An advanced Out-of-Band and In-Band SSRF fuzzing scanner with dynamic request tracking.
☆40Jun 18, 2026Updated 2 months ago
Alternatives and similar repositories for ressrf
Users that are interested in ressrf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Live runtime audit for installed Android apps. Runs on the rooted phone, serves a browser dashboard.☆32May 23, 2026Updated 3 months ago
- Active network shares enumeration tool.☆39Jul 17, 2026Updated last month
- TokenTwin Checker — Dual Token BAC/IDOR Tester for Burp Suite☆97Aug 24, 2026Updated 2 weeks ago
- ☆39Sep 5, 2026Updated last week
- A Python tool to scan JavaScript files for sensitive information exposure, helping security researchers identify potential leaks of API k…☆18Feb 17, 2026Updated 6 months ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- The tool is used to create a local webserver and force authenticate, which captures the logged in users NTLM v2 hash.☆16Feb 17, 2026Updated 6 months ago
- Apkx-Hunter is an Android Static Analysis Framework in Debian Package written entirely in C with OWASP MASVS scanning with 15 categories …☆92Sep 1, 2026Updated last week
- Android APK security analysis tool. Decompiles DEX, scans for vulns, parses manifests and certs. Runs in your browser.☆72May 14, 2026Updated 3 months ago
- Open-source LLM red-teaming technique toolkit (162 transforms, 36 mutators, 25 tool surfaces). MIT.☆338Jun 9, 2026Updated 3 months ago
- This is a proof-of-work for abusing "fsmonitor" against IDE.☆49Nov 22, 2025Updated 9 months ago
- Modules designed to be used with the Conquest framework.☆22Sep 3, 2026Updated last week
- ☆22Apr 1, 2026Updated 5 months ago
- Documenting all the sources from where I'm learning Mobile(adnroid/IOS) bug bounty so if another researcher want to start with mobile bug…☆69May 23, 2026Updated 3 months ago
- Hides in your attic... I mean process☆26Apr 29, 2026Updated 4 months ago
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- C2 Framework - Advanced Red Team Tool☆22Jun 1, 2026Updated 3 months ago
- CLI for authorized iOS pentest lab setup, Frida/Objection readiness checks, and IPA installation.☆23Jul 28, 2026Updated last month
- A curated list of awesome resources related to drone hacking☆33Jun 19, 2025Updated last year
- Claude Code Remote Code Execution☆15Feb 3, 2026Updated 7 months ago
- CVE-2026-63030, CVE-2026-60137, wp2shell scanner☆63Jul 18, 2026Updated last month
- Automagically decode DNS Exfiltration queries to convert Blind RCE into proper RCE via Burp Collaborator☆21Jan 7, 2026Updated 8 months ago
- Open-source passive reconnaissance and exposure discovery tool that leverages VirusTotal and the Wayback Machine to uncover subdomains, U…☆147Jun 23, 2026Updated 2 months ago
- AI-powered ffuf wrapper☆806Dec 4, 2025Updated 9 months ago
- API URL fuzzer that cross-joins hosts and paths into normalized URLs, probes them over HTTP, and reports responding endpoints.☆31Jun 11, 2026Updated 3 months ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Lightweight reflection scanner☆20Aug 31, 2025Updated last year
- NeXSS is a modern, self-hosted Blind XSS (Cross-Site Scripting) hunter and callback listener built with Next.js. It helps security resear…☆35Jan 14, 2026Updated 7 months ago
- A complete security assessment tool that supports common web security issues scanning and custom POC | Be sure to read the document befor…☆20Sep 27, 2024Updated last year
- Security audit tool for Claude Desktop and Claude Code on macOS — single-command visibility into MCP servers, extensions, plugins, connec…☆294May 12, 2026Updated 4 months ago
- AI-powered modular Active Directory red-team framework for authorized penetration testing, AD enumeration, attack-path analysis, Kerber…☆354Jun 11, 2026Updated 3 months ago
- Scans WordPress sites to find unclaimed plugin slugs on the public directory.☆27Oct 12, 2025Updated 11 months ago
- Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier☆244Jul 7, 2026Updated 2 months ago
- Mitigation validation utility for the Ivanti Connect Around attack chain. Runs multiple checks. CVE-2023-46805, CVE-2024-21887.☆12Feb 3, 2024Updated 2 years ago
- Replay any request as another user to find IDOR/BOLA/BFLA, right in the browser.☆29Jun 16, 2026Updated 2 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- CLI tool for filtering URLs/IPs with automatically-updated Bug Bounty program scope rules.☆77Jul 3, 2026Updated 2 months ago
- Auto Frida is a powerful, all-in-one automation toolkit that handles everything from Frida installation to script injection. Zero manual …☆136Apr 15, 2026Updated 4 months ago
- Advanced test for proxy & waf☆13Feb 10, 2026Updated 7 months ago
- In-memory BOF implementation of Silent Process Exit LSASS dump via RtlReportSilentProcessExit☆19Apr 14, 2026Updated 4 months ago
- JSpider is a smart crawler for hidden endpoints. It crawls and extracts hidden API endpoints and URLs from JavaScript files and HTML sour…☆18Aug 8, 2026Updated last month
- ☆35Jan 8, 2026Updated 8 months ago
- Get 10k subdomains in securitytrails using cookie without apikey.☆43Oct 23, 2025Updated 10 months ago