M4DM0e / DirDar
DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it
☆445Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for DirDar
- Gotator is a tool to generate DNS wordlists through permutations.☆453Updated 2 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆493Updated 2 years ago
- Customisable and automated HTTP header injection☆237Updated 4 months ago
- A tool to check a bunch of URLs that contain reflecting params.☆532Updated 3 months ago
- A fuzzer for detecting open redirect vulnerabilities☆709Updated 4 months ago
- ☆285Updated 2 years ago
- This a adaption of tomnomnom's kxss tool with a different output format☆422Updated last year
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆875Updated 4 months ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆337Updated 4 years ago
- Small tool to Grab subdomains using Shodan api.☆357Updated last week
- Accept URLs on stdin, replace all query string values with a user-supplied value☆764Updated last year
- Automating XSS using Bash☆349Updated 7 months ago
- HTTP Request Smuggling Detection Tool☆471Updated 10 months ago
- Takes a list of URLs and returns their HTTP response codes☆390Updated last year
- Fetches javascript file from a list of URLS or subdomains.☆738Updated last year
- XRCross is a Reconstruction, Scanner, and a tool for penetration / BugBounty testing. This tool was built to test (XSS|SSRF|CORS|SSTI|ID…☆329Updated last year
- ☆223Updated 4 months ago
- Useful "Match and Replace" burpsuite rules☆335Updated last year
- Automation for javascript recon in bug bounty.☆897Updated last year
- Smart context-based SSRF vulnerability scanner.☆347Updated 2 years ago
- Automatically install some web hacking/bug bounty tools.☆360Updated 8 months ago
- This is go CLI tool for send fast Multiple get HTTP request.☆262Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆50Updated 6 months ago
- ☆313Updated last month
- This repository contains wordlists for each versions of common web applications and content management systems (CMS). Each version contai…☆495Updated 7 months ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆378Updated last year
- declutters url lists for crawling/pentesting☆1,178Updated last week
- A fast and minimal JS endpoint extractor☆323Updated 9 months ago
- Turns any junk text into a usable wordlist for brute-forcing.☆217Updated 7 months ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆289Updated last month