-
-
commix Public
Forked from commixproject/commixAutomated All-in-One OS Command Injection Exploitation Tool.
Python Other UpdatedJun 24, 2022 -
Oneliner-Bugbounty Public
Forked from daffainfo/Oneliner-BugbountyA collection oneliner scripts for bug bounty
UpdatedJun 22, 2022 -
CRLFsuite Public
Forked from Raghavd3v/CRLFsuiteThe most powerful CRLF injection (HTTP Response Splitting) scanner.
Python MIT License UpdatedJun 11, 2022 -
feroxbuster Public
Forked from epi052/feroxbusterA fast, simple, recursive content discovery tool written in Rust. | directories status code checker
Rust MIT License UpdatedMay 4, 2022 -
httpx Public
Forked from encode/httpxA next generation HTTP client for Python. 🦋 HTTPX
Python BSD 3-Clause "New" or "Revised" License UpdatedMay 4, 2022 -
SecLists Public
Forked from danielmiessler/SecListsLFI-SecLists is the security tester's companion. It's a collection of multiple types of lists used during security assessments, collected in one place. List types include usernames, passwords, URLs…
PHP MIT License UpdatedMay 3, 2022 -
ThreatMapper Public
Forked from deepfence/ThreatMapper🔥 🔥 Open source cloud native security observability platform. Linux, K8s, AWS Fargate and more. 🔥 🔥
JavaScript Apache License 2.0 UpdatedApr 29, 2022 -
github-search Public
Forked from gwen001/github-searchTools to perform basic search on GitHub.
JavaScript UpdatedApr 20, 2022 -
subdomains.sh Public
Forked from enenumxela/subdomains.shA wrapper around tools used for subdomain enumeration, to automate the workflow, on a given domain, written in bash.
Shell MIT License UpdatedApr 18, 2022 -
qsreplace Public
Forked from tomnomnom/qsreplaceAccept URLs on stdin, replace all query string values with a user-supplied value
Shell MIT License UpdatedApr 17, 2022 -
traitor Public
Forked from liamg/traitor⬆️ ☠️ 🔥 Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w docker.sock
Go MIT License UpdatedApr 17, 2022 -
fireprox Public
Forked from ustayready/fireproxAWS API Gateway management tool for creating on the fly HTTP pass-through proxies for unique IP rotation / used for ratelimit based on IP address bypass
Python GNU General Public License v3.0 UpdatedApr 6, 2022 -
-
XSStrike Public
Forked from s0md3v/XSStrikeMost advanced XSS scanner.
Python GNU General Public License v3.0 UpdatedMar 31, 2022 -
AwesomeXSS Public
Forked from s0md3v/AwesomeXSSAwesome XSS stuff
JavaScript MIT License UpdatedMar 30, 2022 -
uro Public
Forked from s0md3v/urodeclutters url lists for crawling/pentesting - very good tool to test targets with alot of urls
Python Apache License 2.0 UpdatedMar 19, 2022 -
freq Public
Forked from takshal/freqThis is go CLI tool for send fast Multiple get HTTP request.
Go UpdatedMar 19, 2022 -
fuzzdb Public
Forked from fuzzdb-project/fuzzdbDictionary of attack patterns and primitives for black-box application fault injection and resource discovery.
PHP UpdatedMar 19, 2022 -
FinalRecon Public
Forked from thewhiteh4t/FinalReconThe Last Web Recon Tool You'll Need
Python MIT License UpdatedMar 15, 2022 -
JSONBee Public
Forked from zigoo0/JSONBeeA ready to use JSONP endpoints/payloads to help bypass content security policy (CSP) of different websites.
PHP GNU General Public License v3.0 UpdatedFeb 23, 2022 -
WordList Public
Forked from orwagodfather/WordListgood collection of wordlists for fuzzing
PHP UpdatedFeb 5, 2022 -
SecurityTesting Public
Forked from The-XSS-Rat/SecurityTestingWAF bypass checklist Injections
Shell UpdatedJan 11, 2022 -
gf Public
Forked from tomnomnom/gfA wrapper around grep, to help you grep for things
Go MIT License UpdatedDec 26, 2021 -
SSRFire Public
Forked from ksharinarayanan/SSRFireAn automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects
Shell UpdatedDec 8, 2021 -
Gf-Patterns Public
Forked from 1ndianl33t/Gf-PatternsGF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep
MIT License UpdatedNov 30, 2021 -
Bug-Bounty-Wordlists Public
Forked from Karanxa/Bug-Bounty-WordlistsA repository that includes all the important wordlists used while bug hunting.
MIT License UpdatedOct 12, 2021 -
ParamSpider Public
Forked from devanshbatham/ParamSpiderMining parameters from dark corners of Web Archives
Python GNU General Public License v3.0 UpdatedSep 12, 2021 -
This a adaption of tomnomnom's kxss tool with a different output format - testing and finding XSS
Go Apache License 2.0 UpdatedSep 2, 2021 -
takeover Public
Forked from aufzayed/takeoverSub-Domain TakeOver Vulnerability Scanner
Python MIT License UpdatedDec 1, 2020