D3Ext / go-recon
External recon toolkit
☆20Updated 2 weeks ago
Alternatives and similar repositories for go-recon:
Users that are interested in go-recon are comparing it to the libraries listed below
- Burp extension used to snip any header from all the requests.☆22Updated last year
- Search for sensitive data in Postman public library. Original work from https://github.com/cosad3s/postleaks☆26Updated last year
- Burp extension to track your current IP address. Extension focused for red teams where the attacker needs to log all used IP addresses.☆25Updated last year
- ☆14Updated last year
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- Recon scripts for Red Team and Web blackbox auditing☆16Updated last month
- SQLMap wrapper that lets you use Interact.sh as a DNS server for exfiltrating data with zero configuration☆35Updated 2 years ago
- Highly customizable low-interaction experimental honeypot that mimics specific hosts.☆32Updated this week
- Reversing Citrix Gateway for XSS☆14Updated last year
- OSINT tool abusing SecurityTrails domain suggestion API to find potentially related domains by keyword and brute force.☆25Updated last year
- ElasticSearch exploit and Pentesting guide for penetration tester☆24Updated 2 years ago
- Automated HTTP Request Repeating With Burp Suite☆35Updated last year
- Ffuf output browser☆38Updated last year
- Enumeration & fingerprint tool☆24Updated 10 months ago
- ☆16Updated last year
- Simple Python script to sort nuclei scans by severity and URL☆29Updated last year
- H&E- Burp Highlighter and Extractor☆18Updated last year
- Continuous Reconnaissance and Vulnerability Scanning for Bug Bounties☆17Updated 7 months ago
- JaelesFuzzer is a Powerful Automation tool for detecting XSS, SQLi, SSRF, Open-Redirect, etc.. Vulnerabilities in Web Applications☆12Updated 8 months ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆23Updated 5 months ago
- Python script implementing the favicon hash trick to find subdomains.☆27Updated last year
- A multi-threaded password sprayer based on Medusa, built for distributed spraying.☆37Updated 3 years ago
- Monitor your target continuously for new subdomains!☆26Updated last year
- JoomSploit is a script designed to escalate a Cross-Site Scripting (XSS) vulnerability to Remote Code Execution (RCE) or other's critical…☆26Updated last year
- Remove duplicate URLs by retaining only the unique combinations of hostname, path, and parameter names☆34Updated 8 months ago
- A straightforward tool for exploiting SMTP Smuggling vulnerabilities.☆14Updated 5 months ago
- Bxss Sniper: A web application penetration testing tool for Blind XSS detection☆17Updated last year
- Saves pages to Wayback machine☆13Updated last month