Dheerajmadhukar / karma_v2
β‘·β πππππ ππΈβ β’Ύ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)
β816Updated 5 months ago
Related projects β
Alternatives and complementary repositories for karma_v2
- Small tool to Grab subdomains using Shodan api.β362Updated 3 weeks ago
- Golang client for querying SecurityTrails API dataβ539Updated last year
- A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given targetβ1,204Updated 4 months ago
- A fuzzer for detecting open redirect vulnerabilitiesβ712Updated 4 months ago
- My subdomain enumeration script. It's unique in the way it is built upon.β664Updated 3 months ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one plβ¦β876Updated 5 months ago
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters andβ¦β778Updated last year
- MagicRecon is a powerful shell script to maximize the recon and data collection process of an objective and finding common vulnerabilitieβ¦β861Updated 3 months ago
- Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search β¦β515Updated 9 months ago
- Automation for javascript recon in bug bounty.β900Updated last year
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated filesβ¦β678Updated 4 months ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..eβ¦β935Updated 4 months ago
- declutters url lists for crawling/pentestingβ1,203Updated 2 weeks ago
- Open Redirection Analyzerβ753Updated last year
- This a adaption of tomnomnom's kxss tool with a different output formatβ426Updated last year
- Accept URLs on stdin, replace all query string values with a user-supplied valueβ767Updated last year
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirectsβ944Updated 2 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!β845Updated 10 months ago
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.β428Updated 2 years ago
- An IIS short filename enumeration toolβ802Updated 3 months ago
- Automated Recon for Pentesting & Bug Bountyβ417Updated 9 months ago
- Making Favicon.ico based Recon Great again !β1,127Updated last year
- A tool to check a bunch of URLs that contain reflecting params.β536Updated 3 months ago
- Tool to bypass 403/40X response codes.β1,112Updated 3 months ago
- bash script for Subdomain Enumerationβ330Updated last year
- Go client to communicate with Chaos DB API.β641Updated this week
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.β50Updated 6 months ago
- A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.β875Updated 11 months ago
- oneliner commands for bug bountiesβ424Updated 2 years ago
- BugBountyTipsβ402Updated 5 months ago