BishopFox / jsluice
Extract URLs, paths, secrets, and other interesting bits from JavaScript
☆1,520Updated 10 months ago
Alternatives and similar repositories for jsluice:
Users that are interested in jsluice are comparing it to the libraries listed below
- A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given target☆1,299Updated 2 weeks ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,326Updated 3 weeks ago
- declutters url lists for crawling/pentesting☆1,321Updated last month
- Tool to bypass 403/40X response codes.☆1,222Updated 3 months ago
- Fast and customizable subdomain wordlist generator using DSL☆782Updated 2 weeks ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆963Updated 2 months ago
- Burp Plugin to Bypass WAFs through the insertion of Junk Data☆1,075Updated 2 months ago
- REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications☆984Updated last year
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆863Updated last year
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal & Intelligence X!☆1,983Updated 2 weeks ago
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,273Updated 6 months ago
- An IIS short filename enumeration tool☆900Updated 4 months ago
- Hidden parameters discovery suite☆1,805Updated 6 months ago
- Go client to communicate with Chaos DB API.☆694Updated this week
- Nuclei Templates Collection☆960Updated 10 months ago
- 403/401 Bypass Methods + Bash Automation + Your Support ;)☆1,437Updated 2 years ago
- Asset inventory of over 800 public bug bounty programs.☆1,345Updated last month
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆967Updated 9 months ago
- A tool for adding new lines to files, skipping duplicates☆1,482Updated last year
- Puredns is a fast domain resolver and subdomain bruteforcing tool that can accurately filter out wildcard subdomains and DNS poisoned ent…☆1,843Updated 4 months ago
- MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filtering…☆1,402Updated this week
- Scope gathering tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!☆1,106Updated last week
- Accept URLs on stdin, replace all query string values with a user-supplied value☆801Updated 2 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆63Updated 11 months ago
- bypass-url-parser☆1,063Updated this week
- Rockyou for web fuzzing☆2,746Updated last month
- Subdomain takeover vulnerability checker☆1,171Updated 6 months ago
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,486Updated last week
- Notify is a Go-based assistance package that enables you to stream the output of several tools (or read from a file) and publish it to a …☆1,410Updated this week
- A fast tool to scan CRLF vulnerability written in Go☆1,403Updated last week