Charlie-belmer / nosqliLinks
NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.
☆400Updated 4 years ago
Alternatives and similar repositories for nosqli
Users that are interested in nosqli are comparing it to the libraries listed below
Sorting:
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆516Updated 3 years ago
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆763Updated 3 years ago
- Security Testing Scripts for JWT☆324Updated 3 years ago
- This repository contains various media files for known attacks on web applications processing media files. Useful for penetration tests a…☆344Updated 4 years ago
- Automated learning of regexes for DNS discovery☆379Updated 2 years ago
- ☆557Updated 8 months ago
- Client Side Prototype Pollution Scanner☆522Updated 3 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆930Updated 3 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆636Updated 4 months ago
- A Security Tool for Enumerating WebSockets☆364Updated 3 years ago
- HTTP Request Smuggling Detection Tool☆533Updated last year
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆322Updated 4 months ago
- Fetches javascript file from a list of URLS or subdomains.☆817Updated 4 months ago
- Gotator is a tool to generate DNS wordlists through permutations.☆498Updated 3 years ago
- Nuclei templates written by geeknik. Claude is my co-pilot. 🤖☆287Updated 3 months ago
- ☆299Updated 3 years ago
- Default signature for Jaeles Scanner☆325Updated 3 years ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆663Updated last year
- A fast tool to scan client-side prototype pollution vulnerability written in Rust. 🦀☆644Updated 3 months ago
- List DTDs and generate XXE payloads using those local DTDs.☆641Updated last year
- Burpsuite plugin for Interact.sh☆228Updated last year
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆282Updated last year
- IIS shortname scanner written in Go☆347Updated 2 years ago
- The Serverless Blind XSS App☆340Updated 6 months ago
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆748Updated 4 years ago
- A tool to check a bunch of URLs that contain reflecting params.☆599Updated last year
- DOM XSS scanner for Single Page Applications☆416Updated 2 weeks ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Updated 2 years ago
- Golang client for querying SecurityTrails API data☆574Updated 2 years ago
- Scrape domain names from SSL certificates of arbitrary hosts☆688Updated last year