R0X4R / ssrf-tool
An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.
☆43Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for ssrf-tool
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- ☆43Updated 3 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆45Updated 2 years ago
- XSS Finder Via SSTI☆54Updated last year
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- ☆38Updated 3 years ago
- Some wordlists collected form github to all bug bounty hunters.☆27Updated 3 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 3 years ago
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆27Updated 3 years ago
- ☆33Updated 3 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆54Updated 2 years ago
- Turns a list of URLs into hostnames.☆16Updated last year
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated last year
- a tool that compiles a csv of all h1 program stats☆46Updated last year
- collection of various grep patterns collected from tomnomnom/gf and other places☆21Updated 4 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆24Updated 5 months ago
- #JavascriptRecon #bugbounty☆22Updated 3 years ago
- Script for Bug Bounty☆28Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆17Updated 2 years ago
- Cool HackerOne Reports☆18Updated 2 years ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Additional nuclei templates☆36Updated last year
- Resolvers updated daily for reconftw☆46Updated last year
- ☆21Updated 3 years ago
- Alternative to XSS Hunter for blind XSS.☆48Updated last year