alifathi-h1 / gh_scanner
GH Scanner Tool is written in Python3 and designed for penetration testers and bug bounty hunters to scan Organization/User repositories for leaks such as GitHub Token, AWS Access Keys, Slack Webhooks, Firebase, Private Keys and more.
☆34Updated 11 months ago
Alternatives and similar repositories for gh_scanner
Users that are interested in gh_scanner are comparing it to the libraries listed below
Sorting:
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆58Updated 3 years ago
- ☆56Updated 4 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- Host Header Injection Checker☆81Updated 3 years ago
- Find subdomains and takeovers.☆85Updated 2 years ago
- Burpsuite Plugin to detect Directory Traversal vulnerabilities☆28Updated 3 years ago
- My recon script☆50Updated 5 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆62Updated last year
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 3 years ago
- Dump all available paths and/or endpoints on WADL file.☆93Updated this week
- a tool that compiles a csv of all h1 program stats☆47Updated last year
- 🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline☆59Updated 5 months ago
- ☆34Updated 4 years ago
- sub domain wild card filtering tool☆41Updated 5 years ago
- My Tools For Bug Bounty☆66Updated 7 months ago
- 10 Reset Password Flaws Based on Web Application Security☆11Updated 4 years ago
- Just lists of lists of lists !☆16Updated 3 weeks ago
- Automate the process of an S3 bucket subdomain takeover via dangling CNAME record☆24Updated 11 months ago
- Let's check if your target is vulnerable for client side prototype pollution.☆65Updated last year
- A tool for testing subdomain takeover possibilities at a mass scale.☆49Updated 3 years ago
- A tool for append URLs, skipping duplicates/paths & combine parameters.☆121Updated 3 years ago
- Get all the CNs from a list of domains☆46Updated 3 years ago
- ☆38Updated 4 years ago
- Basically a regexp over a GitHub search.☆68Updated 2 years ago
- A Payload Injector for bugbounties written in go☆70Updated 4 years ago
- ☆24Updated 4 years ago
- Converts a hostname (or URI) to IP address using your local resolver☆25Updated last year
- Credax - Fuzzing Tool with Slack Notifications. Also removes false positive responses.☆10Updated 3 years ago
- Additional nuclei templates☆37Updated last year
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆44Updated 4 years ago