Ekultek / WhatWafLinks
Detect and bypass web application firewalls and protection systems
☆2,853Updated last year
Alternatives and similar repositories for WhatWaf
Users that are interested in WhatWaf are comparing it to the libraries listed below
Sorting:
- File upload vulnerability scanner and exploitation tool.☆3,285Updated 7 months ago
- Knock Subdomain Scan☆4,107Updated 2 months ago
- A Tool for Domain Flyovers☆5,890Updated 3 years ago
- Automated NoSQL database enumeration and web application exploitation tool.☆3,206Updated 4 months ago
- A python script that finds endpoints in JavaScript files☆4,221Updated last year
- HTTP parameter discovery suite.☆5,987Updated 10 months ago
- A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)☆3,503Updated 5 months ago
- Find web directories without bruteforce☆1,949Updated 2 years ago
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,649Updated this week
- Striker is an offensive information and vulnerability scanner.☆2,314Updated 2 years ago
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆6,103Updated 3 months ago
- Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network☆2,469Updated last year
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,879Updated 4 years ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,458Updated 11 months ago
- CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs☆2,497Updated last year
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,097Updated last year
- The Swiss Army knife for automated Web Application Testing☆2,309Updated last year
- Automatic SSRF fuzzer and exploitation tool☆3,438Updated 3 months ago
- A curated list of amazingly awesome Burp Extensions☆3,335Updated 10 months ago
- A Workflow Engine for Offensive Security☆6,004Updated 4 months ago
- Abusing Certificate Transparency logs for getting HTTPS websites subdomains.☆2,075Updated last year
- Bruteforcing from various scanner output - Automatically attempts default creds on found services.☆2,344Updated 2 weeks ago
- Subdomain Takeover tool written in Go☆2,014Updated 2 years ago
- Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications…☆1,398Updated last year
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,216Updated 2 weeks ago
- Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.☆1,540Updated last year
- Automated All-in-One OS Command Injection Exploitation Tool.☆5,569Updated last week
- DNS Enumeration Script☆2,916Updated last week
- Totally Automatic LFI Exploiter (+ Reverse Shell) and Scanner☆1,894Updated 3 years ago
- Next generation web scanner☆6,316Updated 2 months ago