arainho / apisec-toolbox
A Swiss knife for API security testing including a docker image, some labs and resources.
☆9Updated 2 years ago
Alternatives and similar repositories for apisec-toolbox:
Users that are interested in apisec-toolbox are comparing it to the libraries listed below
- Automate bug bounty recon using bash alias☆14Updated 7 months ago
- Ffuf output browser☆39Updated 2 years ago
- Small script to check a list of domains against open redirect vulnerability☆26Updated 3 years ago
- An automated, reliable scanner for the Log4Shell (CVE-2021-44228) vulnerability.☆44Updated 2 months ago
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- Offsec Pentest and Bug Bounty Notes☆24Updated 4 years ago
- Checks if files is accessible based on the source code.☆16Updated last year
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆27Updated 4 years ago
- Tool to find stored robots.txt files from the past☆17Updated last year
- Converts a hostname (or URI) to IP address using your local resolver☆24Updated last year
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- All The Notes And Tips I FOund In Github And Twitter I Put Them Here☆34Updated 4 years ago
- Cool One Liners at one place to make your recon and bug bounty skills better !☆16Updated 4 years ago
- Multithreaded Host Header Redirection Scanner☆13Updated 4 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- Alternative to XSS Hunter for blind XSS.☆50Updated 2 years ago
- ☆13Updated last year
- Enhanced 403 bypass header☆21Updated 2 years ago
- Cool HackerOne Reports☆20Updated 2 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- RepoToStoreBugBountyInfo☆10Updated 5 years ago
- ☆38Updated 4 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- ☆16Updated 3 years ago
- ☆21Updated 4 years ago
- My recon script☆50Updated 5 years ago
- The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform☆9Updated 4 years ago
- A set of tools, procedures, and playbooks for performing bug bounties☆15Updated 6 years ago