Puliczek / awesome-list-of-secrets-in-environment-variables
π¦π Awesome list of secrets in environment variables π₯οΈ
β870Updated 2 years ago
Alternatives and similar repositories for awesome-list-of-secrets-in-environment-variables:
Users that are interested in awesome-list-of-secrets-in-environment-variables are comparing it to the libraries listed below
- πͺ CookieMonster helps you detect and abuse vulnerable implementations of stateless sessions.β852Updated last month
- Web Cache Vulnerability Scanner is a Go-based CLI tool for testing for web cache poisoning. It is developed by Hackmanit GmbH (http://hacβ¦β934Updated 2 months ago
- A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.β889Updated last year
- Payload Arsenal for Pentration Tester and Bug Bounty Huntersβ895Updated last year
- Reverse proxies cheatsheetβ1,800Updated last year
- "Can I take over DNS?" β a list of DNS providers and how to claim vulnerable domains.β1,016Updated 5 months ago
- Awesome list of step by step techniques to achieve Remote Code Execution on various apps!β1,876Updated last year
- My subdomain enumeration script. It's unique in the way it is built upon.β676Updated 6 months ago
- Awesome cloud enumeratorβ960Updated 6 months ago
- A collection of special paths linked to common sensitive APIs, devops internals, frameworks conf, known misconfigurations, juicy APIs ..eβ¦β962Updated 8 months ago
- Identify privilege escalation paths within and across different cloudsβ681Updated 4 months ago
- Cloudlist is a tool for listing Assets from multiple Cloud Providers.β908Updated this week
- bypass-url-parserβ1,057Updated this week
- An automation tool that scans sub-domains, sub-domain takeover, then filters out XSS, SSTI, SSRF, and more injection point parameters andβ¦β783Updated last year
- β516Updated last year
- Real-world infosec wordlists, updated regularlyβ1,451Updated this week
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!β859Updated last year
- MassDNS wrapper written in go to enumerate valid subdomains using active bruteforce as well as resolve subdomains with wildcard filteringβ¦β1,381Updated last week
- BugBountyTipsβ403Updated 8 months ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirectsβ953Updated 3 years ago
- Dangerously fast DNS/network/port scannerβ895Updated 2 years ago
- Open Redirection Analyzerβ765Updated last year
- β1,182Updated 2 years ago
- Making Favicon.ico based Recon Great again !β1,155Updated last year
- Go client to communicate with Chaos DB API.β686Updated last week
- Community curated list of public bug bounty and responsible disclosure programs.β1,096Updated this week
- A fast DOM based XSS vulnerability scanner with simplicity.β784Updated 2 years ago
- A Python program to scrape secrets from GitHub through usage of a large repository of dorks.β2,354Updated 7 months ago
- Bugbounty Resourcesβ534Updated last year
- A fast tool to scan CRLF vulnerability written in Goβ1,393Updated last week