In3tinct / See-SURF
Python based scanner to find potential SSRF parameters
☆283Updated 7 months ago
Related projects ⓘ
Alternatives and complementary repositories for See-SURF
- Smart ssrf scanner using different methods like parameter brute forcing in post and get...☆274Updated 3 years ago
- ☆143Updated 2 years ago
- Toolkit to detect and keep track on Blind XSS, XXE & SSRF☆295Updated 5 years ago
- Command line tool for testing CRLF injection on a list of domains.☆159Updated 7 months ago
- Burp Extension written in Jython to hunt for common vulnerabilities found in websites. Developed by Gaurav Narwani to help people find vu…☆234Updated 4 years ago
- SSRF testing tool☆241Updated last year
- Default signature for Jaeles Scanner☆319Updated 2 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SS…☆166Updated 4 years ago
- Trying to make automated recon for bug bounties☆250Updated 3 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆296Updated last year
- File Inclusion & Directory Traversal fuzzing, enumeration & exploitation tool.☆266Updated 3 years ago
- Bugbounty scope tool☆318Updated last month
- You can read the writeup on this script here☆191Updated 3 years ago
- Various Payload wordlists☆235Updated 4 years ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- You can read the writeup on this script here☆267Updated 4 years ago
- Generates lists of live hosts and URLs for targeting, automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts a…☆364Updated 2 years ago
- CRLF and open redirect fuzzer☆109Updated 3 years ago
- Python library and CLI for the Bug Bounty Recon API☆220Updated 3 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆201Updated last year
- Bucky (An automatic S3 bucket discovery tool)☆190Updated 2 years ago
- Simple shell script for automated domain recognition with some tools☆300Updated 4 years ago
- this contain the burp pack☆204Updated 7 years ago
- Automated blind-xss search for Burp Suite☆277Updated 5 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆252Updated 2 years ago
- Reconnaissance tool which scans javascript files for subdomains and then iterates over all javascript files hosted on subsequent subdomai…☆221Updated 4 years ago
- Turbo Intruder Scripts☆215Updated 4 years ago
- ☆235Updated 6 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆150Updated last year