MrCl0wnLab / ShellShockHunter
It's a simple tool for test vulnerability shellshock
☆116Updated 4 years ago
Alternatives and similar repositories for ShellShockHunter
Users that are interested in ShellShockHunter are comparing it to the libraries listed below
Sorting:
- The purpose of this script is to automate the web enumeration process and search for exploits☆114Updated 3 years ago
- Simple fork from degoogle original project with bug hunting purposes☆87Updated 2 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆81Updated 2 years ago
- Tool to generate csrf payloads based on vulnerable requests☆64Updated 4 years ago
- IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io☆127Updated 3 years ago
- A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)☆118Updated 2 years ago
- 📚 An ultimate collection wordlists of the best-known CMS☆89Updated 11 months ago
- A burp suite extension that reviews backup, old, temporary and unreferenced files on web server for sensitive information (OWASP WSTG-CON…☆161Updated last year
- A combined wordlists for files and directory discovery☆125Updated 4 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated last year
- Yet another content discovery tool☆119Updated 6 months ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆35Updated 4 years ago
- Prototype Pollution Scanner☆117Updated 4 years ago
- Responser☆53Updated 3 years ago
- DNSrr is a tool written in bash, used to enumerate all the juicy stuff from DNS.☆120Updated 2 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆124Updated last month
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆105Updated 3 years ago
- A reverse whois tool based on Whoxy API.☆166Updated last year
- Host Header Injection Scanner☆46Updated 4 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆97Updated 2 years ago
- ☆55Updated 2 years ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆79Updated 4 years ago
- s3 brute force tool☆44Updated 4 years ago
- ☆49Updated 3 years ago
- All known and unknown public POC's for wordpress themes and plugins☆78Updated 3 years ago
- Pentest: Subdomains enumeration tool for penetration testers.☆157Updated last year
- BBT - Bug Bounty Tools☆50Updated 4 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆92Updated 3 years ago
- Target practice for ffuf☆64Updated 3 years ago