The IDOR IN works by systematically scanning a target web application and examining various endpoints, parameters, and data access points to identify potential IDOR vulnerabilities. It leverages techniques such as parameter fuzzing, payload injection, and response analysis to detect signs of insecure direct object references.
☆27Jun 25, 2023Updated 3 years ago
Alternatives and similar repositories for IDOR-IN
Users that are interested in IDOR-IN are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Differential access-control testing for IDOR/BOLA - drives multiple identities at the same objects and proves when one can read another's…☆14Updated this week
- ✅ Experience the power of an automated Insecure Direct Object Reference (IDOR) vulnerability detection tool. Safeguard your applications …☆71Sep 4, 2026Updated 3 weeks ago
- AI-based Web Application Penetration Testing Tool☆26Jan 19, 2024Updated 2 years ago
- Methodoloy for pentesting web applications.☆10Aug 18, 2022Updated 4 years ago
- Describe how to use ffuf different options with examples☆14Jun 13, 2022Updated 4 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- SSRFHunter☆18Jan 17, 2026Updated 8 months ago
- Python client for the Open eXecution Protocol (OXP)☆18May 16, 2025Updated last year
- A list of ChatGPT Prompts for Web Application Security, Bug Bounty, and Pentesting☆40May 18, 2023Updated 3 years ago
- Automated Redemption Manager (ARM) for Origin ETH (OETH)☆15Updated this week
- ⚡ Golang library for quick make pentest tools☆16Apr 7, 2025Updated last year
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆237Sep 25, 2025Updated last year
- ☆10Jul 3, 2021Updated 5 years ago
- Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation (…☆16Sep 20, 2023Updated 3 years ago
- Set up your GitHub Actions workflow with a specific Genymotion Cloud SaaS☆25Oct 30, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- XSS scanning with Dalfox on Github-action☆26Nov 26, 2023Updated 2 years ago
- A Complete SSRF (Server Side Request Forgery) Scanner.☆39Jul 20, 2026Updated 2 months ago
- Several scripts are based on the Netlas.io search engine. They will allow you to carry out the reconnaissance phase before the pen test i…☆52May 22, 2025Updated last year
- # zVirus Gen [](https://github.com/STARK-GO…☆11Jul 22, 2021Updated 5 years ago
- Laravel PHP framework black-box vulnerability scanner☆42Sep 3, 2024Updated 2 years ago
- A tool to exploit the hash length extension attack in various hashing algorithms☆17Sep 11, 2012Updated 14 years ago
- Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip☆26May 26, 2020Updated 6 years ago
- ResetRyder - Open Source Brute Force Password Reset Tool☆19Mar 10, 2025Updated last year
- Tests URLs for Local File Inclusion (LFI), Remote File Inclusion (RFI), SQL injection (SQLi), and Cross Site Scripting (XSS), Server Si…☆78Jan 13, 2026Updated 8 months ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- ☆40Nov 6, 2025Updated 10 months ago
- SQL Injection Vulnerability Scanner for a given URL written in Python☆16Feb 8, 2016Updated 10 years ago
- Sqli-Scanner is a python3 script written to scan websites for SQL injection vulnerabilities Features 1 Scan one website 2 Scan multiple…☆22Nov 6, 2021Updated 4 years ago
- a ZAPROXY Addon ActiveScan for detecting SQL injection with more better way.☆19Jun 7, 2026Updated 3 months ago
- CVE-2026-67276 RouterOS SSH public-key authentication bypass lab PoC☆92Sep 6, 2026Updated 3 weeks ago
- Easily take advantage of multi-core systems for Featherjs.☆16Feb 16, 2014Updated 12 years ago
- BugBounty Tool☆40Sep 17, 2019Updated 7 years ago
- Reflected XSS Payload List for Vue.js (2 & 3)☆16Jan 12, 2023Updated 3 years ago
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆18May 21, 2024Updated 2 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- A fork of https://github.com/Rikj000/Magisk-Manager-for-Recovery-Mode and https://github.com/Magisk-Modules-Repo/mm that enables the scri…☆20May 11, 2024Updated 2 years ago
- Query builder for mongo_dart and objectory☆11Jan 26, 2026Updated 8 months ago
- It's an AI Agent that analyzes PDFs (provided locally or via the web) using SenecaLLMs fine-tuned for cybersecurity. It identifies sensit…☆24Feb 12, 2025Updated last year
- ☆15May 11, 2023Updated 3 years ago
- ☆15Mar 10, 2026Updated 6 months ago
- webpwn3r ======== WebPwn3r - Web Applications Security Scanner. By Ebrahim Hegazy - @Zigoo0 Thanks: @lnxg33k, @dia2diab @Aelhemily, @o…☆28Jan 11, 2019Updated 7 years ago
- TDCCGen Free Credit Card Generator Termux☆21Mar 21, 2021Updated 5 years ago