The Attack Surface Detector uses static code analyses to identify web app endpoints by parsing routes and identifying parameters
☆14Feb 10, 2022Updated 4 years ago
Alternatives and similar repositories for attack-surface-detector
Users that are interested in attack-surface-detector are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A collection of enhancements for Portswigger's popular Burp Suite web penetration testing tool.☆25Mar 11, 2024Updated 2 years ago
- This mod is used for duplication exploit in Minecraft.☆12Oct 8, 2024Updated last year
- This extension provides a way to discover NoSQL injection vulnerabilities.☆11Feb 1, 2021Updated 5 years ago
- Interrogate your GitHub resources with the help of the world's greatest detectives: Powerpipe + Steampipe + Sherlock.☆41Mar 25, 2026Updated 3 months ago
- Easily write tests and fuzz many different programs.☆12Dec 13, 2022Updated 3 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Clickjacking PoC Generator☆36Oct 1, 2020Updated 5 years ago
- CSRF Scanner Extension for Burp Suite Pro☆21Feb 4, 2022Updated 4 years ago
- This contains the contents needed to deploy a home lab in VirtualBox.☆18Jul 6, 2020Updated 6 years ago
- Burp Suite extension to passively scan for applications revealing server error messages☆16Aug 15, 2023Updated 2 years ago
- (Unofficial) Ruby wrapper for the Bugcrowd HTTP API☆14Feb 27, 2017Updated 9 years ago
- a simple powershell wrapper to automate checking a user's access around the network☆14Dec 5, 2023Updated 2 years ago
- Terraform to run Scoutsuite security scan of projects within a Google Cloud Org. Report will be published to a GCS bucket.☆17Jan 5, 2026Updated 6 months ago
- Given a list of domains and known IP and buckets that are owned, which might be susceptible to domain hijacking?☆16Sep 20, 2024Updated last year
- ☆28Jan 31, 2025Updated last year
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automated GKE Kubelet Impersonation and Cluster Secret Stealer via kube-env☆102Sep 10, 2019Updated 6 years ago
- 12-week Geekwise course on web application security and hardening.☆17Mar 19, 2020Updated 6 years ago
- This is a burp intruder extender that is designed for automation and validation of XSS vulnerabilities.☆94Feb 10, 2022Updated 4 years ago
- Designed for automated enumeration for ethical hacking and penetration testing☆11Jan 17, 2018Updated 8 years ago
- S3 Buckets that will let you list all files inside them☆14Apr 26, 2018Updated 8 years ago
- 图形化Acunetix批量扫描工具☆24Dec 8, 2022Updated 3 years ago
- A plugin that provides resources for beginners to learn reverse engineering using Binary Ninja. It automatically installs several other p…☆26Aug 22, 2017Updated 8 years ago
- Repository of Volatility3 plugins☆23Mar 22, 2023Updated 3 years ago
- An Erlang library wrapping AES-GCM (AEAD) crypto in a Fernet-like interface☆29Jan 22, 2021Updated 5 years ago
- GPUs on demand by Runpod - Special Offer Available • AdRun AI, ML, and HPC workloads on powerful cloud GPUs—without limits or wasted spend. Deploy GPUs in under a minute and pay by the second.
- Wmap ("Web Mapper") Information gathering for web hacking.☆14Dec 3, 2014Updated 11 years ago
- A comprehensive and hands-on workbook designed to sharpen your Active Directory penetration testing skills. Whether you're a red teamer, …☆16Feb 11, 2026Updated 5 months ago
- OAuth 2.0 exploitation, attack and research tools.☆13Jan 20, 2024Updated 2 years ago
- A reimagined and enhanced Minecraft utility mod inspired by TrouserStreak, built from the ground up for anarchy servers and advanced game…☆35Mar 7, 2026Updated 4 months ago
- Documentation and Support for AttackForge ReportGen☆22Jul 26, 2025Updated 11 months ago
- Web弱密码爆破工具, 驱动浏览器进行弱密码爆破, 支持所有Web系统. 协程练手项目☆41Nov 14, 2022Updated 3 years ago
- Report and finding templates used by the Serpico reporting tool☆16Sep 26, 2018Updated 7 years ago
- Simple python wrapper for the Robtex API (see https://www.robtex.com/api/).☆13Apr 17, 2021Updated 5 years ago
- A brief list of all the red teaming scenarios that can be easily used to validate your current company infrastructure. Scenarios are comp …☆18Jul 26, 2024Updated last year
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- chut is a simple command line executable to mute, decrease/increase system volume (Mac OS X)☆16Jun 29, 2022Updated 4 years ago
- ☆16Apr 16, 2015Updated 11 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆80Mar 23, 2020Updated 6 years ago
- Writeup of CVE-2017-1002101 with sample "exploit"/escape☆35Mar 23, 2018Updated 8 years ago
- Burp Bounty is a extension of Burp Suite that improve an active and passive scanner by yourself. This extension requires Burp Suite Pro.☆73Feb 4, 2022Updated 4 years ago
- Collection of scanner checks missing in Burp☆32Jun 15, 2020Updated 6 years ago
- Check read, write permissions on S3 buckets in your account☆21Jun 20, 2019Updated 7 years ago