Skip to main content

Amounts

Generate a wordlist to fuzz amounts or any other numerical values. Based on Common Security Issues in Financially-Oriented Web Applications.

Bypass minimum and maximum restrictions, cause an unintended behavior and errors, etc.

Works with integer and float numerical values.

Tests:

  • Grouping and separating digits using separators such as space, comma, and dot.
  • Adding leading zeros and trailing decimal zeros using separators such as space and comma.
  • Prepending and appending negative and positive scope.
  • Prepending fiat currency symbols such as $, £, and € with and without negative and positive scope.
  • Adding brackets such as (), [], and {} and extending the inner elements.
  • Testing overflows, underflows, and infinite values.
  • Testing binary and hexadecimal representations, exponential notations, and byte and Unicode escape sequences.
  • Testing boolean, empty, integer minimum, integer maximum, and other special values.
  • Testing lengths.

Pre-generated wordlists can be found in /src/wordlists/ and also a part of /danielmiessler/SecLists/tree/master/Fuzzing/Amounts.

Complimentary wordlists:

Tested on Kali Linux v2024.2 (64-bit).

Made for educational purposes. I hope it will help!

Table of Contents

How to Install

Standard Install

pip3 install --upgrade amounts

Build and Install From the Source

git clone https://github.com/ivan-sincek/amounts && cd amounts

python3 -m pip install --upgrade build

python3 -m build

python3 -m pip install dist/amounts-4.2-py3-none-any.whl

Generate Amounts

amounts -min 1 -max 10000 -mid 2200 -o amounts.txt

Generate wordlist:

2 200
2,200
2.200
002200
2200,00
2200.00
-2200
2200-
+2200
2200+
2200
$-2200
-$2200
$+2200
+$2200
$2200
€-2200
-€2200
€+2200
+€2200
€2200
£-2200
-£2200
£+2200
+£2200
£2200
()
(,,)
(2200)
("2200")
(2200,2199)
("2200","2199")
[]
[,,]
[2200]
["2200"]
[2200,2199]
["2200","2199"]
{}
{,,}
{2200}
{"2200"}
{2200,2199}
{"2200","2199"}
0
10001
-NaN
-Infinity
-inf
NaN
Infinity
inf
0b100010011000
0x898
\x32\x32\x30\x30
\u0032\u0032\u0030\u0030
2200e0
2200e-50
0.00000000000000000000000000000000000000000000002200
1e-1
10000e1
&h00
&hff
2,,2,,0,,0
%20%092200
2200%20%00%00
true
false
-1
+1
-0
+0
0e-1
0e1
null
None
nil
An Array
-2147483648
2147483647
-2147483649
2147483648
4294967295
4294967296
99999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
9999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
-9999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
-999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
-99999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999999
1

Usage

Amounts v4.2 ( github.com/ivan-sincek/amounts )

Usage:   amounts [-min minimum] [-max maximum] -mid middle -o out         [-q quotes]
Example: amounts [-min 1      ] [-max 1000   ] -mid 20     -o amounts.txt [-q double]

DESCRIPTION
    Generate a wordlist to fuzz amounts or any other numerical values
MINIMUM
    Minimum amount allowed
    -min, --minimum = 1 | etc.
MAXIMUM
    Maximum amount allowed
    -max, --maximum = 1000 | etc.
MIDDLE
    Preferably, a multi-digit amount greater than the minimum, lesser than the maximum, and not equal to zero
    -mid, --middle = 20 | etc.
QUOTES
    Quotes for enclosing the amounts
    Use comma-separated values
    Default: none
    -q, --quotes = none | single | double | backtick | all
IGNORE
    Ignore hardcoded values
    -i, --ignore
OUT
    Output file
    -o, --out = amounts.txt | etc.

Metadata

Release files for amounts 4.2

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for amounts 4.2
File Size Uploaded
amounts-4.2.tar.gz 13.0 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for amounts 4.2
File Interpreter ABI Platform
amounts-4.2-py3-none-any.whl Python 3 none any Details

Total release size: 29.5 kB

Release files / amounts-4.2.tar.gz

Download URL amounts-4.2.tar.gz
Size 13.0 kB
Tags Source
SHA-256 checksum
How to use checksums
2fd503b76d2d1866637ee2691430d978cbc0bbc124fab8528ceac3ac3af49ada
BLAKE2b-256 checksum
How to use checksums
f3edf485960a826da3d381e63c459001ccef6874f1d2e156585aee0a6765275f
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/4.0.2 CPython/3.11.8

Release files / amounts-4.2-py3-none-any.whl

Download URL amounts-4.2-py3-none-any.whl
Size 16.4 kB
Tags Python 3
SHA-256 checksum
How to use checksums
0068ee2842bcccb014ac62f399337b6923b7e903c46ecc5ab5790827b995c3e7
BLAKE2b-256 checksum
How to use checksums
c1d16aeffb284b5cb294a89cae7d5691b5ddce7b92e3cc016318db839669f253
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/4.0.2 CPython/3.11.8

Release history Release notifications | RSS feed

This release

4.2 This release

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page