The IDOR IN works by systematically scanning a target web application and examining various endpoints, parameters, and data access points to identify potential IDOR vulnerabilities. It leverages techniques such as parameter fuzzing, payload injection, and response analysis to detect signs of insecure direct object references.
☆24Jun 25, 2023Updated 2 years ago
Alternatives and similar repositories for IDOR-IN
Users that are interested in IDOR-IN are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An interactive bash script for detecting IDOR vulnerabilities. Automates the discovery of access control issues in web applications, enha…☆15Apr 10, 2025Updated 11 months ago
- A tool that automates the search for IDOR vulnerabilities in web apps and APIs☆64Jan 18, 2021Updated 5 years ago
- Methodoloy for pentesting web applications.☆10Aug 18, 2022Updated 3 years ago
- Describe how to use ffuf different options with examples☆13Jun 13, 2022Updated 3 years ago
- Free Online Certifications in CyberSecurity☆23Sep 29, 2020Updated 5 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click and start building anything your business needs.
- AI-based Web Application Penetration Testing Tool☆25Jan 19, 2024Updated 2 years ago
- ☆19Aug 26, 2020Updated 5 years ago
- The DNS Security Analysis Tool is a Python-based utility designed to conduct an in-depth security analysis of DNS configurations for mult…☆19Oct 18, 2024Updated last year
- A list of ChatGPT Prompts for Web Application Security, Bug Bounty, and Pentesting☆38May 18, 2023Updated 2 years ago
- It's an AI Agent that analyzes PDFs (provided locally or via the web) using SenecaLLMs fine-tuned for cybersecurity. It identifies sensit…☆18Feb 12, 2025Updated last year
- ☆10Jul 3, 2021Updated 4 years ago
- Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation (…☆16Sep 20, 2023Updated 2 years ago
- A python based tool for finding SQL vulnerable sites.☆14May 22, 2023Updated 2 years ago
- A Complete SSRF (Server Side Request Forgery) Scanner.☆41Dec 1, 2025Updated 3 months ago
- NordVPN Threat Protection Pro™ • AdTake your cybersecurity to the next level. Block phishing, malware, trackers, and ads. Lightweight app that works with all browsers.
- Collected resources for OSWA preparation.☆26Jan 25, 2023Updated 3 years ago
- A tool to exploit the hash length extension attack in various hashing algorithms☆17Sep 11, 2012Updated 13 years ago
- ResetRyder - Open Source Brute Force Password Reset Tool☆18Mar 10, 2025Updated last year
- Code, exploits, and tips for pentesting osTicket☆13Feb 28, 2025Updated last year
- Tests URLs for Local File Inclusion (LFI), Remote File Inclusion (RFI), SQL injection (SQLi), and Cross Site Scripting (XSS), Server Si…☆79Jan 13, 2026Updated 2 months ago
- WAScan - Web Application Scanner☆19Mar 22, 2018Updated 8 years ago
- Sqli-Scanner is a python3 script written to scan websites for SQL injection vulnerabilities Features 1 Scan one website 2 Scan multiple…☆23Nov 6, 2021Updated 4 years ago
- SQL Injection Vulnerability Scanner for a given URL written in Python☆15Feb 8, 2016Updated 10 years ago
- Query builder for mongo_dart and objectory☆11Jan 26, 2026Updated last month
- Simple, predictable pricing with DigitalOcean hosting • AdAlways know what you'll pay with monthly caps and flat pricing. Enterprise-grade infrastructure trusted by 600k+ customers.
- Get newest public disclosed HackerOne report notifications on your Desktop☆15Jan 29, 2020Updated 6 years ago
- Bug Hunting Handbook☆11Aug 11, 2022Updated 3 years ago
- Bybit API client library for Go (ByBit API connector)☆10Dec 19, 2025Updated 3 months ago
- Go HackerOne API Client☆11May 16, 2024Updated last year
- ☆15May 22, 2023Updated 2 years ago
- Recon tool utilises 58 different techniques using various Google dorks and open source tools to expedite the process of initial reconnais…☆12May 28, 2022Updated 3 years ago
- webpwn3r ======== WebPwn3r - Web Applications Security Scanner. By Ebrahim Hegazy - @Zigoo0 Thanks: @lnxg33k, @dia2diab @Aelhemily, @o…☆28Jan 11, 2019Updated 7 years ago
- A Python based scanner to find potential SSRF parameters in a web application.☆70Jul 12, 2021Updated 4 years ago
- Detect SSRF within Caido☆49Feb 20, 2026Updated last month
- DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- Reddit is tracking every out-going link you click. Even if you are not logged in, every news article, image, or website you visit from R…☆13Aug 6, 2016Updated 9 years ago
- Dart Postgresql database library.☆15Jan 20, 2026Updated 2 months ago
- TLS protocol scanner☆15Sep 27, 2022Updated 3 years ago
- <img src=x onerroralert(1);>☆11Jul 12, 2014Updated 11 years ago
- A curated list of resources, tools, and wordlists for bug bounty hunters.☆19Feb 26, 2026Updated 3 weeks ago
- osint tool user github | ghubscan 1.4☆13Mar 5, 2026Updated 3 weeks ago
- Argument injection vulnerability in PHP☆13Jun 15, 2024Updated last year