PortSwigger / js-minerLinks
This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.
☆66Updated last year
Alternatives and similar repositories for js-miner
Users that are interested in js-miner are comparing it to the libraries listed below
Sorting:
- Extract JavaScript files from burp suite project with ease.☆89Updated 3 years ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆68Updated 3 months ago
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆77Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆140Updated 11 months ago
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆98Updated last year
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆58Updated 4 months ago
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆58Updated 2 years ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated last year
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆137Updated 8 months ago
- ☆81Updated 8 months ago
- ☆63Updated 2 years ago
- Identify virtual hosts by similarity comparison☆124Updated 9 months ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- IIS shortname scanner + bruteforce☆52Updated last year
- A tool for monitoring bug bounty programs across multiple platforms to track scope changes.☆25Updated 2 weeks ago
- BChecks collection for Burp Suite Professional☆99Updated 11 months ago
- Tool to parse subdomains from dmarc.live☆76Updated last year
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆40Updated last year
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated last year
- A path-normalization pentesting tool.☆127Updated last year
- Finds graphql queries in javascript files☆61Updated last year
- A better way of querying certificate transparency logs☆86Updated 2 months ago
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆94Updated 9 months ago
- Web cache poisoning vulnerability scanner.☆68Updated 3 years ago
- ☆79Updated 2 years ago
- ☆87Updated 3 years ago
- For unpacking base64:ed "Save items"-content from Burp (From search + proxy history)☆50Updated 3 months ago
- JSSCM detects expired domains for Stored XSS exploitation during browsing.☆50Updated 2 months ago
- Make better use of the embedded browser that comes by default with Burp☆43Updated last year