LewisArdern / bXSS
bXSS is a utility which can be used by bug hunters and organizations to identify Blind Cross-Site Scripting.
☆527Updated last year
Alternatives and similar repositories for bXSS:
Users that are interested in bXSS are comparing it to the libraries listed below
- Wordlists that have been compiled using Commonspeak2. This repo is updated every time new wordlists are generated.☆525Updated 6 years ago
- Content discovery wordlists generated using BigQuery☆564Updated 4 years ago
- Automated security reporting from markdown templates (HackerOne and Bugcrowd are currently the platforms supported)☆451Updated 5 years ago
- Subdomain Takeover Scanner | Subdomain Takeover Tool | by 0x94☆358Updated last year
- SSRF testing tool☆245Updated 2 years ago
- A small tool that extracts relative URLs from a file.☆744Updated 4 years ago
- ☆805Updated last year
- An automated approach to performing recon for bug bounty hunting and penetration testing.☆440Updated 4 years ago
- A simple SSRF-testing sheriff written in Go☆324Updated 4 months ago
- Generates lists of live hosts and URLs for targeting, automating the usage of MassDNS, Masscan and nmap to filter out unreachable hosts a…☆364Updated 2 years ago
- A Powerful Subdomain Takeover Tool☆938Updated last year
- Multiprocessing(Parallel)Subdomain Detect Script☆333Updated last year
- A simple variable based template editor using handlebarjs+strapdownjs. The idea is to use variables in markdown based files to easily rep…☆253Updated last year
- ☆549Updated last year
- Simple shell script for automated domain recognition with some tools☆299Updated 4 years ago
- a .js scanner, built in php. designed to scrape urls and other info☆212Updated 7 years ago
- BFAC (Backup File Artifacts Checker): An automated tool that checks for backup artifacts that may disclose the web-application's source c…☆545Updated 2 years ago
- A script to enumerate virtual hosts on a server.☆677Updated 7 years ago
- ☆423Updated 2 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆300Updated 2 years ago
- ☆360Updated 3 years ago
- Yet another subdomain finder☆202Updated 5 years ago
- This repository contains all the supplement material for the book "The art of sub-domain enumeration"☆642Updated 6 years ago
- Multi Tool Subdomain Enumeration☆725Updated 3 years ago
- The Serverless Blind XSS App☆339Updated 3 weeks ago
- Automatic tool for DNS rebinding-based SSRF attacks☆297Updated 4 years ago
- Pathbrute☆448Updated 4 years ago
- Leverages publicly available datasets from Google BigQuery to generate content discovery and subdomain wordlists☆713Updated 2 years ago
- Find AWS S3 buckets and test their permissions.☆376Updated last year
- A tool to link a domain with registered organisation names and emails, to other domains.☆836Updated 9 months ago