allyomalley / s3TakeoverLinks
Automate the process of an S3 bucket subdomain takeover via dangling CNAME record
☆26Updated last year
Alternatives and similar repositories for s3Takeover
Users that are interested in s3Takeover are comparing it to the libraries listed below
Sorting:
- It's an watcher for new scopes added to bounty-targets-data and send you alert to Slack.☆59Updated 3 years ago
- Converts a hostname (or URI) to IP address using your local resolver☆25Updated last year
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- ☆59Updated 4 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 4 years ago
- golang tool to scan domains or single domains with know security issues against xmlrpc☆61Updated 2 years ago
- Nuclei Templates Directory☆55Updated last week
- A tool for testing subdomain takeover possibilities at a mass scale.☆49Updated 4 years ago
- Framework to automate Bug Bounty Reconnaissance☆45Updated 4 years ago
- ☆27Updated 5 years ago
- Dump all available paths and/or endpoints on WADL file.☆96Updated last week
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆93Updated 4 years ago
- a tool that compiles a csv of all h1 program stats☆47Updated 2 years ago
- Host Header Injection Checker☆83Updated 3 years ago
- Wrapper around LinkFinder to quickly determine whether endpoints have been added/removed to JavaScript files.☆41Updated 5 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 4 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 3 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆45Updated 4 years ago
- Basically a regexp over a GitHub search.☆69Updated 2 years ago
- ☆34Updated 4 years ago
- SecretFinder - A python script for find sensitive data (apikeys, accesstoken,jwt,..) and search anything on javascript files☆35Updated 4 years ago
- A collection of scripts for bug-bounty related stuff☆39Updated 5 years ago
- ☆38Updated 5 years ago
- ☆21Updated 2 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Updated last year
- Detects request smuggling via HTTP/2 downgrades.☆94Updated 3 years ago
- Declutters URLs in a fast and flexible way, for improving input for web hacking automations such as crawlers and vulnerability scans.☆57Updated 2 years ago
- ☆13Updated 4 years ago
- sub domain wild card filtering tool☆40Updated 5 years ago
- Wraps projectdiscovery's cdncheck library to exclude CDN hosts from input passed over stdin☆45Updated 2 years ago