Ekultek / WhatWafLinks
Detect and bypass web application firewalls and protection systems
☆2,849Updated last year
Alternatives and similar repositories for WhatWaf
Users that are interested in WhatWaf are comparing it to the libraries listed below
Sorting:
- File upload vulnerability scanner and exploitation tool.☆3,283Updated 7 months ago
- Automated NoSQL database enumeration and web application exploitation tool.☆3,200Updated 3 months ago
- Striker is an offensive information and vulnerability scanner.☆2,317Updated 2 years ago
- A high performance offensive security tool for reconnaissance and vulnerability scanning☆3,274Updated 6 months ago
- Automatic SSRF fuzzer and exploitation tool☆3,427Updated 3 months ago
- A Tool for Domain Flyovers☆5,884Updated 3 years ago
- HTTP parameter discovery suite.☆5,968Updated 9 months ago
- Knock Subdomain Scan☆4,109Updated last month
- WAFW00F allows one to identify and fingerprint Web Application Firewall (WAF) products protecting a website.☆6,034Updated 3 months ago
- Automated All-in-One OS Command Injection Exploitation Tool.☆5,539Updated 2 weeks ago
- The fastest and complete solution for domain recognition. Supports screenshoting, port scan, HTTP check, data import from other tools, su…☆3,640Updated this week
- CMS Detection and Exploitation suite - Scan WordPress, Joomla, Drupal and over 180 other CMSs☆2,495Updated last year
- Cross Site "Scripter" (aka XSSer) is an automatic -framework- to detect, exploit and report XSS vulnerabilities in web-based applications…☆1,395Updated last year
- A high-performance DNS stub resolver for bulk lookups and reconnaissance (subdomain enumeration)☆3,490Updated 4 months ago
- A collection of Burpsuite Intruder payloads, BurpBounty payloads, fuzz lists, malicious file uploads and web pentesting methodologies and…☆3,874Updated 4 years ago
- Utilize misconfigured DNS and old database records to find hidden IP's behind the CloudFlare network☆2,460Updated last year
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,089Updated last year
- Web application fuzzer☆6,357Updated last year
- A curated list of amazingly awesome Burp Extensions☆3,327Updated 9 months ago
- A python script that finds endpoints in JavaScript files☆4,210Updated last year
- Bruteforcing from various scanner output - Automatically attempts default creds on found services.☆2,342Updated 3 weeks ago
- SSRF (Server Side Request Forgery) testing resources☆2,474Updated last year
- Patator is a multi-purpose brute-forcer, with a modular design and a flexible usage.☆3,817Updated 6 months ago
- The Swiss Army knife for automated Web Application Testing☆2,310Updated last year
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,454Updated 11 months ago
- Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.☆1,538Updated last year
- Subdomain Takeover tool written in Go☆2,012Updated 2 years ago
- The Offensive Manual Web Application Penetration Testing Framework.☆1,841Updated 2 years ago
- massive SQL injection vulnerability scanner☆1,227Updated 7 years ago
- EyeWitness is designed to take screenshots of websites, provide some server header info, and identify default credentials if possible.☆5,548Updated last month