R0X4R / ssrf-tool
An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.
☆43Updated 4 years ago
Alternatives and similar repositories for ssrf-tool:
Users that are interested in ssrf-tool are comparing it to the libraries listed below
- ☆42Updated 3 years ago
- Cool HackerOne Reports☆20Updated 2 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆56Updated 3 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- ☆33Updated 3 years ago
- ☆38Updated 4 years ago
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- 10 Reset Password Flaws Based on Web Application Security☆11Updated 4 years ago
- XSS Finder Via SSTI☆54Updated last year
- a tool that compiles a csv of all h1 program stats☆47Updated last year
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆27Updated 3 years ago
- Additional nuclei templates☆36Updated last year
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated last year
- Bug Bounty Tools☆34Updated 4 years ago
- Custom scripts for directory fuzzing, subdomain enumeration, and more.☆43Updated 3 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆25Updated 9 months ago
- A Tool to find subdomains from hackerone reports.☆17Updated 3 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 3 years ago
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- Turns a list of URLs into hostnames.☆16Updated last year
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆27Updated 4 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆21Updated 4 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- ☆44Updated 3 years ago