Sn1r / Forbidden-Buster
A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas in the system. This code is made for security enthusiasts and professionals only. Use it at your own risk.
☆176Updated 8 months ago
Alternatives and similar repositories for Forbidden-Buster
Users that are interested in Forbidden-Buster are comparing it to the libraries listed below
Sorting:
- Automated Tool for Testing Header Based Blind SQL Injection☆278Updated last year
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆262Updated last month
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆360Updated last year
- ☆240Updated 3 years ago
- Bypass WAF SQL Injection SQLMAP☆190Updated 2 years ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆239Updated last year
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆170Updated 3 months ago
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆144Updated 2 months ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆200Updated 10 months ago
- A Chrome/Firefox browser extension to show alerts for reflected query params, show Wayback archive links for the current path, show hidde…☆367Updated last month
- Fetches JavaScript files quickly and comprehensively.☆123Updated 2 years ago
- My Priv8 Nuclei Templates☆316Updated last year
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆297Updated last year
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆237Updated 3 months ago
- i will upload more templates here to share with the comunity.☆543Updated last year
- ☆387Updated last week
- Simplify your life with leak detection in JavaScript. NipeJS streamlines the use of regex, making it effortless to uncover potential leak…☆94Updated 9 months ago
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆273Updated last year
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆170Updated 7 months ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆374Updated last week
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆248Updated 9 months ago
- ☆162Updated 6 months ago
- ☆169Updated 10 months ago
- Local File Inclusion discovery and exploitation tool☆304Updated 4 months ago
- ☆298Updated 2 years ago
- ☆132Updated 6 months ago
- Nodesub is a command-line tool for finding subdomains in bug bounty programs☆148Updated 9 months ago
- ☆119Updated last year
- Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templ…☆100Updated last month
- Fuzz 401/403/404 pages for bypasses☆310Updated 5 months ago