alifathi-h1 / gh_scanner
GH Scanner Tool is written in Python3 and designed for penetration testers and bug bounty hunters to scan Organization/User repositories for leaks such as GitHub Token, AWS Access Keys, Slack Webhooks, Firebase, Private Keys and more.
☆33Updated 8 months ago
Alternatives and similar repositories for gh_scanner:
Users that are interested in gh_scanner are comparing it to the libraries listed below
- Wrapper around LinkFinder to quickly determine whether endpoints have been added/removed to JavaScript files.☆40Updated 5 years ago
- sub domain wild card filtering tool☆41Updated 4 years ago
- A tool for testing subdomain takeover possibilities at a mass scale.☆49Updated 3 years ago
- Dump all available paths and/or endpoints on WADL file.☆90Updated this week
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆56Updated 2 years ago
- Basically a regexp over a GitHub search.☆64Updated last year
- Additional nuclei templates☆36Updated last year
- ☆25Updated 4 years ago
- Host Header Injection Checker☆80Updated 2 years ago
- Automate the process of an S3 bucket subdomain takeover via dangling CNAME record☆25Updated 8 months ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 3 years ago
- Get all the CNs from a list of domains☆46Updated 3 years ago
- My recon script☆51Updated 5 years ago
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 2 months ago
- A list of Awesome Bughunting oneliners , collected from the various sources☆64Updated last year
- Some of my bug bounty tools☆48Updated 5 years ago
- ☆14Updated 3 years ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- All known and unknown public POC's for wordpress themes and plugins☆79Updated 3 years ago
- ☆87Updated 3 years ago
- A collection of scripts for bug-bounty related stuff☆38Updated 4 years ago
- Bug Bounty Recon wordlist Generator☆21Updated 4 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 3 years ago
- 0x0p1n3r is set of combination of other tools and one line scripts to find subdomains easily and to check subdomain takeover☆57Updated 4 years ago
- Find subdomains and takeovers.☆84Updated 2 years ago
- Just lists of lists of lists !☆16Updated this week
- Finds Directory Listings or open S3 buckets from a list of URLs☆52Updated 3 years ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆25Updated 8 months ago
- Framework to automate Bug Bounty Reconnaissance☆42Updated 4 years ago