GBounty Profiles are customizable security test definitions used by the GBounty web scanner to identify vulnerabilities in web applications. These profiles outline a series of steps and conditions that the scanner follows during analysis, including specific requests, insertion points, and search patterns to detect vulnerabilities
☆25Mar 11, 2025Updated last year
Alternatives and similar repositories for gbounty-profiles
Users that are interested in gbounty-profiles are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- GBounty is a multi-step website vulnerability scanner developed in Golang designed to help companies, pentesters, and bug hunters identif…☆167Aug 28, 2025Updated 10 months ago
- Burp extension to log requests and responses to PostgreSQL☆16Jun 30, 2025Updated last year
- Nuclei plugin for BurpSuite☆17Nov 29, 2024Updated last year
- ☆24Apr 17, 2026Updated 3 months ago
- Cleo Unrestricted file upload and download PoC (CVE-2024-50623)☆25Dec 11, 2024Updated last year
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- An extension for Burp's Web Vulnerability Scanner that can detect API discovery metadata and extract data useful during recon.☆19Sep 13, 2025Updated 10 months ago
- Give me your APK, I will give you framework name☆15May 6, 2026Updated 2 months ago
- Apache HugeGraph Server Unauthenticated RCE - CVE-2024-27348 Proof of concept Exploit☆18Jun 3, 2024Updated 2 years ago
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Feb 3, 2024Updated 2 years ago
- Updated Exploit - pfBlockerNG <= 2.1.4_26 Unauth RCE (CVE-2022-31814)☆23Jul 23, 2024Updated 2 years ago
- Your bloodhound for hidden info in those JS files.☆18May 13, 2024Updated 2 years ago
- Exploit Proof-of-Concept code for XAMPP v3.3.0 — '.ini' Buffer Overflow (Unicode + SEH)☆13Nov 1, 2023Updated 2 years ago
- Keycloak admin API allows low privilege users to use administrative functions☆31Oct 12, 2024Updated last year
- Find unicode codepoints to use in normalisation and transformation attacks.☆11Mar 15, 2021Updated 5 years ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Online-Crawler-Wayback-Machine☆27Oct 15, 2024Updated last year
- Widget Options – The #1 WordPress Widget & Block Control Plugin <= 4.0.7 - Authenticated (Contributor+) Remote Code Execution☆13Dec 2, 2024Updated last year
- SSRFHunter☆18Jan 17, 2026Updated 6 months ago
- ☆24Oct 17, 2024Updated last year
- burpsuite extension to analyze javascript files using semgrep☆13Feb 3, 2025Updated last year
- Burp extension used to snip any header from all the requests.☆25Nov 12, 2023Updated 2 years ago
- Reconstruct javascript from a sourcemap in bash☆39Nov 23, 2021Updated 4 years ago
- POC for CVE-2024-31982: XWiki Platform Remote Code Execution > 14.10.20☆10Jun 22, 2024Updated 2 years ago
- These are just some script which you can use to detect and exploit the Apache Struts Vulnerability (CVE-2017-5638)☆16Mar 12, 2017Updated 9 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Get list of subsidiaries for a selected company☆32Dec 21, 2024Updated last year
- ☆10Jul 8, 2024Updated 2 years ago
- ☆20Apr 27, 2026Updated 2 months ago
- Burp extension to increment a parameter in each active scan request☆13Jul 16, 2025Updated last year
- ☆22Jul 15, 2023Updated 3 years ago
- Burpsuite Extension for Jsmon☆25Jul 1, 2026Updated 3 weeks ago
- Bounty Prompt is an Open-Source Burp Suite extension by Bounty Security that leverages advanced AI via Burp AI and Groq AI. It enables us…☆126Feb 23, 2025Updated last year
- JWTLens - Burp Suite extension for automated JWT security testing. 62 checks: passive scanning, algorithm confusion, signature bypass, …☆55Mar 19, 2026Updated 4 months ago
- Unveiling Cyber Threats: From assets to Vulnerability Insights☆18Oct 22, 2024Updated last year
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Advanced test for proxy & waf☆14Feb 10, 2026Updated 5 months ago
- ☆16May 3, 2024Updated 2 years ago
- ☆42Mar 12, 2025Updated last year
- Looks for parameters in urls☆35Oct 14, 2024Updated last year
- This project documents my hands-on journey in learning and conducting internal Active Directory (AD) penetration testing. The exercises s…☆20Apr 19, 2025Updated last year
- Burp Suite extension — passively detects secrets, API keys, credentials, JWTs & PII in HTTP traffic. 160+ detection rules, bulk scan, ent…☆34May 15, 2026Updated 2 months ago
- Thermal pocket printer - BLE protocol reverse engineering, Python CLI, and web GUI☆15May 4, 2026Updated 2 months ago