jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for and bug bounty hunters and security researchers.
☆529Jul 12, 2026Updated last week
Alternatives and similar repositories for JShunter
Users that are interested in JShunter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ex-param is an automated tool designed for finding reflected parameters for XSS vulnerabilities. It crawls a target website, extracts GET…☆60Feb 22, 2025Updated last year
- High-Performance JavaScript Security Scanner - Process 1M URLs in ~5 hours with Telegram & Discord bot integration, Docker support, and c…☆176Oct 18, 2025Updated 9 months ago
- A passive way to find backups/ sensitive information.☆94Jul 10, 2025Updated last year
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆93Jan 11, 2025Updated last year
- best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect☆1,598Dec 7, 2025Updated 7 months ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,820Jun 21, 2026Updated last month
- A high-performance Go-based tool for checking the availability and responsiveness of domains, utilizing both HTTP requests and browser au…☆93Nov 26, 2024Updated last year
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆566Mar 8, 2025Updated last year
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆146Jan 21, 2025Updated last year
- A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.☆893Jun 23, 2026Updated last month
- Header Exploitation HTTP☆759May 28, 2026Updated last month
- An IIS short filename enumeration tool☆1,206Nov 25, 2024Updated last year
- Orbis is an full spectrum automated external attack surface intelligent toolkit.☆396Mar 13, 2026Updated 4 months ago
- A simple browser extension to quickly find interesting security-related information on a webpage.☆183Jul 3, 2026Updated 3 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆43Oct 27, 2024Updated last year
- Automatic SSTI detection tool with interactive interface☆1,587Apr 25, 2026Updated 3 months ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆314May 16, 2024Updated 2 years ago
- An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws☆4,045Oct 4, 2025Updated 9 months ago
- ☆1,169Jan 28, 2026Updated 5 months ago
- Automation tool to testing and confirm the xss vulnerability.☆307Jul 18, 2025Updated last year
- SubOwner - A Simple tool check for subdomain takeovers.☆122Oct 18, 2024Updated last year
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆865Updated this week
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,859Apr 17, 2026Updated 3 months ago
- Open source password manager - Proton Pass • AdSecurely store, share, and autofill your credentials with Proton Pass, the end-to-end encrypted password manager trusted by millions.
- Pen Hunter is a comprehensive vulnerability scanning tool designed for penetration testers, security researchers and bug bounties. it aut…☆29Jul 12, 2026Updated last week
- ☆89Sep 13, 2025Updated 10 months ago
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆29Jun 13, 2025Updated last year
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,609Feb 10, 2024Updated 2 years ago
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!☆2,695Jun 11, 2026Updated last month
- Robofinder fetches historical robots.txt files from Archive.org to uncover old directories, hidden paths, and valuable OSINT data for rec…☆267Jun 13, 2026Updated last month
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆314Mar 31, 2024Updated 2 years ago
- declutters url lists for crawling/pentesting☆1,584Feb 23, 2025Updated last year
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆184Feb 10, 2025Updated last year
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- AI-powered ffuf wrapper☆797Dec 4, 2025Updated 7 months ago
- ☆529Aug 21, 2025Updated 11 months ago
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Apr 9, 2026Updated 3 months ago
- Automate Recon XSS Bug Bounty☆191Mar 9, 2026Updated 4 months ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆238Sep 25, 2025Updated 10 months ago
- Top disclosed reports from HackerOne☆6,374Jul 18, 2026Updated last week
- Extracts URLs from OSINT Archives for Security Insights☆189Updated this week