Sn1r / Forbidden-BusterLinks
A tool designed to automate various techniques in order to bypass HTTP 401 and 403 response codes and gain access to unauthorized areas in the system. This code is made for security enthusiasts and professionals only. Use it at your own risk.
☆192Updated last year
Alternatives and similar repositories for Forbidden-Buster
Users that are interested in Forbidden-Buster are comparing it to the libraries listed below
Sorting:
- Mining URLs from dark corners of Web Archives for bug hunting/fuzzing/further probing☆154Updated 6 months ago
- Automated Tool for Testing Header Based Blind SQL Injection☆286Updated 2 years ago
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆303Updated last year
- Fuzz 401/403/404 pages for bypasses☆337Updated 9 months ago
- NucleiScanner is a Powerful Automation tool for detecting Unknown Vulnerabilities in the Web Applications☆332Updated 5 months ago
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆366Updated 2 years ago
- Fetches JavaScript files quickly and comprehensively.☆124Updated 2 years ago
- jsluice++ is a Burp Suite extension designed for passive and active scanning of JavaScript traffic using the CLI tool jsluice☆283Updated last year
- A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.☆131Updated 4 months ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆250Updated last year
- Wordlist for web fuzzing, made from a variety of reliable sources including: result from my pentests, git.rip, ChatGPT, Lex, nuclei templ…☆100Updated 5 months ago
- Payload for bug bounty☆98Updated last year
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆407Updated last week
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆215Updated last year
- Local File Inclusion discovery and exploitation tool☆324Updated 8 months ago
- ☆248Updated 4 years ago
- Unauthenticated Remote Code Execution – Bricks <= 1.9.6☆173Updated last year
- ☆182Updated 10 months ago
- Bypass WAF SQL Injection SQLMAP☆193Updated 3 years ago
- Bypass 403 pages☆117Updated last year
- Helios: Automated XSS Testing☆154Updated last year
- ☆301Updated 2 years ago
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆273Updated 3 months ago
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆179Updated 7 months ago
- jsleak is a tool to find secret , paths or links in the source code during the recon.☆544Updated 7 months ago
- ☆177Updated last year
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆247Updated 7 months ago
- Smart context-based SSRF vulnerability scanner.☆356Updated 3 years ago
- My Priv8 Nuclei Templates☆326Updated last year
- A collection of useful lists for Penetration Testing & Bug Bounty - Content Discovery, Payloads, Variables, Sandbox Escaping, etc☆103Updated 6 months ago