Vaf is a cross-platform very advanced and fast web fuzzer written in nim
☆319May 29, 2022Updated 4 years ago
Alternatives and similar repositories for vaf
Users that are interested in vaf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- grim reaper c2☆346Nov 19, 2022Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆130Jan 23, 2021Updated 5 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Sep 22, 2024Updated last year
- Site fast fuzzing with chorme extension.☆24Feb 4, 2022Updated 4 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆427Jul 21, 2026Updated 3 weeks ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Automating XSS using Bash☆365Jan 27, 2026Updated 6 months ago
- This tool is useful to find a particular string in a list of URLs using tesseract's OCR (Optical Character Recognition) capabilities☆31Jan 17, 2022Updated 4 years ago
- Hidden parameters discovery suite☆225Nov 14, 2022Updated 3 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆520Jun 22, 2022Updated 4 years ago
- WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.☆20Jun 5, 2026Updated 2 months ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,584Mar 8, 2026Updated 5 months ago
- ☆753Jun 26, 2024Updated 2 years ago
- An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code …☆407Jan 22, 2025Updated last year
- Little Bug Bounty & Hacking Tools⚔️☆386Mar 30, 2026Updated 4 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆184Nov 22, 2021Updated 4 years ago
- Bugbounty scope tool☆330Mar 5, 2025Updated last year
- Hide your payload in DNS☆622May 3, 2023Updated 3 years ago
- Subdomain finder☆11Jul 30, 2026Updated 2 weeks ago
- Static and dynamic Android application security analysis☆78Jun 2, 2024Updated 2 years ago
- Jeeves SQLI Finder☆215May 13, 2022Updated 4 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆968Dec 8, 2021Updated 4 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆454Jan 9, 2024Updated 2 years ago
- Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security prof…☆411Nov 24, 2020Updated 5 years ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- ☆297Jul 16, 2022Updated 4 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆1,100Aug 5, 2026Updated last week
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆689Jul 15, 2024Updated 2 years ago
- ☆46Mar 20, 2021Updated 5 years ago
- Customisable and automated HTTP header injection☆297Jun 27, 2024Updated 2 years ago
- automated web assets enumeration & scanning [DEPRECATED]☆288Mar 7, 2023Updated 3 years ago
- Small python script to look for common vulnerabilities on SMTP server.☆46Dec 17, 2023Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Nov 21, 2021Updated 4 years ago
- Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for m…☆703Oct 29, 2021Updated 4 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Self-developed tools for Lateral Movement/Code Execution☆723Aug 17, 2021Updated 4 years ago
- The Swiss Army knife for automated Web Application Testing☆2,366Jun 20, 2026Updated last month
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆186Oct 30, 2021Updated 4 years ago
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆746Mar 30, 2021Updated 5 years ago
- SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.☆162Jul 17, 2023Updated 3 years ago
- A simple command line tool designed to explore the mechanics of dictionary attacks on the FTP protocol.☆20Jun 16, 2021Updated 5 years ago
- Divide full port scan results and use it for targeted Nmap runs☆334Jul 1, 2024Updated 2 years ago