SOC-Community / ioc-databaseLinks
https://ioc.ghtk.vn/
☆11Updated 3 years ago
Alternatives and similar repositories for ioc-database
Users that are interested in ioc-database are comparing it to the libraries listed below
Sorting:
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,235Updated 3 weeks ago
- This repo contains hourly-updated data dumps of bug bounty platform scopes (like Hackerone/Bugcrowd/Intigriti/etc) that are eligible for …☆3,620Updated this week
- Smuggler - An HTTP Request Smuggling / Desync testing tool written in Python 3☆2,058Updated 2 years ago
- Automatic SSRF fuzzer and exploitation tool☆3,473Updated 4 months ago
- SSRF (Server Side Request Forgery) testing resources☆2,481Updated last year
- Automated & Manual Wordlists provided by Assetnote☆1,593Updated last month
- Top disclosed reports from HackerOne☆5,238Updated 3 weeks ago
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,289Updated 2 years ago
- A Chrome Extension to track postMessage usage (url, domain and stack) both by logging using CORS and also visually as an extension-icon☆1,265Updated 2 years ago
- This is a collection of writeups, cheatsheets, videos, books related to SSRF in one single location☆1,360Updated 5 years ago
- Prototype Pollution and useful Script Gadgets☆1,574Updated 2 years ago
- BBT - Bug Bounty Tools (examples💡)☆1,873Updated last year
- List of XSS Vectors/Payloads☆1,357Updated 2 weeks ago
- 🌙🦊 Dalfox is a powerful open-source XSS scanner and utility focused on automation.☆4,806Updated this week
- Fetch known URLs from AlienVault's Open Threat Exchange, the Wayback Machine, and Common Crawl.☆4,805Updated last year
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆2,968Updated last year
- A python script that finds endpoints in JavaScript files☆4,254Updated last year
- GF Paterns For (ssrf,RCE,Lfi,sqli,ssti,idor,url redirection,debug_logic, interesting Subs) parameters grep☆1,394Updated last year
- Turbo Intruder is a Burp Suite extension for sending large numbers of HTTP requests and analyzing the results.☆1,715Updated last month
- A cheatsheet for exploiting server-side SVG processors.☆791Updated 5 years ago
- Fetch all the URLs that the Wayback Machine knows about for a domain☆4,290Updated last year
- Community curated list of public bug bounty and responsible disclosure programs.☆1,277Updated 3 weeks ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,493Updated 3 weeks ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,765Updated last year
- Burp plugin able to find reflected XSS on page in real-time while browsing on site☆1,200Updated 4 years ago
- A curated list of amazingly awesome Burp Extensions☆3,354Updated 11 months ago
- 🐛 A list of writeups from the Google VRP Bug Bounty program☆1,431Updated 2 months ago
- Fetch many paths for many hosts - without killing the hosts☆1,687Updated last year
- Potentially dangerous files☆3,266Updated 5 months ago
- "Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.☆5,530Updated 11 months ago