Ekultek / WhatWaf
Detect and bypass web application firewalls and protection systems
☆2,723Updated 6 months ago
Alternatives and similar repositories for WhatWaf:
Users that are interested in WhatWaf are comparing it to the libraries listed below
- File upload vulnerability scanner and exploitation tool.☆3,169Updated last year
- Automated All-in-One OS Command Injection Exploitation Tool.☆4,732Updated this week
- Automated NoSQL database enumeration and web application exploitation tool.☆3,008Updated 6 months ago
- Knock Subdomain Scan☆3,940Updated 3 months ago
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆3,868Updated 10 months ago
- A Tool for Domain Flyovers☆5,714Updated 2 years ago
- A curated list of amazingly awesome Burp Extensions☆3,078Updated this week
- A Workflow Engine for Offensive Security☆5,469Updated 2 weeks ago
- HTTP parameter discovery suite.☆5,439Updated 2 months ago
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆5,517Updated last month
- DNS Enumeration Script☆2,712Updated last week
- Advanced vulnerability scanning with Nmap NSE☆3,556Updated 5 months ago
- Weaponized web shell☆3,251Updated 4 months ago
- Web application fuzzer☆6,059Updated 6 months ago
- Striker is an offensive information and vulnerability scanner.☆2,252Updated last year
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,742Updated 3 years ago
- CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs☆2,373Updated 10 months ago
- Attack Surface Management Platform☆8,426Updated last month
- A python script that finds endpoints in JavaScript files☆3,826Updated 10 months ago
- A high performance offensive security tool for reconnaissance and vulnerability scanning☆3,141Updated 8 months ago
- NSE script based on Vulners.com API☆3,271Updated 10 months ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,163Updated 3 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,084Updated 8 months ago
- The Swiss Army knife for automated Web Application Testing☆2,195Updated 9 months ago
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,411Updated last year
- gitGraber: monitor GitHub to search and find sensitive data in real time for different online services such as: Google, Amazon, Paypal, G…☆2,064Updated 7 months ago
- Next generation web scanner☆5,729Updated 7 months ago
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,645Updated this week
- A Python based web application scanner to gather OSINT and fuzz for OWASP vulnerabilities on a target website.☆1,577Updated 2 months ago
- 🔥 Web-application firewalls (WAFs) from security standpoint.☆6,489Updated 3 months ago