Traceableai / 31-days-of-pentestingLinks
31 Tips for pentesters & security engineers
☆85Updated 4 years ago
Alternatives and similar repositories for 31-days-of-pentesting
Users that are interested in 31-days-of-pentesting are comparing it to the libraries listed below
Sorting:
- Real world bug bounty wordlists☆117Updated 2 years ago
- Bug Bounty & Other Stuff☆58Updated 3 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆125Updated 3 months ago
- bug bounty disclosed reports☆121Updated 8 months ago
- The scripts I write to help me on my bug bounty hunting☆124Updated 3 years ago
- Tips For Bug Bounty Hunters☆86Updated 3 years ago
- ☆96Updated 5 years ago
- ☆96Updated 3 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆110Updated 3 years ago
- Erebus is a fast tool for parameter-based vulnerability scanning using a Yaml based template engine like nuclei.☆133Updated 4 years ago
- Directory scans☆83Updated last year
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆120Updated 2 years ago
- a Go code to detect leaks in JS files via regex patterns☆148Updated 3 years ago
- ☆95Updated 4 years ago
- Jeeves SQLI Finder☆219Updated 3 years ago
- ☆146Updated 2 years ago
- Nuclei Templates - Here you will find the templates I use while hunting☆119Updated 4 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆117Updated 2 years ago
- Automated Web Recon Shell Scripts☆52Updated 3 years ago
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆183Updated 3 years ago
- A path-normalization pentesting tool.☆132Updated 2 weeks ago
- All Type of Payloads☆134Updated last year
- A Burp Suite extension to extract datas from source code while browsing.☆160Updated last year
- Prototype Pollution Scanner☆126Updated 4 years ago
- Advanced Reconnaissance and Web Application Discovery☆89Updated 3 years ago
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆53Updated 2 years ago
- Check AWS S3 instances for read/write/delete access☆121Updated 3 years ago
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆296Updated last year
- ☆83Updated 3 years ago