GangGreenTemperTatum / DOMspyLinks
A web security research tool for DOM testing
☆24Updated this week
Alternatives and similar repositories for DOMspy
Users that are interested in DOMspy are comparing it to the libraries listed below
Sorting:
- Create your own recon & vulnerability scanner with Trickest and GitHub☆48Updated 2 years ago
- ServiceNow widge-simple-list misconfiguration scanner☆65Updated 2 years ago
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆61Updated 2 years ago
- Additional active scan checks for BURP☆28Updated last year
- Archived Please go to https://github.com/adamjsturge/xsshunter-go☆31Updated last year
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆42Updated 2 years ago
- Repro for Confusion Attacks: Exploiting Hidden Semantic Ambiguity in Apache HTTP Server!☆20Updated last year
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆59Updated 3 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆52Updated 3 years ago
- Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications☆33Updated 3 years ago
- Deploy a SOCKS5 proxy in DigitalOcean and autoconfigure the Burp proxy settings to route all traffic through the droplet☆57Updated last year
- WhereToGo - is a list of popular services that might be used in organizations. By having an account of the user - you can try to find ent…☆128Updated 3 years ago
- ☆58Updated last year
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆80Updated 2 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆54Updated 10 months ago
- A set of open-source community scripts☆65Updated last year
- vīlicus is a bug bounty api dashboard☆41Updated 2 years ago
- A solid recon tool I use personally.☆30Updated 2 years ago
- Prototype of Full Agentic Application Security Testing, FAAST = SAST + DAST + LLM agents☆67Updated 8 months ago
- yataf extracts secrets and paths from files or urls - its best used against javascript files☆52Updated last year
- ☆64Updated 2 years ago
- Help recon of hostnames from specific ASN or CIDR, thanks to Robtex and BGP.HE☆54Updated last year
- IIS shortname scanner + bruteforce☆54Updated last year
- ai-based domain name generation☆100Updated 11 months ago
- Make better use of the embedded browser that comes by default with Burp☆44Updated 2 years ago
- This Chromium extension scans the page for external iFrames, Scripts, and Styles, logs them to the console, and checks if their domains a…☆67Updated this week
- Adobe Experience Manager (AEM) hacking toolkit☆101Updated 3 months ago
- ☆42Updated 2 months ago
- Multi-cloud OSINT tool. Enumerate public resources in AWS, Azure, and Google Cloud.☆17Updated 6 months ago
- Finds graphql queries in javascript files☆69Updated last year