002360775
PARAM: __s=6a4o5w:uuxyrl:lxb4sc
PARAM: __hsi=6849062689416449023-0
PARAM: __comet_req=0
PARAM: lsd=AVqB73WD
PARAM: jazoest=2591
POSSIBLE PASSWORD FIELD FOUND: __spin_r=1002360775
POSSIBLE PASSWORD FIELD FOUND: __spin_b=trunk
POSSIBLE PASSWORD FIELD FOUND: __spin_t=1594671674
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[] WE GOT A HIT! Printing the output:
PARAM: jazoest=2591
PARAM: lsd=AVqB73WD
PARAM: display=
PARAM: enable_profile_selector=
PARAM: isprivate=
PARAM: legacy_return=0
PARAM: profile_selector_ids=
PARAM: return_session=
POSSIBLE USERNAME FIELD FOUND: skip_api_login=
PARAM: signed_next=
PARAM: trynum=1
PARAM: timezone=330
PARAM: lgndim=eyJ3IjoxMzY2LCJoIjo2NjMsImF3IjoxMzY2LCJhaCI6NjMyLCJjIjoyNH0=
PARAM: lgnrnd=132114_2YWu
PARAM: lgnjs=1594673390
POSSIBLE USERNAME FIELD FOUND: email=trySET-uk.com
PARAM: prefill_contact_point=try+SET.com
PARAM: prefill_source=browser_onload
PARAM: prefill_type=contact_point
PARAM: first_prefill_source=browser_dropdown
PARAM: first_prefill_type=contact_point
PARAM: had_cp_prefilled=true
POSSIBLE PASSWORD FIELD FOUND: had_password_prefilled=false
PARAM: ab_test_data=AAAAAAAPAAA/AAAAPAAAAAAAAAAAAPAPAAAAAAAAZ/fAGAGAAAECAE
PARAM: ep=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/
POSSIBLE PASSWORD FIELD FOUND: encpass=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="ts"

1594673416668
-----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673415953,"act",1594673415941,3,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},646,361,0,0,"lxb4sc","/login.php"],1594673415953,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673416630,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673416630,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------13966898841476094930754589952--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="ts"

1594673416863
-----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":"9QSQW1siY2F0ZWdvcml6ZWRfb2RzIix7IjI5NzkiOnsiYmFuemFpIgEK4Gx1ZV90b3RhbF9tZXNzYWdlc19yZWNlaXZlZCI6WzQ5XX19fSwxNTk0NjczNDE2Nzg2LDAsNTddLOphACBzZW50IjpbNTBCXQAUNywwLDUzAV1MdGltZV9zcGVudF9iaXRfYXJyYXkBw1x0b3NfaWQiOiJseGI0c2MiLCJzdGFydF8BMAQiOg2pDDM5OSwFKgk3KDpbMTA4MTgxLDBdCRcYbGVuIjoxOAkNFHNlcSI6MQkMgGN1bSI6MTYsInNpZF9yYXciOiI2YTRvNXc6dXV4eXJsOg12BH0sDWosNDE2Nzk5LDAsMTM3AbdEc2NyaXB0X3BhdGhfY2hhbmdlAbUUc291cmNlBRYwIjoiL2xvZ2luLnBocAG+CRsIdG9rAZQ4ImFkOTc2NDIwIiwiZGVzCUkUIjpudWxsDRENKQkSNGNhdXNlIjoidW5sb2FkAU52twAALBGKGGVmX3BhZ2URWg2FdHVyaSI6Imh0dHBzOi8vd3d3LmZhY2Vib29rLmNvbR23Lv8AKDgwNCwwLDIxMV1d","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","send_method":"beacon","compression":"snappy_base64","snappy_ms":21},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673416806,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673416807,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------1962363261633658327879440781--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT. `

@neorampage
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

Screanshot?

I get the text entered in the user, but not the password
Captura de pantalla_2020-07-13_14-53-35

sorry if it seems too heavy to read all this, but this is the text that I find when doing the test

10.0.2.15 - - [13/Jul/2020 14:49:46] "GET / HTTP/1.1" 200 -
10.0.2.15 - - [13/Jul/2020 14:49:49] "GET /intern/common/referer_frame.php HTTP/1.1" 404 -
[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="ts"

1594673391367
-----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="q"

[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_dropdown","prefill_type":"contact_point"},1594673391364,0,99]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------65848238410183289321473689393--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="ts"

1594673391554
-----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":"yhzwZltbImdrMl9leHBvc3VyZSIseyJpZGVudGlmaWVyIjoiMTA3MzUwMCIsImhhc2giOiJBVDdIdTVUWVNSdF9Kd3pXIn0sMTU5NDY3MzM4ODk0MCwwLDUwXSxbInJlcXVpcmVfY29uZF8RYBxfbG9nZ2luZ0JoAPBWQWEzWVczZ1o5Q3NwWnF2R1pSTHNUUXU5NUNBWHZXUmhZcXZrdC1rTldoNjJwdzN2dl85ZVJnRlVLZTdLTHFGZHYyNXdHOHF1dWh0eUpwNTZ6QmRQWS1nOp4AHDIsMCwxMDRdyp8A8GMxbGc5MmJfNTNfak5GaWFMaGNNQXRLRlZ3cUstdUVCUzF4N1BwbldnVWY2ZVRDV0pzTmY3STkzNWh6MnJLeDJ0dkpYVUY4N0RwWFppdmVqTTVrM1h5Sll2a0RyUmRyIn0sMTU5NUYFqAQxMwGocp4BFDk0Njg5NDKdATB1U05IeUFhREhYcGhzOv8AFDMsMCw0OYJWABQ2NzY5MjAuVgA0NGwxMWI0bXpoeUthZnY2VgAENTSqVgAAMTJWADB4eFU4dXRNN21VS2ZZNlYABDY2olYACDgzNy5WADQ1Z0xRci15eWhRcDJhNjZWAAQ3NZZWABgxMzk5MjE4LlcANDZNX0NBSThkM3BPcFNYHVcMOTAzNyFZADXS9gLwRDA3LU54dDhKVGVJcjJmcWg0cUxheVp4cXp1OUViRkpxeXZZSUZYbTV6Y3RyUktzZURQazJoZEVKaVU5dkFZMFZzTEtuazqOACGRBDg4IecAcrqEA/BQMmxuYzBxS0NPN1hUaFRKbEpyQlNlS0RNbGhCQmtnVGxub2lMTmk3eDJvVWk1d3EyVldPUnRCakVzQzBaazZiTWRnMC1jNzBXb0pNYUNYaGFROpoAADVlgNIpAfBSMV9QSTJhQ2xJam82dmlYNm11aWxzeURTRk1UYzliQkFRRGJxN0ppZmJCa2NjdWUtS2FoZk9ZN3ROamhodmpTMS1oOTN5Q2NnOF8zSkQ2MXFEVSJ5dCHEADcFnAgxXSx6EgUQNzI5NjMyHgM0NXpTNk5EWlBlNllQWTg68wAAOZ5yAgw4MTc2MnICNDdGNVhEVEZpZlg1YUprNlcABDgwtWhyIQQFrTJ1AzA3cTJ2NW44V0tiY2xwLngEBDkwCVaKIQQYMTI4MTUwNS4fAzQ0dUpKME1xZ0xqVFF6d9atABgxMjkxMDIzLlcANDU4ZGU4cWJLMkZzTWRaOlcAIbJpdnIEARgxMjk0MTgyLlcANDdEalplUHJVajZrNXc5OlcAADiWWwEUMTQwMTA2MgkCNDRfYUJTRXB0dGNJOEtk3lcADDg1MDUyXAEwNWtVR2ZJdGN1RjZMUd5XABA1ODQ3OTIpBTQ2TDRIRUdINzZ3WmFHT9auABA2Nzc3NjZbATBURFZGSXlkWUJUakFDMlYABDQweQ3CmgTwSkJCMVUwdW5ESm9oVXcxYlBEUVFDVy10SzNkZGxrdjhrekhHRTlaYXVhdDI1YjUtMTVGdkNETHpRVlZ2Tmx6Q0pRcHNrUTd4Wm1hd0qVAAQ5NWH4vpUA8FYxN3dmQTdxemluQXpVS29KQmhyZVBCNk1wQTl5VnBHRGEweGpmUWptTTQxeXQ3aW41OXBhOWk4STJYaURfTndlODBOQXBuRkVZM0M4LVNoMUE0OHFuUiIumAQpNAQxMAWgIGNsaWNrX3JlZhJHCShlciIsWyIySWRLIiKDCSQ5MDQ1NiwiYWN0GRRsODk5MjUsMCwiZW1haWwiLCJjb250ZXh0bWVudUIOAEQtIiwiciIsIi8iLHsiZnQiOnsNdkB0eXBlIjoicmlnaHQifSwiZwEcDH19LDANAhgibHhiNHNjATsobG9naW4ucGhwIl0ymQABhQQxNqX+drEDEDA5OTg5NggENF9RbVk0c2ZvRFJUdXUiMiIBBDk0dbG+wQHwXjB5X0tUOXhVRTRMRjNfWDE0X0lUQWZVd2paUWRRdVdrUW1ob080ZzNybGc2aEJ0WTFoVF9FRU00cUJmX3ZsZUJSVUlzZlNoeDZIRWVHdnI0SmlyUi1fdFJDU0pQTDQiRqcAGtUJRHNjcmlwdF9wYXRoX2NoYW5nZSFvFHNvdXJjZQUWGCI6bnVsbCwRExB0b2tlbhEUCGRlcwk7CCI6Ij1sACwJGQ0rGCJhZDk3NjQSxwmAaW1wcmVzc2lvbl9pZCI6IjA4Rm5RUG1yUGg0aldWYzV0QQYIYXVzIeB4bG9hZCIsInNpZF9yYXciOiI2YTRvNXc6dXV4eXJsOjXlFHJlZmVychIjDBF6GGVmX3BhZ2UypwB4dXJpIjoiaHR0cHM6Ly93d3cuZmFjZWJvb2suY29tL1kqLisBHDUxMSwwLDI1RfRMd2ViX2RldmljZV9wZXJmX2luZm9B/yExoGNwdV9jb3JlcyI6MSwiZ3B1X3ZlbmRvciI6IlZNd2FyZSwgSW5jLiIsBRwQcmVuZGUJs3xsbHZtcGlwZSAoTExWTSAxMC4wLjAsIDI1NiBiaXRzKS6PABwxMDgyLDAsOYaOCxQxNDI3MzA2xAcwRWdteERZemZnLTJGNzJXAAQzNQHmisAGEDcwODI1Ng4DMGZXd19JUFFkSW5oSG8yVgAINTE2InEIOGNhdGVnb3JpemVkX29kcyEybDI5NjYiOnsibXMudGltZV9zcGVudC5xYS53d3cBGB0VIQkoLmpzX2luaXRpYWwBRhgiOlsxXX19PawoMTUxNywwLDcyXV0=","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"categorized_ods","send_method":"ajax","compression":"snappy_base64","snappy_ms":33},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[34]}}},1594673391520,0,51]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[33]}}},1594673391520,0,47]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------162066027313439892851116638267--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="ts"

1594673391737
-----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="q"

[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_onload","prefill_type":"contact_point"},1594673391735,0,97]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------17100139412599297751483920862--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------392910638984098151733831907
Content-Disposition: form-data; name="ts"

1594673393078
-----------------------------392910638984098151733831907
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594671900879,"act",1594671900875,2,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},684,367,0,0,"tng441","/login.php"],1594671900878,0,151]],"user":"0","webSessionId":"2toe9a:uwakqs:tng441","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673392992,"act",1594673392988,1,"email","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},564,268,0,0,"lxb4sc","/login.php"],1594673392991,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673393063,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673393068,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------392910638984098151733831907--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------186824930678138621516920702
Content-Disposition: form-data; name="ts"

1594673398500
-----------------------------186824930678138621516920702
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["time_spent_bit_array",{"tos_id":"lxb4sc","start_time":1594673390,"tos_array":[239,0],"tos_len":9,"tos_seq":0,"tos_cum":7,"sid_raw":"6a4o5w:uuxyrl:lxb4sc"},1594673398477,0,132]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"time_spent_bit_array","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673398480,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673398481,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------186824930678138621516920702--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"

1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
POSSIBLE PASSWORD FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"

1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[] WE GOT A HIT! Printing the output: POSSIBLE USERNAME FIELD FOUND: __user=0 PARAM: __a=1 PARAM: __dyn=7xe6Fo4OQ1PyUbFuC1swgE98nwgU6C7UW3q327E2vwXx60kO4o3Bw5VCwjE3awbG783pwlU7i0n2US1kyE1oU884y0Mo28xe0SU2swdq0Ho2ew PARAM: __csr= PARAM: __req=7 PARAM: __beoa=0 PARAM: __pc=PHASED:DEFAULT PARAM: dpr=1 PARAM: __ccg=MODERATE PARAM: __rev=1002360775 PARAM: __s=6a4o5w:uuxyrl:lxb4sc PARAM: __hsi=6849062689416449023-0 PARAM: __comet_req=0 PARAM: lsd=AVqB73WD PARAM: jazoest=2591 POSSIBLE PASSWORD FIELD FOUND: __spin_r=1002360775 POSSIBLE PASSWORD FIELD FOUND: __spin_b=trunk POSSIBLE PASSWORD FIELD FOUND: __spin_t=1594671674 [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[] WE GOT A HIT! Printing the output: PARAM: jazoest=2591 PARAM: lsd=AVqB73WD PARAM: display= PARAM: enable_profile_selector= PARAM: isprivate= PARAM: legacy_return=0 PARAM: profile_selector_ids= PARAM: return_session= POSSIBLE USERNAME FIELD FOUND: skip_api_login= PARAM: signed_next= PARAM: trynum=1 PARAM: timezone=330 PARAM: lgndim=eyJ3IjoxMzY2LCJoIjo2NjMsImF3IjoxMzY2LCJhaCI6NjMyLCJjIjoyNH0= PARAM: lgnrnd=132114_2YWu PARAM: lgnjs=1594673390 POSSIBLE USERNAME FIELD FOUND: email=trySET-uk.com PARAM: prefill_contact_point=try+SET.com PARAM: prefill_source=browser_onload PARAM: prefill_type=contact_point PARAM: first_prefill_source=browser_dropdown PARAM: first_prefill_type=contact_point PARAM: had_cp_prefilled=true POSSIBLE PASSWORD FIELD FOUND: had_password_prefilled=false PARAM: ab_test_data=AAAAAAAPAAA/AAAAPAAAAAAAAAAAAPAPAAAAAAAAZ/fAGAGAAAECAE PARAM: ep=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ POSSIBLE PASSWORD FIELD FOUND: encpass=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="ts"

1594673416668
-----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673415953,"act",1594673415941,3,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},646,361,0,0,"lxb4sc","/login.php"],1594673415953,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673416630,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673416630,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------13966898841476094930754589952--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.

[*] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="ts"

1594673416863
-----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="q"

[{"app_id":"256281040558","posts":"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","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","send_method":"beacon","compression":"snappy_base64","snappy_ms":21},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673416806,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673416807,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------1962363261633658327879440781--
[*] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
Whats website are you cloning?

@502-DropDread
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

Screanshot?

I get the text entered in the user, but not the password
Captura de pantalla_2020-07-13_14-53-35

sorry if it seems too heavy to read all this, but this is the text that I find when doing the test
10.0.2.15 - - [13/Jul/2020 14:49:46] "GET / HTTP/1.1" 200 -
10.0.2.15 - - [13/Jul/2020 14:49:49] "GET /intern/common/referer_frame.php HTTP/1.1" 404 -
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="ts"
1594673391367
-----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="q"
[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_dropdown","prefill_type":"contact_point"},1594673391364,0,99]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------65848238410183289321473689393--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="ts"
1594673391554
-----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":"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","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"categorized_ods","send_method":"ajax","compression":"snappy_base64","snappy_ms":33},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[34]}}},1594673391520,0,51]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[33]}}},1594673391520,0,47]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------162066027313439892851116638267--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="ts"
1594673391737
-----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="q"
[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_onload","prefill_type":"contact_point"},1594673391735,0,97]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------17100139412599297751483920862--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------392910638984098151733831907
Content-Disposition: form-data; name="ts"
1594673393078
-----------------------------392910638984098151733831907
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594671900879,"act",1594671900875,2,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},684,367,0,0,"tng441","/login.php"],1594671900878,0,151]],"user":"0","webSessionId":"2toe9a:uwakqs:tng441","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673392992,"act",1594673392988,1,"email","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},564,268,0,0,"lxb4sc","/login.php"],1594673392991,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673393063,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673393068,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------392910638984098151733831907--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------186824930678138621516920702
Content-Disposition: form-data; name="ts"
1594673398500
-----------------------------186824930678138621516920702
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["time_spent_bit_array",{"tos_id":"lxb4sc","start_time":1594673390,"tos_array":[239,0],"tos_len":9,"tos_seq":0,"tos_cum":7,"sid_raw":"6a4o5w:uuxyrl:lxb4sc"},1594673398477,0,132]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"time_spent_bit_array","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673398480,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673398481,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------186824930678138621516920702--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"
1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
POSSIBLE PASSWORD FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"
1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output: POSSIBLE USERNAME FIELD FOUND: __user=0 PARAM: __a=1 PARAM: __dyn=7xe6Fo4OQ1PyUbFuC1swgE98nwgU6C7UW3q327E2vwXx60kO4o3Bw5VCwjE3awbG783pwlU7i0n2US1kyE1oU884y0Mo28xe0SU2swdq0Ho2ew PARAM: __csr= PARAM: __req=7 PARAM: __beoa=0 PARAM: __pc=PHASED:DEFAULT PARAM: dpr=1 PARAM: __ccg=MODERATE PARAM: __rev=1002360775 PARAM: __s=6a4o5w:uuxyrl:lxb4sc PARAM: __hsi=6849062689416449023-0 PARAM: __comet_req=0 PARAM: lsd=AVqB73WD PARAM: jazoest=2591 POSSIBLE PASSWORD FIELD FOUND: __spin_r=1002360775 POSSIBLE PASSWORD FIELD FOUND: __spin_b=trunk POSSIBLE PASSWORD FIELD FOUND: __spin_t=1594671674 [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output: PARAM: jazoest=2591 PARAM: lsd=AVqB73WD PARAM: display= PARAM: enable_profile_selector= PARAM: isprivate= PARAM: legacy_return=0 PARAM: profile_selector_ids= PARAM: return_session= POSSIBLE USERNAME FIELD FOUND: skip_api_login= PARAM: signed_next= PARAM: trynum=1 PARAM: timezone=330 PARAM: lgndim=eyJ3IjoxMzY2LCJoIjo2NjMsImF3IjoxMzY2LCJhaCI6NjMyLCJjIjoyNH0= PARAM: lgnrnd=132114_2YWu PARAM: lgnjs=1594673390 POSSIBLE USERNAME FIELD FOUND: email=trySET-uk.com PARAM: prefill_contact_point=try+SET.com PARAM: prefill_source=browser_onload PARAM: prefill_type=contact_point PARAM: first_prefill_source=browser_dropdown PARAM: first_prefill_type=contact_point PARAM: had_cp_prefilled=true POSSIBLE PASSWORD FIELD FOUND: had_password_prefilled=false PARAM: ab_test_data=AAAAAAAPAAA/AAAAPAAAAAAAAAAAAPAPAAAAAAAAZ/fAGAGAAAECAE PARAM: ep=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ POSSIBLE PASSWORD FIELD FOUND: encpass=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="ts"
1594673416668
-----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673415953,"act",1594673415941,3,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},646,361,0,0,"lxb4sc","/login.php"],1594673415953,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673416630,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673416630,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------13966898841476094930754589952--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="ts"
1594673416863
-----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":"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","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","send_method":"beacon","compression":"snappy_base64","snappy_ms":21},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673416806,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673416807,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------1962363261633658327879440781--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
Whats website are you cloning?

I am starting my learning with setoolkit, cloning www.facebook.com

@neorampage
Copy link

you need to add "import html" under "import cgi" and then change "cgi.escape" to "html.escape"

This worked for me, but it doesn't show me the password, what could it be?
please help

Screanshot?

I get the text entered in the user, but not the password
Captura de pantalla_2020-07-13_14-53-35

sorry if it seems too heavy to read all this, but this is the text that I find when doing the test
10.0.2.15 - - [13/Jul/2020 14:49:46] "GET / HTTP/1.1" 200 -
10.0.2.15 - - [13/Jul/2020 14:49:49] "GET /intern/common/referer_frame.php HTTP/1.1" 404 -
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="ts"
1594673391367
-----------------------------65848238410183289321473689393
Content-Disposition: form-data; name="q"
[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_dropdown","prefill_type":"contact_point"},1594673391364,0,99]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------65848238410183289321473689393--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="ts"
1594673391554
-----------------------------162066027313439892851116638267
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":"yhzwZltbImdrMl9leHBvc3VyZSIseyJpZGVudGlmaWVyIjoiMTA3MzUwMCIsImhhc2giOiJBVDdIdTVUWVNSdF9Kd3pXIn0sMTU5NDY3MzM4ODk0MCwwLDUwXSxbInJlcXVpcmVfY29uZF8RYBxfbG9nZ2luZ0JoAPBWQWEzWVczZ1o5Q3NwWnF2R1pSTHNUUXU5NUNBWHZXUmhZcXZrdC1rTldoNjJwdzN2dl85ZVJnRlVLZTdLTHFGZHYyNXdHOHF1dWh0eUpwNTZ6QmRQWS1nOp4AHDIsMCwxMDRdyp8A8GMxbGc5MmJfNTNfak5GaWFMaGNNQXRLRlZ3cUstdUVCUzF4N1BwbldnVWY2ZVRDV0pzTmY3STkzNWh6MnJLeDJ0dkpYVUY4N0RwWFppdmVqTTVrM1h5Sll2a0RyUmRyIn0sMTU5NUYFqAQxMwGocp4BFDk0Njg5NDKdATB1U05IeUFhREhYcGhzOv8AFDMsMCw0OYJWABQ2NzY5MjAuVgA0NGwxMWI0bXpoeUthZnY2VgAENTSqVgAAMTJWADB4eFU4dXRNN21VS2ZZNlYABDY2olYACDgzNy5WADQ1Z0xRci15eWhRcDJhNjZWAAQ3NZZWABgxMzk5MjE4LlcANDZNX0NBSThkM3BPcFNYHVcMOTAzNyFZADXS9gLwRDA3LU54dDhKVGVJcjJmcWg0cUxheVp4cXp1OUViRkpxeXZZSUZYbTV6Y3RyUktzZURQazJoZEVKaVU5dkFZMFZzTEtuazqOACGRBDg4IecAcrqEA/BQMmxuYzBxS0NPN1hUaFRKbEpyQlNlS0RNbGhCQmtnVGxub2lMTmk3eDJvVWk1d3EyVldPUnRCakVzQzBaazZiTWRnMC1jNzBXb0pNYUNYaGFROpoAADVlgNIpAfBSMV9QSTJhQ2xJam82dmlYNm11aWxzeURTRk1UYzliQkFRRGJxN0ppZmJCa2NjdWUtS2FoZk9ZN3ROamhodmpTMS1oOTN5Q2NnOF8zSkQ2MXFEVSJ5dCHEADcFnAgxXSx6EgUQNzI5NjMyHgM0NXpTNk5EWlBlNllQWTg68wAAOZ5yAgw4MTc2MnICNDdGNVhEVEZpZlg1YUprNlcABDgwtWhyIQQFrTJ1AzA3cTJ2NW44V0tiY2xwLngEBDkwCVaKIQQYMTI4MTUwNS4fAzQ0dUpKME1xZ0xqVFF6d9atABgxMjkxMDIzLlcANDU4ZGU4cWJLMkZzTWRaOlcAIbJpdnIEARgxMjk0MTgyLlcANDdEalplUHJVajZrNXc5OlcAADiWWwEUMTQwMTA2MgkCNDRfYUJTRXB0dGNJOEtk3lcADDg1MDUyXAEwNWtVR2ZJdGN1RjZMUd5XABA1ODQ3OTIpBTQ2TDRIRUdINzZ3WmFHT9auABA2Nzc3NjZbATBURFZGSXlkWUJUakFDMlYABDQweQ3CmgTwSkJCMVUwdW5ESm9oVXcxYlBEUVFDVy10SzNkZGxrdjhrekhHRTlaYXVhdDI1YjUtMTVGdkNETHpRVlZ2Tmx6Q0pRcHNrUTd4Wm1hd0qVAAQ5NWH4vpUA8FYxN3dmQTdxemluQXpVS29KQmhyZVBCNk1wQTl5VnBHRGEweGpmUWptTTQxeXQ3aW41OXBhOWk4STJYaURfTndlODBOQXBuRkVZM0M4LVNoMUE0OHFuUiIumAQpNAQxMAWgIGNsaWNrX3JlZhJHCShlciIsWyIySWRLIiKDCSQ5MDQ1NiwiYWN0GRRsODk5MjUsMCwiZW1haWwiLCJjb250ZXh0bWVudUIOAEQtIiwiciIsIi8iLHsiZnQiOnsNdkB0eXBlIjoicmlnaHQifSwiZwEcDH19LDANAhgibHhiNHNjATsobG9naW4ucGhwIl0ymQABhQQxNqX+drEDEDA5OTg5NggENF9RbVk0c2ZvRFJUdXUiMiIBBDk0dbG+wQHwXjB5X0tUOXhVRTRMRjNfWDE0X0lUQWZVd2paUWRRdVdrUW1ob080ZzNybGc2aEJ0WTFoVF9FRU00cUJmX3ZsZUJSVUlzZlNoeDZIRWVHdnI0SmlyUi1fdFJDU0pQTDQiRqcAGtUJRHNjcmlwdF9wYXRoX2NoYW5nZSFvFHNvdXJjZQUWGCI6bnVsbCwRExB0b2tlbhEUCGRlcwk7CCI6Ij1sACwJGQ0rGCJhZDk3NjQSxwmAaW1wcmVzc2lvbl9pZCI6IjA4Rm5RUG1yUGg0aldWYzV0QQYIYXVzIeB4bG9hZCIsInNpZF9yYXciOiI2YTRvNXc6dXV4eXJsOjXlFHJlZmVychIjDBF6GGVmX3BhZ2UypwB4dXJpIjoiaHR0cHM6Ly93d3cuZmFjZWJvb2suY29tL1kqLisBHDUxMSwwLDI1RfRMd2ViX2RldmljZV9wZXJmX2luZm9B/yExoGNwdV9jb3JlcyI6MSwiZ3B1X3ZlbmRvciI6IlZNd2FyZSwgSW5jLiIsBRwQcmVuZGUJs3xsbHZtcGlwZSAoTExWTSAxMC4wLjAsIDI1NiBiaXRzKS6PABwxMDgyLDAsOYaOCxQxNDI3MzA2xAcwRWdteERZemZnLTJGNzJXAAQzNQHmisAGEDcwODI1Ng4DMGZXd19JUFFkSW5oSG8yVgAINTE2InEIOGNhdGVnb3JpemVkX29kcyEybDI5NjYiOnsibXMudGltZV9zcGVudC5xYS53d3cBGB0VIQkoLmpzX2luaXRpYWwBRhgiOlsxXX19PawoMTUxNywwLDcyXV0=","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"categorized_ods","send_method":"ajax","compression":"snappy_base64","snappy_ms":33},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[34]}}},1594673391520,0,51]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[33]}}},1594673391520,0,47]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------162066027313439892851116638267--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="ts"
1594673391737
-----------------------------17100139412599297751483920862
Content-Disposition: form-data; name="q"
[{"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","app_id":"256281040558","posts":[["logger:LoginEventsLoggerConfig",{"event":"browser_autocomplete","prefill_source":"browser_onload","prefill_type":"contact_point"},1594673391735,0,97]],"trigger":"logger:LoginEventsLoggerConfig"}]
-----------------------------17100139412599297751483920862--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------392910638984098151733831907
Content-Disposition: form-data; name="ts"
1594673393078
-----------------------------392910638984098151733831907
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594671900879,"act",1594671900875,2,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},684,367,0,0,"tng441","/login.php"],1594671900878,0,151]],"user":"0","webSessionId":"2toe9a:uwakqs:tng441","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673392992,"act",1594673392988,1,"email","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},564,268,0,0,"lxb4sc","/login.php"],1594673392991,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673393063,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673393068,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------392910638984098151733831907--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------186824930678138621516920702
Content-Disposition: form-data; name="ts"
1594673398500
-----------------------------186824930678138621516920702
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["time_spent_bit_array",{"tos_id":"lxb4sc","start_time":1594673390,"tos_array":[239,0],"tos_len":9,"tos_seq":0,"tos_cum":7,"sid_raw":"6a4o5w:uuxyrl:lxb4sc"},1594673398477,0,132]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"time_spent_bit_array","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673398480,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673398481,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------186824930678138621516920702--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"
1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
POSSIBLE PASSWORD FIELD FOUND: -----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="ts"
1594673403614
-----------------------------81804739318699862351313610361
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673403576,"act",1594673403572,2,"pass","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},621,317,0,0,"lxb4sc","/login.php"],1594673403574,0,150]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673403608,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673403609,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------81804739318699862351313610361--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output: POSSIBLE USERNAME FIELD FOUND: __user=0 PARAM: __a=1 PARAM: __dyn=7xe6Fo4OQ1PyUbFuC1swgE98nwgU6C7UW3q327E2vwXx60kO4o3Bw5VCwjE3awbG783pwlU7i0n2US1kyE1oU884y0Mo28xe0SU2swdq0Ho2ew PARAM: __csr= PARAM: __req=7 PARAM: __beoa=0 PARAM: __pc=PHASED:DEFAULT PARAM: dpr=1 PARAM: __ccg=MODERATE PARAM: __rev=1002360775 PARAM: __s=6a4o5w:uuxyrl:lxb4sc PARAM: __hsi=6849062689416449023-0 PARAM: __comet_req=0 PARAM: lsd=AVqB73WD PARAM: jazoest=2591 POSSIBLE PASSWORD FIELD FOUND: __spin_r=1002360775 POSSIBLE PASSWORD FIELD FOUND: __spin_b=trunk POSSIBLE PASSWORD FIELD FOUND: __spin_t=1594671674 [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output: PARAM: jazoest=2591 PARAM: lsd=AVqB73WD PARAM: display= PARAM: enable_profile_selector= PARAM: isprivate= PARAM: legacy_return=0 PARAM: profile_selector_ids= PARAM: return_session= POSSIBLE USERNAME FIELD FOUND: skip_api_login= PARAM: signed_next= PARAM: trynum=1 PARAM: timezone=330 PARAM: lgndim=eyJ3IjoxMzY2LCJoIjo2NjMsImF3IjoxMzY2LCJhaCI6NjMyLCJjIjoyNH0= PARAM: lgnrnd=132114_2YWu PARAM: lgnjs=1594673390 POSSIBLE USERNAME FIELD FOUND: email=trySET-uk.com PARAM: prefill_contact_point=try+SET.com PARAM: prefill_source=browser_onload PARAM: prefill_type=contact_point PARAM: first_prefill_source=browser_dropdown PARAM: first_prefill_type=contact_point PARAM: had_cp_prefilled=true POSSIBLE PASSWORD FIELD FOUND: had_password_prefilled=false PARAM: ab_test_data=AAAAAAAPAAA/AAAAPAAAAAAAAAAAAPAPAAAAAAAAZ/fAGAGAAAECAE PARAM: ep=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ POSSIBLE PASSWORD FIELD FOUND: encpass=#PWD_BROWSER:5:1594673416:AS9QAGRx377brcPVPSon2Kdx5A8cKP30No0JF8soO3ZiNGx4naYWIfMwfibI/YrOL3O9SHiqQS+EcAF1R2BvJUKNNxyO2uYx8i4oF6J69/tI/ItCd1tiUxirJmDte8p+JGssGT8/gzvIYsKZa5s/ [] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="ts"
1594673416668
-----------------------------13966898841476094930754589952
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":[["click_ref_logger",["2IdK",1594673415953,"act",1594673415941,3,"login","click","click","-","r","/",{"ft":{"click_type":"left"},"gt":{}},646,361,0,0,"lxb4sc","/login.php"],1594673415953,0,151]],"user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","trigger":"click_ref_logger","send_method":"ajax","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[3]}}},1594673416630,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[3]}}},1594673416630,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------13966898841476094930754589952--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
[] WE GOT A HIT! Printing the output:
POSSIBLE USERNAME FIELD FOUND: -----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="ts"
1594673416863
-----------------------------1962363261633658327879440781
Content-Disposition: form-data; name="q"
[{"app_id":"256281040558","posts":"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","user":"0","webSessionId":"6a4o5w:uuxyrl:lxb4sc","send_method":"beacon","compression":"snappy_base64","snappy_ms":21},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_received":[4]}}},1594673416806,0,50]],"user":"0","app_id":"256281040558","compression":""},{"webSessionId":"6a4o5w:uuxyrl:lxb4sc","posts":[["categorized_ods",{"2979":{"banzai":{"blue_messages_sent":[6]}}},1594673416807,0,46]],"user":"0","app_id":"256281040558","compression":""}]
-----------------------------1962363261633658327879440781--
[
] WHEN YOU'RE FINISHED, HIT CONTROL-C TO GENERATE A REPORT.
Whats website are you cloning?

I am starting my learning with setoolkit, cloning www.facebook.com

the password is encrypt and try to not use social networks, start with more simples websites or usea the setoolkit templates

@502-DropDread
Copy link

the password is encrypt and try to not use social networks, start with more simples websites or usea the setoolkit templates

oh seriously ... I had no idea about that, I was guided by tutorials. Thank you very much for your help
regards

@Than10thousand
Copy link

the password is encrypt and try to not use social networks, start with more simples websites or usea the setoolkit templates

*oh seriously ... I had no idea about that, I was guided by tutorials. Thank you very much for your help regards

I have the same issue.but I was doing this fine before I updating my Kali Linux.On Kali 2.0 SANA version it worked much fine...but in latest kali 2020.2b is the one i have this issue...anyone can help?

@consulsueco
Copy link

consulsueco commented Aug 9, 2020

That worked for me. Thanks.
If you are a new at linux or don't know how to edit files with higher level of permission, check this link to learn it.
https://success.trendmicro.com/solution/1113864-editing-configuration-files-of-linux-based-products

@mtshikomba
Copy link

I had the same error. I noticed I was using Python 3.7, and the project required Python 3.6.

The solution was to downgrade to Python 3.6.
This solved the problem for me.

@py-radicz
Copy link

import cgi
from html import escape

cgi.escape = escape

did the thing for me

@spyder-sanju
Copy link

how to edit harvester.py file
it says permission denied

bro firstly u hv to loggin as a super user (root user) then u need to learn chmod commands to give permissions to the files ..,

@asibubernard
Copy link

asibubernard commented Feb 27, 2021

Thanks so much bro, you did save my life. It worked for me. Just had to do this:
import html
html.escape

@shreyashgupta68
Copy link

import cgi
from html import escape

cgi.escape = escape

Thanks Man its worked... :-)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests