Vaf is a cross-platform very advanced and fast web fuzzer written in nim
☆319May 29, 2022Updated 4 years ago
Alternatives and similar repositories for vaf
Users that are interested in vaf are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- grim reaper c2☆345Nov 19, 2022Updated 3 years ago
- Static code analysis tool based on Elasticsearch☆130Jan 23, 2021Updated 5 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆297Sep 22, 2024Updated last year
- Site fast fuzzing with chorme extension.☆24Feb 4, 2022Updated 4 years ago
- 🔑 Authz0 is an automated authorization test tool. Unauthorized access can be identified based on URLs and Roles & Credentials.☆429Jul 21, 2026Updated last month
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- Automating XSS using Bash☆364Jan 27, 2026Updated 7 months ago
- This tool is useful to find a particular string in a list of URLs using tesseract's OCR (Optical Character Recognition) capabilities☆31Jan 17, 2022Updated 4 years ago
- Hidden parameters discovery suite☆225Nov 14, 2022Updated 3 years ago
- A scanner/exploitation tool written in GO, which leverages client-side Prototype Pollution to XSS by exploiting known gadgets.☆519Jun 22, 2022Updated 4 years ago
- WRecon, is a tool for the recognition of vulnerabilities and blackbox information for wordpress.☆21Jun 5, 2026Updated 2 months ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,589Mar 8, 2026Updated 5 months ago
- ☆750Jun 26, 2024Updated 2 years ago
- An automated tool which can simultaneously crawl, fill forms, trigger error/debug pages and "loot" secrets out of the client-facing code …☆408Jan 22, 2025Updated last year
- Little Bug Bounty & Hacking Tools⚔️☆388Mar 30, 2026Updated 5 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- A Burp Suite extension made to automate the process of finding reverse proxy path based SSRF.☆184Nov 22, 2021Updated 4 years ago
- Bugbounty scope tool☆330Mar 5, 2025Updated last year
- Hide your payload in DNS☆623May 3, 2023Updated 3 years ago
- Subdomain finder☆11Jul 30, 2026Updated last month
- Static and dynamic Android application security analysis☆78Jun 2, 2024Updated 2 years ago
- Jeeves SQLI Finder☆214May 13, 2022Updated 4 years ago
- An automated SSRF finder. Just give the domain name and your server and chill! ;) Also has options to find XSS and open redirects☆967Dec 8, 2021Updated 4 years ago
- DirDar is a tool that searches for (403-Forbidden) directories to break it and get dir listing on it☆453Jan 9, 2024Updated 2 years ago
- Web Application Security Automation Framework which recons the target for various assets to maximize the attack surface for security prof…☆411Nov 24, 2020Updated 5 years ago
- Managed Database hosting by DigitalOcean • AdPostgreSQL, MySQL, MongoDB, Kafka, Valkey, and OpenSearch available. Automatically scale up storage and focus on building your apps.
- ☆297Jul 16, 2022Updated 4 years ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆1,101Aug 5, 2026Updated 3 weeks ago
- Automation Recon tool which works with Large & Medium scopes. It performs a lot of tasks and gets back all the results in separated files…☆688Jul 15, 2024Updated 2 years ago
- ☆46Mar 20, 2021Updated 5 years ago
- Customisable and automated HTTP header injection☆297Jun 27, 2024Updated 2 years ago
- automated web assets enumeration & scanning [DEPRECATED]☆288Mar 7, 2023Updated 3 years ago
- Small python script to look for common vulnerabilities on SMTP server.☆46Dec 17, 2023Updated 2 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆91Nov 21, 2021Updated 4 years ago
- Vajra is a highly customizable target and scope based automated web hacking framework to automate boring recon tasks and same scans for m…☆701Oct 29, 2021Updated 4 years ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Self-developed tools for Lateral Movement/Code Execution☆723Aug 17, 2021Updated 5 years ago
- The Swiss Army knife for automated Web Application Testing☆2,370Jun 20, 2026Updated 2 months ago
- Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules☆186Oct 30, 2021Updated 4 years ago
- Electron JS Browser To Find XSS Vulnerabilities Automatically☆747Mar 30, 2021Updated 5 years ago
- SCodeScanner stands for Source Code scanner where the user can scans the source code for finding the Critical Vulnerabilities.☆162Jul 17, 2023Updated 3 years ago
- A simple command line tool designed to explore the mechanics of dictionary attacks on the FTP protocol.☆20Jun 16, 2021Updated 5 years ago
- Divide full port scan results and use it for targeted Nmap runs☆335Jul 1, 2024Updated 2 years ago