This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.
☆94Jul 20, 2023Updated 3 years ago
Alternatives and similar repositories for js-miner
Users that are interested in js-miner are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆12Jun 8, 2022Updated 4 years ago
- Burp extension that performs a passive scan to identify cloud buckets and then test them for publicly accessible vulnerabilities☆14Jan 17, 2023Updated 3 years ago
- ☆19Apr 9, 2024Updated 2 years ago
- MCPwned is a companion extension that enables pentesters to effectively test MCP servers. It recognizes MCP-like endpoints, provies a sca…☆20Jul 3, 2026Updated 2 months ago
- Burp Extension for a passive scanning JS files for endpoint links.☆193Sep 5, 2019Updated 7 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- This is the word list for fuzzing kubernetes.☆15Nov 11, 2023Updated 2 years ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,531Jan 8, 2026Updated 8 months ago
- Burp Suite Extension - Trigger actions and reshape HTTP request and response traffic using configurable rules☆20Nov 29, 2024Updated last year
- Burp Suite extension that enhances Burp Active Scan by adding template engine specific SSTI payloads.☆28Feb 20, 2024Updated 2 years ago
- Hidden parameters discovery suite☆225Nov 14, 2022Updated 3 years ago
- ☆163Mar 23, 2023Updated 3 years ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,592Mar 8, 2026Updated 6 months ago
- Monitor your target continuously for new subdomains!☆25Mar 18, 2023Updated 3 years ago
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!☆2,752Jun 11, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- The Frida Scripts Fetcher & Exploiter tool helps you search and use those scripts to exploit based on the provided search keyword.☆18Aug 5, 2023Updated 3 years ago
- Challenges and solutions for a CTF-style Javascript Virtual Machine reverse engineering research study☆15Jul 16, 2025Updated last year
- Hackable website for teaching/training purposes. Includes my undergraduate thesis.☆14Mar 7, 2018Updated 8 years ago
- ☆126May 8, 2024Updated 2 years ago
- A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidde…☆454Apr 24, 2026Updated 4 months ago
- An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws☆4,079Oct 4, 2025Updated 11 months ago
- ☆17Dec 2, 2021Updated 4 years ago
- A natural evolution of a evolution of Burp Suite's Repeater tool☆17Sep 1, 2026Updated 3 weeks ago
- Hidden parameters discovery suite☆2,097Sep 8, 2024Updated 2 years ago
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- ☆29Nov 4, 2020Updated 5 years ago
- EvenBetterExtensions allows you to quicky install and keep updated Caido extensions.☆23Sep 26, 2024Updated last year
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆31Oct 21, 2025Updated 11 months ago
- Custom Trickest Workflows☆12Oct 26, 2023Updated 2 years ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆878Sep 12, 2026Updated last week
- MetaSec.js combines all the free open-source security tools to identify issues with JavaScript and automates the boring parts☆83Feb 4, 2023Updated 3 years ago
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,933May 22, 2024Updated 2 years ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆3,174Mar 7, 2026Updated 6 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆32Jun 22, 2023Updated 3 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- This repository stores some of my custom BCheck Scan configurations. Its goal is to identify intriguing elements that warrant further man…☆104Feb 9, 2024Updated 2 years ago
- The Template Injection Playground allows to test a large number of the most relevant template engines for template injection possibilitie…☆69Apr 29, 2026Updated 4 months ago
- Bambdas collection for Burp Suite Professional and Community.☆531Jun 16, 2026Updated 3 months ago
- An exploit for Safari 17.4 and lower that enables fingerprinting Safari users using OffscreenCanvas and SharedWorkers even if fingerprint…☆17Sep 1, 2024Updated 2 years ago
- declutters url lists for crawling/pentesting☆1,594Feb 23, 2025Updated last year
- A script to test for subdomain takeovers from a list of domains☆12Feb 18, 2023Updated 3 years ago
- graphw00f is GraphQL Server Engine Fingerprinting utility for software security professionals looking to learn more about what technology…☆902May 16, 2026Updated 4 months ago