Puliczek / awesome-list-of-secrets-in-environment-variablesLinks
🦄🔒 Awesome list of secrets in environment variables 🖥️
☆898Updated 3 years ago
Alternatives and similar repositories for awesome-list-of-secrets-in-environment-variables
Users that are interested in awesome-list-of-secrets-in-environment-variables are comparing it to the libraries listed below
Sorting:
- Awesome list of step by step techniques to achieve Remote Code Execution on various apps!☆1,927Updated 2 years ago
 - ☆1,192Updated 3 years ago
 - ☆1,008Updated 3 years ago
 - Awesome cloud enumerator☆1,054Updated 7 months ago
 - Golden Guide☆505Updated 3 months ago
 - bypass-url-parser☆1,097Updated last week
 - 🍪 CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.☆934Updated 9 months ago
 - A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.☆912Updated 6 months ago
 - Reverse proxies cheatsheet☆1,852Updated last year
 - Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hac…☆1,020Updated 2 months ago
 - A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..e…☆997Updated last year
 - List of regex for scraping secret API keys and juicy information.☆717Updated 3 years ago
 - Bugbounty Resources☆541Updated 2 years ago
 - Identify privilege escalation paths within and across different clouds☆705Updated this week
 - ☆408Updated 4 years ago
 - Tool to check for dependency confusion vulnerabilities in multiple package management systems☆764Updated last year
 - "Can I take over DNS?" — a list of DNS providers and how to claim vulnerable domains.☆1,061Updated 8 months ago
 - ☆757Updated last year
 - PwnFox is a Firefox/Burp extension that provide usefull tools for your security audit.☆1,228Updated last year
 - My cheatsheet notes to pentest AWS infrastructure☆691Updated 3 years ago
 - ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆715Updated 2 years ago
 - API Security Project aims to present unique attack & defense methods in API Security field☆1,420Updated last year
 - An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆963Updated 3 years ago
 - Payload Arsenal for Pentration Tester and Bug Bounty Hunters☆914Updated 2 years ago
 - A fully automated, reliable, super-fast, scanning and validation toolkit for the Log4J RCE CVE-2021-44228 vulnerability.☆398Updated 10 months ago
 - Twitter vulnerable snippets☆1,074Updated 7 months ago
 - Cloudlist is a tool for listing Assets from multiple Cloud Providers.☆981Updated this week
 - HTTP Request Smuggling over HTTP/2 Cleartext (h2c)☆757Updated 3 years ago
 - Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.☆1,355Updated last week
 - A pentest reporting tool written in Python. Free yourself from Microsoft Word.☆1,435Updated 7 months ago