FofaInfo / Awesome-FOFA
The FOFA Library collects usage tips, common scenarios, F&Q, and more for FOFA.
☆250Updated 2 weeks ago
Alternatives and similar repositories for Awesome-FOFA:
Users that are interested in Awesome-FOFA are comparing it to the libraries listed below
- Nuclei AI - Browser Extension for Rapid Nuclei Template Generation☆487Updated 2 months ago
- NucleiScanner is a Powerful Automation tool for detecting Unknown Vulnerabilities in the Web Applications☆315Updated 8 months ago
- A Linux persistence tool!☆150Updated 9 months ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆349Updated this week
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆295Updated 11 months ago
- Afuzz is an automated web path fuzzing tool for the Bug Bounty projects.☆303Updated last year
- A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas i…☆173Updated 6 months ago
- Unauthenticated Remote Code Execution – Bricks <= 1.9.6☆158Updated last year
- CVE-2024-27198 & CVE-2024-27199 Authentication Bypass --> RCE in JetBrains TeamCity Pre-2023.11.4☆151Updated last year
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆264Updated 11 months ago
- CVE-2024-23897☆196Updated last year
- Fuzz 401/403/404 pages for bypasses☆298Updated 2 months ago
- Payload for bug bounty☆92Updated 8 months ago
- SQLMap Command Generator: A web-based tool to easily generate customizable SQLMap commands for testing SQL injection vulnerabilities. Fea…☆62Updated 3 months ago
- ☆218Updated 8 months ago
- ☆99Updated last year
- CVE-2023-25157 - GeoServer SQL Injection - PoC☆165Updated last year
- ☆297Updated 2 years ago
- APIDetector: Efficiently scan for exposed Swagger endpoints across web domains and subdomains. Supports HTTP/HTTPS, multi-threading, and …☆311Updated 3 months ago
- CVE-2024-4367 & CVE-2024-34342 Proof of Concept☆152Updated 9 months ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆139Updated 2 months ago
- Burp Suite extension for bypassing client-side encryption for pentesting and bug bounty☆201Updated last month
- ☆228Updated 2 weeks ago
- fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.☆803Updated last year
- ShodanX is a tool to gather information of targets using shodan dorks⚡.☆275Updated 3 months ago
- Docker Remote API Scanner and Exploit☆170Updated last year
- exploit for f5-big-ip RCE cve-2023-46747☆203Updated 4 months ago
- Automation tool to testing and confirm the xss vulnerability.☆219Updated last month
- POC for CVE-2024-36991: This exploit will attempt to read Splunk /etc/passwd file.☆115Updated 8 months ago