00xZ / eye
My personal pretesting recon/low hanging fruit script. Uses Gxss, Dalfox, and a few other scripts to scan all of a domain(and/or subdomains as well) for user inputs, checks if reflected, tests for sqli, xss, open red. and a few more. This is really just for my personal use.
☆20Updated 2 months ago
Alternatives and similar repositories for eye:
Users that are interested in eye are comparing it to the libraries listed below
- This is the open sourced code for the extension, EndPointer☆57Updated 3 months ago
- Checks for SSRF using built-in custom Payloads after fetching URLs from Multiple Passive Sources & applying complex patterns aimed at SSR…☆121Updated 5 months ago
- A collection of config files for linux focusing on hackthebox theme☆41Updated 2 months ago
- Scripts for offensive security☆107Updated last month
- Collection of Notes and CheatSheets used for Red teaming Certs☆211Updated 2 years ago
- Script that automates the installation of the main tools used for web application penetration testing and Bug Bounty.☆189Updated 11 months ago
- Dnsbruter is a powerful tool designed to perform active subdomain enumeration and discovery. It uses DNS resolution to efficiently brutef…☆103Updated 2 months ago
- Welcome to the Bug Hunter's Wordlists repository! 🐛🔍 This repository serves as a comprehensive collection of essential wordlists utiliz…☆144Updated 9 months ago
- Automation tool to testing and confirm the xss vulnerability.☆220Updated last month
- A Python http(s) server designed to assist in red teaming activities such as receiving intercepted data via POST requests and serving con…☆127Updated 7 months ago
- SQLMutant is a powerful SQL injection testing tool that includes both passive and active reconnaissance processes for any given domain. I…☆146Updated 3 months ago
- ☆193Updated last month
- 🪄 XSSDynaGen is a tool designed to analyze URLs with parameters, identify the characters allowed by the server, and generate advanced XS…☆50Updated 2 months ago
- ☆118Updated last year
- Bookmarklet to find endpoints easily with one click☆48Updated 9 months ago
- AI-powered ffuf wrapper☆297Updated 3 months ago
- SubOwner - A Simple tool check for subdomain takeovers.☆106Updated 4 months ago
- Living Off The Land (LOTL) persistent Reverse shell☆97Updated last year
- 🔍 LFIer is a powerful and efficient tool for detecting Local File Inclusion (LFI) vulnerabilities in web applications.☆53Updated 2 months ago
- ☆27Updated 8 months ago
- Python for AWAE (Advanced Web Attacks and Exploitation)☆93Updated last year
- This repo contains my pentesting template that I have used in PWK and for current assessments. The template has been formatted to be used…☆206Updated 2 months ago
- LEAKEY is a bash script which checks and validates for leaked credentials. The idea behind LEAKEY is to make it highly customizable and e…☆347Updated last year
- Shodan Dorks☆315Updated 2 weeks ago
- Helios: Automated XSS Testing☆129Updated 7 months ago
- Bypass-Four03 is a powerful bash tool designed to help testers bypass HTTP 403 forbidden errors through various path and header manipulat…☆131Updated 4 months ago
- XSSRocket it is a tool designed for offensive security and XSS (Cross-Site Scripting) attacks.☆133Updated 4 months ago
- Xploitra is a powerful reverse shell payload generator for educational and security testing. It offers customizable payloads with advance…☆60Updated 4 months ago
- A web based OSINT ressource and tool☆60Updated last month