Vaf is a cross-platform very advanced and fast web fuzzer written in nim
☆318May 29, 2022Updated 4 years ago
Alternatives and similar repositories for vaf
Users that are interested in vaf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- grim reaper c2☆347Nov 19, 2022Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆130Jan 23, 2021Updated 5 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Sep 22, 2024Updated last year
- Site fast fuzzing with chorme extension.☆24Feb 4, 2022Updated 4 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆429Updated this week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Automating XSS using Bash☆365Jan 27, 2026Updated 5 months ago
- This tool is useful to find a particular string in a list of URLs using tesseract's OCR (Optical Character Recognition) capabilities☆31Jan 17, 2022Updated 4 years ago
- Hidden parameters discovery suite☆225Nov 14, 2022Updated 3 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆520Jun 22, 2022Updated 4 years ago
- WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.☆20Jun 5, 2026Updated last month
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,575Mar 8, 2026Updated 4 months ago
- ☆752Jun 26, 2024Updated 2 years ago
- An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code …☆406Jan 22, 2025Updated last year
- Little Bug Bounty & Hacking Tools⚔️☆383Mar 30, 2026Updated 3 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆184Nov 22, 2021Updated 4 years ago
- Bugbounty scope tool☆330Mar 5, 2025Updated last year
- Hide your payload in DNS☆622May 3, 2023Updated 3 years ago
- Subdomain finder☆11Mar 13, 2025Updated last year
- Static and dynamic Android application security analysis☆77Jun 2, 2024Updated 2 years ago
- Jeeves SQLI Finder☆215May 13, 2022Updated 4 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆971Dec 8, 2021Updated 4 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆454Jan 9, 2024Updated 2 years ago
- Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security prof…☆413Nov 24, 2020Updated 5 years ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- ☆301Jul 16, 2022Updated 4 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆1,093Mar 24, 2026Updated 4 months ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆687Jul 15, 2024Updated 2 years ago
- ☆46Mar 20, 2021Updated 5 years ago
- Customisable and automated HTTP header injection☆297Jun 27, 2024Updated 2 years ago
- automated web assets enumeration & scanning [DEPRECATED]☆288Mar 7, 2023Updated 3 years ago
- Small python script to look for common vulnerabilities on SMTP server.☆46Dec 17, 2023Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Nov 21, 2021Updated 4 years ago
- Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for m…☆703Oct 29, 2021Updated 4 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Self-developed tools for Lateral Movement/Code Execution☆724Aug 17, 2021Updated 4 years ago
- The Swiss Army knife for automated Web Application Testing☆2,366Jun 20, 2026Updated last month
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆187Oct 30, 2021Updated 4 years ago
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆747Mar 30, 2021Updated 5 years ago
- SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.☆162Jul 17, 2023Updated 3 years ago
- A simple command line tool designed to explore the mechanics of dictionary attacks on the FTP protocol.☆20Jun 16, 2021Updated 5 years ago
- Divide full port scan results and use it for targeted Nmap runs☆333Jul 1, 2024Updated 2 years ago