Puliczek / awesome-list-of-secrets-in-environment-variablesLinks
🦄🔒 Awesome list of secrets in environment variables 🖥️
☆898Updated 3 years ago
Alternatives and similar repositories for awesome-list-of-secrets-in-environment-variables
Users that are interested in awesome-list-of-secrets-in-environment-variables are comparing it to the libraries listed below
Sorting:
- Awesome list of step by step techniques to achieve Remote Code Execution on various apps!☆1,927Updated 2 years ago
- ☆1,192Updated 3 years ago
- ☆1,008Updated 3 years ago
- Awesome cloud enumerator☆1,054Updated 7 months ago
- Golden Guide☆505Updated 3 months ago
- bypass-url-parser☆1,097Updated last week
- 🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.☆934Updated 9 months ago
- A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.☆912Updated 6 months ago
- Reverse proxies cheatsheet☆1,852Updated last year
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hac…☆1,020Updated 2 months ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆997Updated last year
- List of regex for scraping secret API keys and juicy information.☆717Updated 3 years ago
- Bugbounty Resources☆541Updated 2 years ago
- Identify privilege escalation paths within and across different clouds☆705Updated this week
- ☆408Updated 4 years ago
- Tool to check for dependency confusion vulnerabilities in multiple package management systems☆764Updated last year
- "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,061Updated 8 months ago
- ☆757Updated last year
- PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.☆1,228Updated last year
- My cheatsheet notes to pentest AWS infrastructure☆691Updated 3 years ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆715Updated 2 years ago
- API Security Project aims to present unique attack & defense methods in API Security field☆1,420Updated last year
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆963Updated 3 years ago
- Payload Arsenal for Pentration Tester and Bug Bounty Hunters☆914Updated 2 years ago
- A fully automated, reliable, super-fast, scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆398Updated 10 months ago
- Twitter vulnerable snippets☆1,074Updated 7 months ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆981Updated this week
- HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆757Updated 3 years ago
- Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.☆1,355Updated last week
- A pentest reporting tool written in Python. Free yourself from Microsoft Word.☆1,435Updated 7 months ago