The IDOR IN works by systematically scanning a target web application and examining various endpoints, parameters, and data access points to identify potential IDOR vulnerabilities. It leverages techniques such as parameter fuzzing, payload injection, and response analysis to detect signs of insecure direct object references.
☆27Jun 25, 2023Updated 3 years ago
Alternatives and similar repositories for IDOR-IN
Users that are interested in IDOR-IN are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- An interactive bash script for detecting IDOR vulnerabilities. Automates the discovery of access control issues in web applications, enha…☆15Apr 10, 2025Updated last year
- ✅ Experience the power of an automated Insecure Direct Object Reference (IDOR) vulnerability detection tool. Safeguard your applications …☆73Mar 9, 2025Updated last year
- A tool that automates the search for IDOR vulnerabilities in web apps and APIs☆65Jan 18, 2021Updated 5 years ago
- Methodoloy for pentesting web applications.☆10Aug 18, 2022Updated 3 years ago
- Describe how to use ffuf different options with examples☆14Jun 13, 2022Updated 4 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- SSRFHunter☆18Jan 17, 2026Updated 6 months ago
- ☆19Aug 26, 2020Updated 5 years ago
- Python client for the Open eXecution Protocol (OXP)☆17May 16, 2025Updated last year
- Extended Static Analysis Tool for Analyzing Android APK Files.☆15Jan 3, 2024Updated 2 years ago
- Automated Redemption Manager (ARM) for Origin ETH (OETH)☆15Updated this week
- Specific C2 Detection Tool Written To Detect C2 Servers From RisePro Stealer Malware.☆14Nov 10, 2023Updated 2 years ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆238Sep 25, 2025Updated 10 months ago
- ⚡ Golang library for quick make pentest tools☆16Apr 7, 2025Updated last year
- ☆12Apr 21, 2020Updated 6 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- discord-bot A powerful discord bot with a ton of commands. It can also act as a Music bot & supports Slash Commands☆11May 21, 2023Updated 3 years ago
- the bear is an infostealer (grabber) malware written in C and assembly with the focus on evading detection.☆18Sep 8, 2024Updated last year
- BurpSuite Extension for performing scan via CLI.☆15Dec 5, 2017Updated 8 years ago
- The DNS Security Analysis Tool is a Python-based utility designed to conduct an in-depth security analysis of DNS configurations for mult…☆19Oct 18, 2024Updated last year
- This tool provides detailed analysis of changes between iOS firmware versions and their potential impact on device functionality.☆16Nov 4, 2024Updated last year
- ☆10Jul 3, 2021Updated 5 years ago
- The first Google Meet hacks, made by ZackiBoiz!☆12Mar 23, 2025Updated last year
- Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation (…☆16Sep 20, 2023Updated 2 years ago
- Set up your GitHub Actions workflow with a specific Genymotion Cloud SaaS☆22Oct 30, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A Complete SSRF (Server Side Request Forgery) Scanner.☆40Updated this week
- Several scripts are based on the Netlas.io search engine. They will allow you to carry out the reconnaissance phase before the pen test i…☆51May 22, 2025Updated last year
- A tool to exploit the hash length extension attack in various hashing algorithms☆17Sep 11, 2012Updated 13 years ago
- A high-performance domain scanner that discovers active domains by testing multiple Top-Level Domains (TLDs) for given domain names.☆35Apr 20, 2026Updated 3 months ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆26May 26, 2020Updated 6 years ago
- ResetRyder - Open Source Brute Force Password Reset Tool☆18Mar 10, 2025Updated last year
- Tests URLs for Local File Inclusion (LFI), Remote File Inclusion (RFI), SQL injection (SQLi), and Cross Site Scripting (XSS), Server Si…☆78Jan 13, 2026Updated 6 months ago
- electribe2 allpat/zip converter☆14Feb 7, 2023Updated 3 years ago
- WAScan - Web Application Scanner☆20Mar 22, 2018Updated 8 years ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- ☆14Mar 16, 2024Updated 2 years ago
- Free Online Certifications in CyberSecurity☆25Sep 29, 2020Updated 5 years ago
- SQL Injection Vulnerability Scanner for a given URL written in Python☆16Feb 8, 2016Updated 10 years ago
- Sqli-Scanner is a python3 script written to scan websites for SQL injection vulnerabilities Features 1 Scan one website 2 Scan multiple…☆22Nov 6, 2021Updated 4 years ago
- a ZAPROXY Addon ActiveScan for detecting SQL injection with more better way.☆19Jun 7, 2026Updated last month
- mirror☆15May 20, 2023Updated 3 years ago
- A simple HAR-based JavaScript recon automation kit for organizing JS files, endpoints, secrets, and gf-filtered attack surface during bug…☆18May 20, 2026Updated 2 months ago