brosck / mantra
γπγA tool used to hunt down API key leaks in JS files and pages
β685Updated 2 weeks ago
Alternatives and similar repositories for mantra:
Users that are interested in mantra are comparing it to the libraries listed below
- jsleak is a tool to find secret , paths or links in the source code during the recon.β521Updated 2 months ago
- Small tool to Grab subdomains using Shodan api.β429Updated 5 months ago
- Fast and customizable subdomain wordlist generator using DSLβ783Updated 2 weeks ago
- A Powerful Sensor Tool to discover login panels, and POST Form SQLi Scanningβ484Updated last year
- SubDominator helps you discover subdomains associated with a target domain efficiently and with minimal impact for your Bug Bountyβ551Updated last week
- AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,β631Updated last year
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one plβ¦β965Updated 2 months ago
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.β236Updated last month
- A command-line utility designed to discover URLs for a given domain in a simple, efficient way. It works by gathering information from a β¦β594Updated last week
- An IIS short filename enumeration toolβ900Updated 4 months ago
- A simple tool for bypassing file upload restrictions.β833Updated 8 months ago
- i will upload more templates here to share with the comunity.β542Updated 11 months ago
- Tool to bypass 403/40X response codes.β1,222Updated 3 months ago
- fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.β804Updated last year
- Community curated list of nuclei templates for finding "unknown" security vulnerabilities.β64Updated 11 months ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzerβ381Updated last year
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable β¦β629Updated last year
- β521Updated 9 months ago
- 1337 Wordlists for Bug Bounty Huntingβ818Updated 2 months ago
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.β440Updated 2 years ago
- A python tool used to discover endpoints, potential parameters, and a target specific wordlist for a given targetβ1,299Updated 2 weeks ago
- β‘·β πππππ ππΈβ β’Ύ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)β847Updated 9 months ago
- Dome - Subdomain Enumeration Tool. Fast and reliable python script that makes active and/or passive scan to obtain subdomains and search β¦β530Updated last year
- An extremely effective subdomain enumeration wordlist of 3,000,000 lines, crafted by harvesting SSL certs from the entire IPv4 space.β601Updated last year
- oneliner commands for bug bountiesβ440Updated 2 years ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.β616Updated 2 weeks ago
- 40,000+ Nuclei templates for security scanning and detection across diverse web applications and servicesβ303Updated last year
- Nuclei Templates Collectionβ964Updated 10 months ago
- ShodanX is a tool to gather information of targets using shodan dorksβ‘.β294Updated 4 months ago
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Reβ¦β1,486Updated last week