EdOverflow / bug-bounty-responses
A collection of response templates for invalid bug bounty reports.
☆91Updated 7 years ago
Alternatives and similar repositories for bug-bounty-responses
Users that are interested in bug-bounty-responses are comparing it to the libraries listed below
Sorting:
- This repository contains all the material from the talk "Practical recon techniques for bug hunters & pentesters" given at Bugcrowd Level…☆60Updated 6 years ago
- A tool to bruteforce nameservers when working with subdomain delegations to AWS.☆58Updated 5 years ago
- A tool to evaluate Content Security Policies.☆71Updated 4 years ago
- A CLI tool to interact with hackerone.com. This was my submission for HackerOne's Summer 2018 Hack Day.☆39Updated 6 years ago
- Push notifications for passive DNS data☆109Updated 9 years ago
- A tool used to check if a CNAME resolves to the scope address. If the CNAME resolves to a non-scope address it might be worth checking ou…☆135Updated last year
- A place to store my own wordlists, and link to others that are useful☆108Updated last year
- Brute force AWS bucket finder☆61Updated 2 years ago
- AWS Security Checks☆39Updated 7 years ago
- retrive metadata endpoint data with these one liners.☆38Updated 4 years ago
- All-in-one AWS S3 bucket tool for pentesters.☆73Updated 6 years ago
- This tool is for automate the initial things that we usually do in daily pentesting. So you can focus more on the main target.☆75Updated 5 years ago
- AWS S3 Bucket/Object Finder☆119Updated 3 years ago
- Repo of useful scripts☆104Updated 4 years ago
- The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters☆103Updated last year
- Amazon bucket brute force tool☆101Updated 11 years ago
- This is a set of tips and reminders for pentesting processes and scripts/programs. Initially for personal use, but if anyone else finds t…☆52Updated 5 years ago
- Scans a list of websites for Cloudfront or S3 Buckets☆104Updated 3 years ago
- Takes ip range, Scan all open SSL Certs, Grab Cnames☆112Updated 6 years ago
- This repository contains an example Python API that is vulnerable to several different web API attacks.☆27Updated 6 years ago
- Chrome extension to aid in finding DOMXSS by simple taint analysis of string values.☆81Updated 5 years ago
- Suite of programs meant to aid in bug hunting and security assessments☆75Updated 5 years ago
- Open Redirect Finder.☆50Updated 10 months ago
- ☆276Updated 3 years ago
- ASN reconnaissance script☆127Updated last year
- A colorful cross-platform python script to test misconfigurations of AWS S3 buckets both through authenticated and unauthenticated checks…☆39Updated 3 years ago
- This is a web application fuzzer scanner - the goal was CLI flexibility and rapid prototyping☆48Updated 5 years ago
- Simple wrapper for meg that sieves through meg's output for you.☆60Updated 5 years ago
- Keye is a reconnaissance tool that was written in Python with SQLite3 integrated. After adding a single URL, or a list of URLs, it will m…☆101Updated 5 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆113Updated 6 years ago