SSRFHunter
☆18Jan 17, 2026Updated 7 months ago
Alternatives and similar repositories for SSRFHunter
Users that are interested in SSRFHunter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- gosqli is a fast and simple tool for detecting blind SQL injection vulnerabilities. It supports scanning URLs with custom payloads, paral…☆19Jun 22, 2026Updated 2 months ago
- ☆96May 11, 2026Updated 3 months ago
- Burp Suite extension — passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, ent…☆46Updated this week
- ☆50Feb 27, 2026Updated 5 months ago
- 🔐 Chrome Extension - Detect hardcoded tokens, API keys & secrets in JavaScript files☆48Dec 15, 2025Updated 8 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- FrontHunter is a tool for testing large lists of domains to identify candidates for domain fronting.☆22May 5, 2025Updated last year
- Burp Suite extension + port-based highlighter: dedupes HTTP history into a live unique-request feed and color-codes attacker/victim traff…☆11Aug 14, 2026Updated last week
- Fast Go-based XSS assessment toolkit☆20Mar 18, 2026Updated 5 months ago
- This lab is for **EDUCATIONAL PURPOSES ONLY**. Use it responsibly and only on systems you own or have explicit permission to test. Do not…☆22Feb 20, 2026Updated 6 months ago
- Unofficial MCP server for accessing your HackerOne reports, programs, scope, and earnings from Claude Code☆40Apr 1, 2026Updated 4 months ago
- My Main App Hacking CheckList☆34Jun 20, 2026Updated 2 months ago
- Analyze Android native `.so` files☆127Jul 28, 2025Updated last year
- # 🕵️ PathCatcher v1.0 - Path Traversal & LFI Scanner☆24Jul 13, 2025Updated last year
- ☆26Mar 12, 2026Updated 5 months ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- NextSSRF — CVE-2026-44578 Scanner & Exploit ║ ║ Next.js WebSocket Upgrade Handler SSRF☆77May 15, 2026Updated 3 months ago
- Open-source passive reconnaissance and exposure discovery tool that leverages VirusTotal and the Wayback Machine to uncover subdomains, U…☆146Jun 23, 2026Updated 2 months ago
- Collection of documentation, tools, and tips related to vulnerability research.☆107Aug 12, 2026Updated last week
- A full-stack web application that aggregates all HackerOne bug bounty programs that have source code repositories (GitHub, GitLab, Bitbuc…☆17Mar 16, 2026Updated 5 months ago
- It serves as a practical guide for security researchers to identify and test WordPress targets effectively during bug bounty hunting.☆27Jul 19, 2026Updated last month
- JS+ is a browser extension that captures JS URLs from specified domains and scans them with AI.☆22Mar 16, 2026Updated 5 months ago
- ☆81Nov 4, 2025Updated 9 months ago
- Agent-native code security review with MCP, structured findings, and practical pre-merge scanning workflows.☆22Apr 2, 2026Updated 4 months ago
- ☆79May 5, 2025Updated last year
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- A comprehensive WordPress vulnerability scanner and exploitation framework for authorized penetration testing. This tool automatically de…☆77May 21, 2026Updated 3 months ago
- An Automated Framework for End-to-End Blind XSS Detection and Reporting☆17Jan 23, 2026Updated 7 months ago
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- PoC for CVE-2026-3891 — Unauthenticated Arbitrary File Upload leading to Remote Code Execution in Pix for WooCommerce <= 1.5.0☆21Jul 20, 2026Updated last month
- crawler for finding reflected parameters and reflecting special characters!☆21Dec 2, 2024Updated last year
- ☆162Jan 22, 2026Updated 7 months ago
- mattew crawls target websites, extracts hidden attack surface, runs security analysis, fingerprints technology, and generates professiona…☆16Jul 2, 2026Updated last month
- TokenTwin Checker — Dual Token BAC/IDOR Tester for Burp Suite☆90Updated this week
- GBounty Profiles are customizable security test definitions used by the GBounty web scanner to identify vulnerabilities in web applicatio…☆25Mar 11, 2025Updated last year
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- ☆19Apr 9, 2024Updated 2 years ago
- A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug…☆18May 20, 2026Updated 3 months ago
- ☆20Apr 27, 2026Updated 3 months ago
- ☆22Aug 9, 2025Updated last year
- My ATO Via Password Reset Methodology☆54May 13, 2026Updated 3 months ago
- Burp extension to increment a parameter in each active scan request☆13Aug 6, 2026Updated 2 weeks ago
- ☆261Dec 10, 2025Updated 8 months ago