Sh1Yo / request_smugglerLinks
Http request smuggling vulnerability scanner
☆229Updated 3 years ago
Alternatives and similar repositories for request_smuggler
Users that are interested in request_smuggler are comparing it to the libraries listed below
Sorting:
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Updated last year
- Build your own reconnaissance system with Osmedeus Next Generation☆200Updated 3 months ago
- Prototype pollution scanner using headless chrome☆219Updated 3 years ago
- Fleex makes it easy to create multiple VPS on cloud providers and use them to distribute workloads.☆263Updated last year
- Hidden parameters discovery suite☆226Updated 3 years ago
- A blind XSS detection and XSS data capture framework☆172Updated last week
- Distribute ordinary bash commands over many systems☆167Updated 3 years ago
- A reverse whois tool based on Whoxy API.☆167Updated last year
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆191Updated 3 years ago
- Burpsuite plugin for Interact.sh☆228Updated last year
- Automated learning of regexes for DNS discovery☆376Updated 2 years ago
- Generate tens of thousands of subdomain combinations in a matter of seconds☆272Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- Nuclei templates written by geeknik. Claude is my co-pilot. 🤖☆283Updated 3 months ago
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- Find endpoints on GitHub.☆207Updated 2 years ago
- a Go code to detect leaks in JS files via regex patterns☆148Updated 4 years ago
- Filter and enrich a list of subdomains by level☆211Updated 2 years ago
- Turns any junk text into a usable wordlist for brute-forcing.☆225Updated last year
- Complex payload encoder☆235Updated last year
- Get related domains / subdomains by looking at Google Analytics IDs☆248Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆133Updated 4 years ago
- IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io☆132Updated 3 years ago
- Astra is a tool to find URLs and secrets inside a webpage/files☆212Updated 2 years ago
- ☆381Updated 2 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆117Updated 2 years ago
- Make URL path combinations using a wordlist☆170Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆322Updated 4 months ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆110Updated 3 years ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆198Updated last year