Sachin-v3rma / Astra
Astra is a tool to find URLs and secrets inside a webpage/files
☆209Updated 2 years ago
Alternatives and similar repositories for Astra:
Users that are interested in Astra are comparing it to the libraries listed below
- Prototype pollution scanner using headless chrome☆217Updated 2 years ago
- Urls de-duplication tool for better recon.☆139Updated 8 months ago
- Nuclei templates written by us.☆267Updated 3 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆294Updated 6 months ago
- Turns any junk text into a usable wordlist for brute-forcing.☆218Updated last year
- A reverse whois tool based on Whoxy API.☆165Updated last year
- Customisable and automated HTTP header injection☆244Updated 9 months ago
- Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools☆272Updated 8 months ago
- A combined wordlists for files and directory discovery☆126Updated 3 years ago
- Python library and CLI for the Bug Bounty Recon API☆223Updated 3 years ago
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- Get related domains / subdomains by looking at Google Analytics IDs☆243Updated 2 years ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆173Updated 3 years ago
- Http request smuggling vulnerability scanner☆227Updated 2 years ago
- Burp extension to create target specific and tailored wordlist from burp history.☆237Updated 3 years ago
- Burp Extension for easily creating Wordlists☆211Updated 3 years ago
- Find endpoints on GitHub.☆194Updated 2 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆123Updated last week
- Build your own reconnaissance system with Osmedeus Next Generation☆185Updated 2 months ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆120Updated 3 years ago
- Secret and/or credential patterns used for gf.☆240Updated 2 years ago
- List of fresh DNS resolvers updated daily☆109Updated 2 years ago
- Automating XSS using Bash☆353Updated last year
- Full Nuclei automation script with logic explanation.☆242Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆131Updated 4 years ago
- Some Tutorials and Things to Do while Hunting That Vulnerability.☆73Updated 4 years ago
- ☆156Updated last year
- Real world bug bounty wordlists☆111Updated last year
- ☆318Updated 2 months ago
- Automated tool for domains & subdomains gathering☆185Updated last year