B3nac / bXSSRequestLinks
Literally spray blind xss payloads everywhere.
☆26Updated 3 years ago
Alternatives and similar repositories for bXSSRequest
Users that are interested in bXSSRequest are comparing it to the libraries listed below
Sorting:
- My recon script☆50Updated 5 years ago
- Get all possible href | src | url from target url or domain☆41Updated 5 years ago
- This script scrapes the list of open Bug Bounty Programs from openbugbounty.org☆27Updated 3 years ago
- web-based-fuzzer☆32Updated 5 years ago
- Virtual host wordlist☆52Updated 4 years ago
- commonspeak2 subdomains wordlist generated daily **DEPRECATED** The author(s) of commonspeak2 maintain an official repo with more lists. …☆41Updated 4 years ago
- Handy bash and python scripts for bug bounty hunting!☆47Updated 4 years ago
- Bug Bounty statistics tool.☆33Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Finds Directory Listings or open S3 buckets from a list of URLs☆53Updated 3 years ago
- Pipe different tools with google dork Scanner☆56Updated 5 years ago
- XSSor is a semi-automatic reflected and persistent XSS detector extension for Burp Suite. The tool was written in Python by Barak Tawily,…☆60Updated 4 years ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- Bucket Flaws ( S3 Bucket Mass Scanner ): A Simple Lightweight Script to Check for Common S3 Bucket Misconfigurations☆58Updated 5 years ago
- ☆57Updated 5 years ago
- A simple tool with the power of "Go" to find the hidden Vhosts defined at the server.☆19Updated 6 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 5 years ago
- Get all the CNs from a list of domains☆46Updated 4 years ago
- Offsec Pentest and Bug Bounty Notes☆25Updated 5 years ago
- Send notifications on different channels such as Slack, Telegram, Discord etc.☆39Updated 2 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆46Updated 2 years ago
- Wrapper around LinkFinder to quickly determine whether endpoints have been added/removed to JavaScript files.☆41Updated 5 years ago
- Single-WebApp-Target essentials testing methodology tool starting at recon-information gathering for the juicy stuff ended up in exploita…☆23Updated 4 years ago
- ☆38Updated 4 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆15Updated 5 years ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆24Updated 5 years ago
- Tool to find stored robots.txt files from the past☆18Updated 2 years ago
- sub domain wild card filtering tool☆41Updated 5 years ago
- Simple tool to test for SSRF/OOB HTTP Read within the Path of a request☆30Updated 6 years ago
- ☆32Updated 6 years ago