Small script to check a list of domains against open redirect vulnerability
☆30Jan 22, 2022Updated 4 years ago
Alternatives and similar repositories for dom-red
Users that are interested in dom-red are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆16May 3, 2021Updated 5 years ago
- Detect, manage and exploit Blind Cross-site scripting (XSS) vulnerabilities.☆39Jan 20, 2023Updated 3 years ago
- Finds Directory Listings or open S3 buckets from a list of URLs☆52Dec 1, 2021Updated 4 years ago
- take a list of resolved subdomains and output any corresponding CNAMES en masse.☆18Jan 29, 2026Updated 5 months ago
- A simple python script which can check HTTP status of branch of URLs/Subdomains and grab URLs/Subdomain title☆12Oct 16, 2019Updated 6 years ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- ☆32Apr 6, 2021Updated 5 years ago
- A Tool to Extract Open Kibana Instances on Internet and Map them to their Corresponding Organizations for Bug Bounty.☆16Sep 7, 2019Updated 6 years ago
- Extract parameters/paths from urls☆17Aug 2, 2020Updated 5 years ago
- Python script to give you subsets of the nmap "top-ports". For example, I want the 10th to 100th most common TCP ports. Spits out a comma…☆18Mar 8, 2020Updated 6 years ago
- GraphQL automatic fuzzing tool☆16Jul 16, 2021Updated 5 years ago
- misc scripts/utils that I've written that aren't deserving of own repos.☆14Aug 18, 2021Updated 4 years ago
- #BugBounty #BugBounty Tools #WebDeveloper Tool☆38May 17, 2025Updated last year
- ☆27Mar 5, 2023Updated 3 years ago
- My Tools For Bug Bounty☆70Sep 23, 2024Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Fuzzing for LFI using Burpsuite☆69Oct 4, 2016Updated 9 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆48Jan 11, 2023Updated 3 years ago
- RAS(RAndom Subdomain) Fuzzer☆43Jan 22, 2020Updated 6 years ago
- S3 bucket finder from html,js and bucket misconfiguration testing tool☆34Feb 10, 2020Updated 6 years ago
- CRLF and open redirect fuzzer☆113Aug 31, 2021Updated 4 years ago
- All about subdomain enumeration☆16Feb 5, 2019Updated 7 years ago
- The format of various s3 buckets is convert in one format. for bugbounty and security testing.☆90May 6, 2023Updated 3 years ago
- Chrome extension that finds DOM based XSS vulnerabilities☆75Jun 3, 2025Updated last year
- ☆10Jan 25, 2023Updated 3 years ago
- End-to-end encrypted email - Proton Mail • AdSpecial offer: 40% Off Yearly / 80% Off First Month. All Proton services are open source and independently audited for security.
- Takeover script extracts CNAME record of all subdomains at once. TakeOver saves researcher time and increase the chance of finding subdom…☆101Apr 7, 2023Updated 3 years ago
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl and Filter Urls With OpenRedirection or SS…☆175Nov 11, 2020Updated 5 years ago
- <img src=x onerroralert(1);>☆11Jul 12, 2014Updated 12 years ago
- DigiNinja's bucket_finder utility☆17Aug 30, 2016Updated 9 years ago
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆65Apr 17, 2020Updated 6 years ago
- Test domain expiration dates.☆12Dec 2, 2022Updated 3 years ago
- Critical Remote Code Execution Vulnerability (CVE-2018-11776) Found in Apache Struts.☆16Jul 30, 2020Updated 5 years ago
- Morgan is a powerful tool designed to help security researchers, developers, and security auditors identify sensitive information, vulner…☆57Feb 2, 2025Updated last year
- This tests a list of s3 buckets to see if they have dir listings enabled or if they are uploadable☆54Dec 10, 2025Updated 7 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆124May 12, 2026Updated 2 months ago
- sshchecker is a fast dedicated ssh brute-forcing tool to check ssh login on the giving IP list.☆23Feb 8, 2026Updated 5 months ago
- simple code directory brute☆17Feb 26, 2021Updated 5 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Dec 11, 2020Updated 5 years ago
- Chrome DevTools HTTP workbench with built-in AI.☆19Dec 9, 2025Updated 7 months ago
- Endpoint monitor tool☆21Sep 16, 2020Updated 5 years ago
- Open Redirection Analyzer☆818Mar 5, 2023Updated 3 years ago