anshumanbh / git-all-secrets
A tool to capture all the git secrets by leveraging multiple open source git searching tools
☆1,112Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for git-all-secrets
- Subdomain Takeover tool written in Go☆1,911Updated last year
- Scan for misconfigured S3 buckets across S3-compatible APIs!☆2,573Updated this week
- Security Tool to Look For Interesting Files in S3 Buckets☆1,366Updated 7 months ago
- This tool can be used to brute discover GET and POST parameters☆1,344Updated 5 years ago
- ☆2,183Updated 11 months ago
- Discover Your Attack Surface!☆1,362Updated 2 years ago
- Reconnaissance tool for GitHub code search. Scans for exposed API keys across all of GitHub, not just known repos and orgs.☆1,204Updated last month
- Setup script for Regon-ng☆923Updated 4 years ago
- A collection of AWS penetration testing junk☆1,173Updated last year
- Tool to search secrets in various filetypes.☆977Updated last year
- Exploits written by the Rhino Security Labs team☆1,059Updated 3 years ago
- This repository contains all the material from the talk "Esoteric sub-domain enumeration techniques" given at Bugcrowd LevelUp 2017 virtu…☆634Updated 5 years ago
- Security Mindmap that could be useful for the infosec community when doing pentest, bug bounty or red-team assessments.☆731Updated 2 years ago
- Multi Tool Subdomain Enumeration☆722Updated 3 years ago
- Fuzzapi is a tool used for REST API pentesting and uses API_Fuzzer gem☆632Updated 3 years ago
- A virtual host scanner that performs reverse lookups, can be used with pivot tools, detect catch-all scenarios, work around wildcards, al…☆1,201Updated 11 months ago
- A collection of scripts that run on my web server. Mainly for debugging SSRF, blind XSS, and XXE vulnerabilities.☆532Updated 7 years ago
- The XSS Hunter service - a portable version of XSSHunter.com☆1,491Updated last year
- Scan your code for security misconfiguration, search for passwords and secrets.☆638Updated last year
- WeirdAAL (AWS Attack Library)☆781Updated last year
- A default credential scanner.☆1,451Updated 2 years ago
- Generates permutations, alterations and mutations of subdomains and then resolves them☆2,333Updated 6 months ago
- Find interesting Amazon S3 Buckets by watching certificate transparency logs.☆1,753Updated last year
- A tool to link a domain with registered organisation names and emails, to other domains.☆829Updated 6 months ago
- Notes about attacking Jenkins servers☆1,966Updated 4 months ago
- Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.☆1,213Updated 6 months ago
- Semi-automated, feedback-driven tool to rapidly search through troves of public data on GitHub for sensitive secrets.☆1,455Updated 8 months ago
- ☆788Updated last year
- REST/JSON API to the Burp Suite security tool.☆547Updated 5 months ago