Damian89 / extended-xss-searchLinks
A better version of my xssfinder tool - scans for different types of xss on a list of urls.
☆187Updated 6 years ago
Alternatives and similar repositories for extended-xss-search
Users that are interested in extended-xss-search are comparing it to the libraries listed below
Sorting:
- ☆194Updated 6 years ago
- Web Application recon automation☆126Updated 4 years ago
- CollabOzark is a simple tool which helps the researchers track SSRF, RCE, Blind XSS, XXE, External Resource Access payloads triggers.☆135Updated 5 years ago
- My Recon Automation☆194Updated 4 years ago
- A script to extract subdomains/emails for a given domain using SSL/TLS certificate dataset on Censys☆152Updated 2 years ago
- The project contains multiple shell scripts for automating the tasks during recon.☆174Updated 2 years ago
- Wordlist for content(directory) bruteforce discovering with Burp or dirsearch☆214Updated 11 months ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SS…☆171Updated 4 years ago
- a .js scanner, built in php. designed to scrape urls and other info☆222Updated 8 years ago
- Hunt down the secrets from the WebArchives for Fun and Profit☆164Updated 2 years ago
- 🏰 A Python script for AWS S3 bucket enumeration.☆144Updated 2 years ago
- Bug Bounty Dork☆72Updated 3 years ago
- ☆31Updated 4 years ago
- A tool to find sensitive keys and passwords in Travis logs☆144Updated 4 years ago
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆273Updated 4 years ago
- Intelligent XSS detection tool that uses human techniques for looking for reflected cross-site scripting (XSS) vulnerabilities☆150Updated 2 years ago
- Trying to make automated recon for bug bounties☆254Updated 4 years ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆175Updated 3 years ago
- Automated blind-xss search for Burp Suite☆285Updated 5 years ago
- ☆244Updated 7 years ago
- Takeover script extracts CNAME record of all subdomains at once. TakeOver saves researcher time and increase the chance of finding subdom…☆101Updated 2 years ago
- Command line tool for testing CRLF injection on a list of domains.☆164Updated last year
- ☆58Updated 4 years ago
- Finds the End-Points in JavaScript files☆96Updated 3 years ago
- Burp Suite extension to discover assets from HTTP response.☆228Updated 7 months ago
- A place to store my own wordlists, and link to others that are useful☆108Updated last year
- A simple Cherry Tree template that can be used to organize bug bounties☆39Updated 6 years ago
- You can read the writeup on this script here☆194Updated 3 years ago
- Hacking tools☆148Updated 7 months ago
- A script to extract domain names from Content Security Policy(CSP) headers☆112Updated 6 years ago