PortSwigger / asset-discoveryLinks
Burp Suite extension to discover assets from HTTP response.
☆16Updated 4 years ago
Alternatives and similar repositories for asset-discovery
Users that are interested in asset-discovery are comparing it to the libraries listed below
Sorting:
- Nmap script to check vulnerability CVE-2021-21975☆27Updated 4 years ago
- Burp extension that checks application requests and responses for indicators of vulnerability or targets for attack☆41Updated 3 years ago
- A simple tool to detect wildcards domain based on Amass's wildcards detector.☆65Updated 4 years ago
- This is the Go Server that relays all HTTP requests and responses between clients.☆28Updated 2 years ago
- Local File Inclusion Burp-Suite Intruder Payload Generator Plugin☆41Updated 5 years ago
- ☆36Updated 11 months ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆77Updated 5 years ago
- RCE for Pega Infinity >= 8.2.1, Pega Infinity <= 8.5.2☆60Updated 4 years ago
- Writeup of CVE-2020-15906☆49Updated 5 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆46Updated 2 years ago
- Image Tragick Exploit Tool Using Burp Collaborator☆35Updated last year
- Messy BurpSuite plugin for SQL Truncation vulnerabilities.☆63Updated 5 years ago
- BurpSuite's payload-generation extension aiming at applying fuzzed test-cases depending on the type of payload (integer, string, path; JS…☆40Updated 4 years ago
- ☆22Updated 3 years ago
- CVE-2020-9484 Mass Scanner, Scan a list of urls for Apache Tomcat deserialization (CVE-2020-9484) which could lead to RCE☆32Updated 5 years ago
- ☆46Updated 4 years ago
- Just a simple SMTP server, implementation of @corpix smtpd library☆15Updated 5 years ago
- A Web-UI for subdomain enumeration (subfinder)☆56Updated 5 years ago
- A Burp Suite extension for headless, unattended scanning.☆36Updated 5 years ago
- Unique wordlist generator of unique wordlists.☆41Updated 2 years ago
- A bash script that automates the scanning of a target network for HTTP resources through XXE☆37Updated 5 years ago
- Spring Boot Actuator (jolokia) XXE/RCE☆23Updated 6 years ago
- Default plugins for Jaeles Scanner☆35Updated 5 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Tool to try multiple paths for PHPunit RCE CVE-2017-9841☆29Updated 4 years ago
- Get all possible href | src | url from target url or domain☆40Updated 5 years ago
- ☆48Updated 4 years ago
- Kubernetes Scanner☆40Updated 3 years ago
- DO NOT RUN THIS.☆47Updated 4 years ago
- JavaScript functions intended to be used as an XSS payload against a WordPress admin account.☆57Updated 5 years ago