Th0h0 / autossrfLinks
Smart context-based SSRF vulnerability scanner.
☆361Updated 3 years ago
Alternatives and similar repositories for autossrf
Users that are interested in autossrf are comparing it to the libraries listed below
Sorting:
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆382Updated 2 years ago
- ☆249Updated 4 years ago
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆369Updated 2 years ago
- Useful "Match and Replace" burpsuite rules☆353Updated 2 years ago
- Fast and customizable vulnerability scanner For JIRA written in Python☆345Updated 11 months ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆418Updated last week
- A comprehensive list of custom filters for Logger++ to identify various vulnerabilities in different API styles☆230Updated last year
- Never forget where you inject.☆292Updated 3 months ago
- i will upload more templates here to share with the comunity.☆561Updated last year
- ☆302Updated 2 years ago
- All About Dependency Confusion Attack, (Detecting, Finding, Mitigating)☆301Updated last year
- Local File Inclusion discovery and exploitation tool☆330Updated 11 months ago
- Automatic Bug finder with buprsuite☆166Updated 2 years ago
- ☆411Updated last month
- A collection oneliner scripts for bug bounty☆179Updated last year
- ☆542Updated last year
- A subdomain fuzzing tool☆169Updated last year
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆275Updated this week
- A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violati…☆389Updated last week
- Automated Tool for Testing Header Based Blind SQL Injection☆295Updated 2 years ago
- Gotator is a tool to generate DNS wordlists through permutations.☆497Updated 3 years ago
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- A hacking tool for bug bounties. Sharing and modifying is encouraged!☆245Updated 2 years ago
- XSS payloads for bypassing WAF. This repository is updating continuously.☆257Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆82Updated last year
- HTTP Request Smuggling Detection Tool☆532Updated last year
- All the labs in this repository simulate real world bugs I found in the wild☆196Updated last year
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆452Updated 3 years ago
- Detailed information about API key / OAuth token (Description, Request, Response, Regex, Example)☆286Updated 2 years ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆217Updated last year