Versions:

  • 1.4.2

godirb is a fast and easy-to-use directory brute-forcer written in the Go programming language, published by MyCode83. Its purpose is to discover hidden files and directories on web servers by systematically testing paths derived from wordlists, a common task in web application security assessment and reconnaissance. The tool fits squarely into the security testing and web enumeration category, where it serves penetration testers, bug bounty hunters, security researchers, and system administrators who need to map the publicly reachable structure of a website or identify resources that are not linked from visible pages but remain accessible on the server. A distinguishing characteristic of godirb is its approach to reducing false positives, a frequent problem with directory brute-forcing tools because many web servers return identical-looking responses—such as a generic 200 status page—for paths that do not actually exist. godirb addresses this through per-directory and per-extension response calibration, meaning it samples and profiles how a target server responds before and during enumeration so that results can be filtered more accurately. This calibration helps users spend less time manually validating findings and more time investigating genuinely interesting content. Typical use cases include content discovery during authorized penetration tests, identification of forgotten backups, configuration files, or administrative panels, and general attack surface mapping as part of a security audit workflow. Because it is written in Go, godirb benefits from the language's emphasis on performance and concurrency, which supports the speed claims made in its description while keeping the tool straightforward to deploy and operate. The current version of godirb is 1.4.2. According to the available catalog data, one version of the software is listed, so 1.4.2 represents the release presently documented for distribution. Users evaluating the tool should note this version identifier when reporting issues, comparing features, or verifying that they are running the most recent published build.

Tags: