☆279Jun 27, 2022Updated 3 years ago
Alternatives and similar repositories for ParamPamPam
Users that are interested in ParamPamPam are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- This tool can be used to brute discover GET and POST parameters☆1,395Aug 24, 2019Updated 6 years ago
- Potentially dangerous files☆3,306Aug 25, 2025Updated 9 months ago
- Hidden parameters discovery suite☆2,059Sep 8, 2024Updated last year
- Asynchronous HTTP pipelining directory buster☆24Jul 28, 2020Updated 5 years ago
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆278Feb 11, 2021Updated 5 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- An hourly updated list of subdomains gathered from certificate transparency logs☆346Oct 13, 2021Updated 4 years ago
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,426Sep 13, 2024Updated last year
- Extract (links/possible endpoints) from responses & filter them via decoding/sorting☆93Aug 27, 2019Updated 6 years ago
- Web App bug hunting☆578Nov 26, 2025Updated 6 months ago
- Match and Replace script used to automatically generate JSON option file to BurpSuite☆215May 13, 2019Updated 7 years ago
- You can read the writeup on this script here☆273Jul 12, 2020Updated 5 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,496Oct 12, 2024Updated last year
- HTTP parameter discovery suite.☆6,229Feb 20, 2025Updated last year
- The format of various s3 buckets is convert in one format. for bugbounty and security testing.☆87May 6, 2023Updated 3 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A Powerful Subdomain Takeover Tool☆966Oct 17, 2023Updated 2 years ago
- A python script that finds endpoints in JavaScript files☆4,361Apr 13, 2024Updated 2 years ago
- DNSGen is a powerful and flexible DNS name permutation tool designed for security researchers and penetration testers. It generates intel…☆1,073Jan 3, 2025Updated last year
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆92Nov 21, 2021Updated 4 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,802Apr 26, 2024Updated 2 years ago
- Automated blind-xss search for Burp Suite☆283Oct 10, 2019Updated 6 years ago
- Fetches javascript file from a list of URLS or subdomains.☆842Jul 22, 2025Updated 10 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Feb 19, 2021Updated 5 years ago
- Making Favicon.ico based Recon Great again !☆1,282Aug 29, 2023Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Fetch many paths for many hosts - without killing the hosts☆1,714Feb 3, 2024Updated 2 years ago
- A permutation generation tool written in golang☆212Jul 15, 2019Updated 6 years ago
- Another way to bypass WAF Cheat Sheet (draft)☆435Nov 28, 2018Updated 7 years ago
- A simple SSRF-testing sheriff written in Go☆338Oct 31, 2024Updated last year
- List of XSS Vectors/Payloads☆1,376Jan 14, 2026Updated 4 months ago
- Burp extension to detect alias traversal via NGINX misconfiguration at scale.☆265Nov 18, 2021Updated 4 years ago
- ☆1,431Mar 17, 2026Updated 2 months ago
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆340Aug 23, 2019Updated 6 years ago
- A better version of my xssfinder tool - scans for different types of xss on a list of urls.☆187Aug 3, 2019Updated 6 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A tool to fastly get all javascript sources/files☆877Jul 4, 2025Updated 10 months ago
- A tool to check a bunch of URLs that contain reflecting params.☆598Aug 4, 2024Updated last year
- DNS Takeover tool written in Go☆2,070Mar 16, 2026Updated 2 months ago
- ☆16Mar 29, 2024Updated 2 years ago
- Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.☆133Jul 11, 2021Updated 4 years ago
- A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, al…☆1,294Aug 18, 2025Updated 9 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,555Sep 4, 2025Updated 8 months ago