MrCl0wnLab / ShellShockHunter
It's a simple tool for test vulnerability shellshock
☆114Updated 3 years ago
Alternatives and similar repositories for ShellShockHunter:
Users that are interested in ShellShockHunter are comparing it to the libraries listed below
- Small tool to automate SSRF wordpress and XMLRPC finder☆80Updated 2 years ago
- IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io☆121Updated 2 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆60Updated last year
- Host Header Injection Scanner☆44Updated 4 years ago
- A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)☆118Updated 2 years ago
- A combined wordlists for files and directory discovery☆117Updated 3 years ago
- The purpose of this script is to automate the web enumeration process and search for exploits☆114Updated 2 years ago
- Simple fork from degoogle original project with bug hunting purposes☆88Updated 2 years ago
- DNSrr is a tool written in bash, used to enumerate all the juicy stuff from DNS.☆119Updated 2 years ago
- Responser☆54Updated 2 years ago
- Tool to generate csrf payloads based on vulnerable requests☆62Updated 4 years ago
- ☆28Updated 7 months ago
- ☆74Updated 8 months ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- ☆49Updated 2 years ago
- Customisable and automated HTTP header injection☆241Updated 6 months ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆36Updated 4 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆85Updated 7 months ago
- Dotmil subdomain discovery tool that scrapes domains from official DoD website directories and certificate transparency logs☆95Updated 3 years ago
- Simple Python Script For Performing XMLRPC Dictionary Attack☆129Updated 4 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆78Updated 4 years ago
- A Simple Tool to Pull Paid Bounty Scopes for Wide Recon Actvities☆102Updated 3 years ago
- Detects the algorithm of input JWT Token and provide options to generate the new JWT token based on the user selected algorithm.☆100Updated last year
- A reverse whois tool based on Whoxy API.☆161Updated 9 months ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 3 years ago
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- Enumerate Subdomains Through Google Dorks☆123Updated 3 years ago
- A Fast Broken Link Hijacker Tool written in Python☆99Updated 9 months ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆103Updated 2 years ago
- xss vulnerability scanner and input fuzzing tool.☆61Updated last year