MindPatch / lorsrf
Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load
☆293Updated 7 months ago
Alternatives and similar repositories for lorsrf:
Users that are interested in lorsrf are comparing it to the libraries listed below
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- Customisable and automated HTTP header injection☆245Updated 10 months ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- Nuclei templates written by us.☆270Updated 3 years ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆273Updated 9 months ago
- Bug Bounty stuffs, payloads, scripts, profiles, tips and tricks, ...☆147Updated 4 years ago
- Secret and/or credential patterns used for gf.☆241Updated 2 years ago
- ☆293Updated 2 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆123Updated last month
- Full Nuclei automation script with logic explanation.☆243Updated 3 years ago
- Burpsuite plugin for Interact.sh☆220Updated 10 months ago
- Build your own reconnaissance system with Osmedeus Next Generation☆188Updated last week
- Nuclei Templates - Here you will find the templates I use while hunting☆117Updated 3 years ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆177Updated 4 years ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆270Updated last year
- A reverse whois tool based on Whoxy API.☆166Updated last year
- Hidden parameters discovery suite☆223Updated 2 years ago
- ☆154Updated 2 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆238Updated 3 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆180Updated 3 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- Make URL path combinations using a wordlist☆174Updated last year
- Gotator is a tool to generate DNS wordlists through permutations.☆477Updated 2 years ago
- Pass in a list of URLs with query strings, get back a unique list of URLs and query string combinations☆361Updated 4 years ago
- ☆158Updated last year
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Automated tool for domains & subdomains gathering☆186Updated last year
- A blind XSS detection and XSS data capture framework☆169Updated last week