bbhunter / attack-tools
A set of tools, procedures, and playbooks for performing bug bounties
☆15Updated 6 years ago
Alternatives and similar repositories for attack-tools:
Users that are interested in attack-tools are comparing it to the libraries listed below
- Automate bug bounty recon using bash alias☆14Updated 7 months ago
- Bugbounty utility to store list of enumerated subdomains into an sqlite3 db [one liner style / Pipe and save]☆27Updated 4 years ago
- Tool to find stored robots.txt files from the past☆17Updated last year
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆27Updated 4 years ago
- gup aka Get All Urls parameters to create wordlists for brute forcing parameters.☆18Updated 3 years ago
- ☆38Updated 3 years ago
- ☆21Updated 4 years ago
- Multithreaded Host Header Redirection Scanner☆13Updated 4 years ago
- The wordlists that have been compiled using disclosed reports at HackerOne bug bounty platform☆9Updated 4 years ago
- ☆38Updated 4 years ago
- ☆27Updated last year
- Cool One Liners at one place to make your recon and bug bounty skills better !☆16Updated 4 years ago
- All The Notes And Tips I FOund In Github And Twitter I Put Them Here☆34Updated 4 years ago
- A BurpSuite plugin for BBRF☆24Updated 4 months ago
- ☆19Updated 3 years ago
- List of bug bounty programs of companies/organisations in Switzerland☆13Updated 3 years ago
- RECON Notes taking from every fucking book about bugbounty and web-app penetration testing exists☆20Updated 5 years ago
- Offsec Pentest and Bug Bounty Notes☆24Updated 4 years ago
- ☆13Updated 3 years ago
- Gampung tools for find nuclei template from github☆10Updated last year
- Alternative to XSS Hunter for blind XSS.☆50Updated 2 years ago
- A simple tool which makes creating nuclei templates even easier.☆36Updated 9 months ago
- Related subdomains finder☆29Updated 2 years ago
- Security test tool for Blind XSS☆26Updated 5 years ago
- ☆14Updated last year
- Python script implementing the favicon hash trick to find subdomains.☆29Updated last year
- A solid recon tool I use personally.☆30Updated last year
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- Single-WebApp-Target essentials testing methodology tool starting at recon-information gathering for the juicy stuff ended up in exploita…☆22Updated 3 years ago
- Bug Bounty Recon wordlist Generator☆21Updated 4 years ago