M4DM0e / DirDar
DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it
☆445Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for DirDar
- Customisable and automated HTTP header injection☆237Updated 4 months ago
- Gotator is a tool to generate DNS wordlists through permutations.☆457Updated 2 years ago
- A tool to check a bunch of URLs that contain reflecting params.☆536Updated 3 months ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆496Updated 2 years ago
- HTTP Request Smuggling Detection Tool☆472Updated 11 months ago
- ☆286Updated 2 years ago
- A fuzzer for detecting open redirect vulnerabilities☆712Updated 4 months ago
- This a adaption of tomnomnom's kxss tool with a different output format☆426Updated last year
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆338Updated 4 years ago
- Automating XSS using Bash☆350Updated 7 months ago
- XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|ID…☆329Updated last year
- Accept URLs on stdin, replace all query string values with a user-supplied value☆767Updated last year
- Nuclei templates written by us.☆266Updated 3 years ago
- Fetches javascript file from a list of URLS or subdomains.☆739Updated last year
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆378Updated last year
- Small tool to Grab subdomains using Shodan api.☆362Updated 3 weeks ago
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆876Updated 5 months ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆265Updated 4 months ago
- Takes a list of URLs and returns their HTTP response codes☆391Updated last year
- A fast and minimal JS endpoint extractor☆326Updated last week
- Useful "Match and Replace" burpsuite rules☆338Updated last year
- ☆181Updated last year
- ☆223Updated 5 months ago
- This is go CLI tool for send fast Multiple get HTTP request.☆262Updated last year
- Golang client for querying SecurityTrails API data☆539Updated last year
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters and…☆778Updated last year
- Automated learning of regexes for DNS discovery☆358Updated last year
- Automatically install some web hacking/bug bounty tools.☆360Updated 9 months ago
- This repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contai…☆496Updated 8 months ago
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆428Updated 2 years ago