R0X4R / ssrf-tool
An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.
☆43Updated 3 years ago
Related projects: ⓘ
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆37Updated 3 years ago
- ☆43Updated 3 years ago
- Cool HackerOne Reports☆17Updated last year
- collection of various grep patterns collected from tomnomnom/gf and other places☆20Updated 3 years ago
- XSS Finder Via SSTI☆54Updated last year
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 2 years ago
- ☆23Updated this week
- My Custom made Nuceli-Templates☆22Updated last year
- Community curated list of templates for the erebus engine to find security vulnerabilities.☆16Updated 3 years ago
- #JavascriptRecon #bugbounty☆22Updated 3 years ago
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- Some wordlists collected form github to all bug bounty hunters.☆27Updated 3 years ago
- ☆37Updated 3 years ago
- ☆27Updated 9 months ago
- ☆27Updated this week
- Custom scripts for directory fuzzing, subdomain enumeration, and more.☆43Updated 2 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- A collection of scripts for bug-bounty related stuff☆36Updated 4 years ago
- Magic Header Blind Xss tool (deliver blind xss payloads in request headers).☆27Updated 3 years ago
- IIS shortname scanner + bruteforce☆46Updated 7 months ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆45Updated last year
- sonarbyte is a simple and fast subdomain scanner written in go to extract subdomain from Rapid7's DNS Database using omnisint's api.☆25Updated 2 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆24Updated 3 months ago
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 2 years ago
- ☆33Updated 3 years ago
- ☆13Updated this week
- ☆15Updated this week
- ☆59Updated 3 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 3 years ago