br0k3n-1337 / github-dorks-for-bug-bounty-hunters
A collection of GitHub dorks for bug bounty hunters
☆18Updated 2 years ago
Alternatives and similar repositories for github-dorks-for-bug-bounty-hunters:
Users that are interested in github-dorks-for-bug-bounty-hunters are comparing it to the libraries listed below
- Enhanced 403 bypass header☆21Updated 2 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆16Updated 4 years ago
- ☆42Updated 3 years ago
- A solid recon tool I use personally.☆30Updated last year
- A Tool to find subdomains from hackerone reports.☆17Updated 3 years ago
- ☆12Updated 3 years ago
- XSS Finder Via SSTI☆54Updated last year
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 2 years ago
- All The Notes And Tips I FOund In Github And Twitter I Put Them Here☆34Updated 4 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆56Updated 3 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated 2 years ago
- Burp Suite plugin to copy regex matches from selected requests and/or responses to the clipboard.☆33Updated 3 years ago
- ☆23Updated 2 years ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated last year
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- Automate bug bounty recon using bash alias☆14Updated 7 months ago
- jaVasCript:/*-/*`/*\`/*'/*"/**/(/* */oNcliCk=alert() )//%0D%0A%0d%0a//</stYle/</titLe/</teXtarEa/</scRipt/--!>\x3csVg/<sVg/oNloAd=alert()…☆10Updated 3 years ago
- ☆20Updated last year
- Script for Bug Bounty☆28Updated 3 years ago
- A very simple AEM detector written in rust.🦀☆19Updated last year
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆43Updated 4 years ago
- ☆21Updated 2 years ago
- JSNotify is a Python script designed to monitor JavaScript files in a specified directory for changes. This tool can be used by developer…☆18Updated last year
- A simple utility to generate domain names with all possible TLDs☆23Updated 2 years ago
- A Collection of Wordlists for Penetration Testing☆13Updated 3 months ago
- vīlicus is a bug bounty api dashboard☆40Updated last year
- ☆14Updated last year
- A Go tool that gets the newest PRs from projectdiscovery/nuclei-templates.☆54Updated last year
- IIS shortname scanner + bruteforce☆51Updated last year
- This includes all the templates of nuclei collected from different sources☆17Updated 2 years ago