bm402 / apidor
A tool that automates the search for IDOR vulnerabilities in web apps and APIs
☆55Updated 4 years ago
Alternatives and similar repositories for apidor:
Users that are interested in apidor are comparing it to the libraries listed below
- ☆111Updated 2 years ago
- Here Are Some Bug Bounty Resource From Twitter☆88Updated last month
- ☆77Updated 2 years ago
- ☆63Updated 7 months ago
- Describe how to use ffuf different options with examples☆85Updated 2 years ago
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.☆36Updated 8 months ago
- ☆156Updated last year
- Learn how to automate XSS, SSRF, LFI, SQLI, NoSQLi☆38Updated 3 years ago
- Tool for testing reflections in the HTTP responses☆60Updated last year
- Tips For Bug Bounty Hunters☆84Updated 2 years ago
- Enumerate Subdomains Through Google Dorks☆123Updated this week
- A Lightning-Fast DNS Resolver written in Rust 🦀☆67Updated 4 months ago
- This is a Burp Suite extension that allows users to easily add web addresses to the Burp Suite scope.☆97Updated 2 months ago
- ☆87Updated 3 years ago
- A path-normalization pentesting tool.☆123Updated last year
- The scripts I write to help me on my bug bounty hunting☆121Updated 3 years ago
- Private Nuclei Templates☆97Updated last month
- The fastest way to setup XSSHunter. It has options for the official and Discord/Slack Forks☆41Updated last year
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆104Updated 3 years ago
- A powerful bash script for massive XSS scanning leveraging Brute Logic's KNOXSS API☆70Updated 2 months ago
- Find subdomains on GitLab.☆94Updated 10 months ago
- Advanced Reconnaissance and Web Application Discovery☆79Updated 3 years ago
- Xssor.go is a xss reflections checker for urls☆70Updated 2 years ago
- Community curated list of templates for the nuclei engine to find security vulnerabilities.☆60Updated 3 months ago
- BChecks collection for Burp Suite Professional☆94Updated 9 months ago
- Simple tool to gather domains from crt.sh using the organization name☆100Updated 3 years ago
- This tool checks if the given Url/File has Swagger Ui, That can be tested later..☆35Updated last year
- Go scanner to find web cache poisoning vulnerabilities in a list of URLs☆136Updated last year
- ☆68Updated 2 years ago
- Script that download 37+ open source nuclei templates☆43Updated 2 years ago