0x4ndy / clif
clif is a command-line interface (CLI) application fuzzer, pretty much what wfuzz or ffuf are for web. It was inspired by sudo vulnerability CVE-2021-3156 and the fact that for some reasons, Google's afl-fuzz doesn't allow for unlimited argument or option specification.
☆99Updated 2 years ago
Alternatives and similar repositories for clif:
Users that are interested in clif are comparing it to the libraries listed below
- Multi-threaded Padding Oracle attacks against any service. Written in Rust.☆94Updated 2 years ago
- Fast Web Security Scanner written in Rust based on Lua Scripts☆84Updated 3 months ago
- A wrapper around grep, to help you grep for things! - Improved version of gf by @tomnomnom.☆63Updated last year
- Simple PoC for demonstrating Race Conditions on Websockets☆56Updated last year
- a deterministic finite automata ranker☆69Updated 3 years ago
- ☆53Updated 2 years ago
- This could have been a bash one-liner but guess what. It's a small Go tool that lists the trending CVEs from cvetrends.com☆106Updated 2 years ago
- Signing-key abuse and update exploitation framework☆124Updated 2 weeks ago
- a multithreaded fast tool to preform active subdomain enumeration☆34Updated 2 years ago
- Quick network scanner library. https://crates.io/crates/qscan☆82Updated 2 years ago
- 🔗 A curated list of awesome Caido related projects☆35Updated last week
- Fast HTTP Checker.☆214Updated 5 months ago
- A structure-aware HTTP fuzzing library☆211Updated 3 months ago
- 🔰 Caido Plugin StarterKit☆31Updated 3 months ago
- A blazing-fast, thread-safe, straightforward and zero memory allocations tool to swiftly generate alternative IP(v4) address representati…☆86Updated last year
- Default locations for files on various Linux distros.☆10Updated 3 years ago
- ☆38Updated last week
- A collection of utilities for building extensions using Burp's Montoya API☆47Updated 9 months ago
- Unicode Security Toolkit☆34Updated 5 months ago
- ☆34Updated 2 years ago
- ☆68Updated last year
- CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).☆110Updated 2 months ago
- Rust-based high performance domain permutation generator.☆285Updated last year
- AssetViz simplifies the visualization of subdomains from input files, presenting them as a coherent mind map. Ideal for penetration test…☆32Updated 11 months ago
- Handy scripts and one-liners to make life easier☆37Updated 2 years ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆85Updated 2 years ago
- Fast, compact and all-around subdomain enumeration tool written in Rust☆22Updated 3 years ago
- CLI tool that extracts a regex pattern from a list of urls ( Rust )☆61Updated 2 years ago
- Distribute ordinary bash commands over many systems☆162Updated 2 years ago
- Linux Enumeration / Privilege escalation tool☆23Updated 4 years ago