PortSwigger / js-minerLinks
This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.
☆75Updated 2 years ago
Alternatives and similar repositories for js-miner
Users that are interested in js-miner are comparing it to the libraries listed below
Sorting:
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆102Updated last year
- Extract JavaScript files from burp suite project with ease.☆95Updated 3 years ago
- BChecks collection for Burp Suite Professional☆101Updated last year
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆79Updated last year
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆140Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- Identify virtual hosts by similarity comparison☆129Updated last year
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆140Updated 2 years ago
- A path-normalization pentesting tool.☆132Updated last week
- ☆135Updated 10 months ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆63Updated 2 years ago
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆96Updated last year
- A Burp Suite Extension for Application Penetration Testing to map flows and vulnerabilities☆120Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆150Updated last year
- ☆32Updated last year
- Unsecure time-based secret exploitation and Sandwich attack implementation Resources☆148Updated 9 months ago
- This extension adds a search bar to the Repeater tab that can be used to highlight all repeater tabs where the request and/or response ma…☆79Updated last year
- Prototype Pollution Scanner☆127Updated 4 years ago
- A tool that automates the search for IDOR vulnerabilities in web apps and APIs☆58Updated 4 years ago
- Burpsuite plugin for Interact.sh☆227Updated last year
- ☆82Updated 3 years ago
- Find subdomains on GitLab.☆103Updated last year
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆73Updated 3 months ago
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆144Updated last year
- Directory scans☆83Updated last year
- ☆165Updated 2 years ago
- JSSCM detects expired domains for Stored XSS exploitation during browsing.☆50Updated 6 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆120Updated 2 years ago
- Save your dorking results to the terminal. A modified version of TomNomNom's amazing tool!☆91Updated 7 months ago
- ☆157Updated 3 years ago