Ebryx / GitDump
A pentesting tool that dumps the source code from .git even when the directory traversal is disabled
☆222Updated 3 years ago
Alternatives and similar repositories for GitDump:
Users that are interested in GitDump are comparing it to the libraries listed below
- A tool which scrapes public github repositories for common naming conventions in variables, folders and files☆289Updated 8 months ago
- ☆165Updated 4 years ago
- Python based scanner to find potential SSRF parameters☆313Updated last week
- Hidden parameters discovery suite☆222Updated 2 years ago
- Common Web Managers Fuzz Wordlists☆173Updated 3 months ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆256Updated 2 years ago
- Customisable and automated HTTP header injection☆244Updated 8 months ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆501Updated 2 years ago
- A script that you can run in the background!☆175Updated 5 years ago
- A python based blind SQL injection exploitation script☆137Updated 5 years ago
- List DTDs and generate XXE payloads using those local DTDs.☆619Updated last year
- A blind XSS detection and XSS data capture framework☆170Updated 2 weeks ago
- A tool to embed XXE and XSS payloads in docx, odt, pptx, xlsx files (oxml_xxe on steroids)☆582Updated last year
- Web Application Security Testing Tools☆238Updated 11 months ago
- Herramienta para evadir disable_functions y open_basedir☆403Updated last year
- An automated target reconnaissance pipeline.☆431Updated 2 years ago
- Tool to help exploit XXE vulnerabilities☆553Updated 2 years ago
- ☆169Updated 2 years ago
- Various Payload wordlists☆235Updated 4 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 4 years ago
- NoSql Injection CLI tool, for finding vulnerable websites using MongoDB.☆373Updated 3 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated last year
- Nuclei templates written by us.☆267Updated 3 years ago
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆295Updated 5 years ago
- Payloads for CRLF Injection☆223Updated 4 months ago
- Collection of XSS Payloads for fun and profit☆173Updated 4 years ago
- Build your own reconnaissance system with Osmedeus Next Generation☆184Updated 3 weeks ago
- Gotator is a tool to generate DNS wordlists through permutations.☆465Updated 2 years ago
- Simple Python Script For Performing XMLRPC Dictionary Attack☆134Updated 4 years ago
- Bucky (An automatic S3 bucket discovery tool)☆194Updated 3 years ago