PortSwigger / anonymous-cloudLinks
Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities
☆14Updated 2 years ago
Alternatives and similar repositories for anonymous-cloud
Users that are interested in anonymous-cloud are comparing it to the libraries listed below
Sorting:
- Dump all available paths and/or endpoints on WADL file.☆93Updated 3 weeks ago
- a tool that compiles a csv of all h1 program stats☆47Updated last year
- Automated Web Recon Shell Scripts☆51Updated 3 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆92Updated 3 years ago
- 3klector is an automation Recon tool which collecting information about Acquisitions and ASN which related to Big Scope company☆48Updated 2 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆58Updated 3 years ago
- List of Google Dorks for sites that have responsible disclosure program / bug bounty program☆21Updated 5 years ago
- A Python based scanner to find potential SSRF parameters in a web application.☆72Updated 3 years ago
- My Tools For Bug Bounty☆66Updated 9 months ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 4 years ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆68Updated last year
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆113Updated 2 years ago
- Just lists of lists of lists !☆16Updated 2 weeks ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆121Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 3 years ago
- Host Header Injection Scanner☆47Updated 4 years ago
- ☆59Updated 2 years ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆35Updated 4 years ago
- AWS S3 open bucket poc automated script.☆57Updated 3 years ago
- ☆23Updated 3 years ago
- NodeJS script to extract assets for the Apple bug bounty program from their security acknowledgments page for bug bounty recon.☆78Updated 2 years ago
- Host Header Injection Checker☆81Updated 3 years ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆99Updated 3 years ago
- Find subdomains and takeovers.☆85Updated 2 years ago
- A collection of simple tools and poc-builders☆39Updated 2 months ago
- The objective of this Burp Suite extension is the flexible and dynamic extraction, correlation, and structured presentation of informatio…☆58Updated 2 years ago
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- ☆20Updated 5 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Alternative to XSS Hunter for blind XSS.☆51Updated 2 years ago