jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive data, such as API endpoints and potential security vulnerabilities, making it an essential resource for and bug bounty hunters and security researchers.
☆530Aug 12, 2026Updated this week
Alternatives and similar repositories for JShunter
Users that are interested in JShunter are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ex-param is an automated tool designed for finding reflected parameters for XSS vulnerabilities. It crawls a target website, extracts GET…☆60Feb 22, 2025Updated last year
- High-Performance JavaScript Security Scanner - Process 1M URLs in ~5 hours with Telegram & Discord bot integration, Docker support, and c…☆176Oct 18, 2025Updated 9 months ago
- A passive way to find backups/ sensitive information.☆94Jul 10, 2025Updated last year
- ParamScan is a chrome extension for finding reflected parameters in a webpage.☆93Jan 11, 2025Updated last year
- best tool for finding SQLi,CRLF,XSS,LFi,OpenRedirect☆1,608Dec 7, 2025Updated 8 months ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- 🚫 Advanced tool for security researchers to bypass 403/40X restrictions through smart techniques and adaptive request manipulation. Fast…☆1,830Jun 21, 2026Updated last month
- A high-performance Go-based tool for checking the availability and responsiveness of domains, utilizing both HTTP requests and browser au…☆93Nov 26, 2024Updated last year
- Javascript security analysis (JSA) is a program for javascript analysis during web application security assessment.☆567Mar 8, 2025Updated last year
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆147Jan 21, 2025Updated last year
- A high-speed tool for passively gathering URLs, optimized for efficient and comprehensive web asset discovery without active scanning.☆896Updated this week
- Header Exploitation HTTP☆762Updated this week
- An IIS short filename enumeration tool☆1,214Nov 25, 2024Updated last year
- Orbis is an full spectrum automated external attack surface intelligent toolkit.☆398Updated this week
- A simple browser extension to quickly find interesting security-related information on a webpage.☆184Jul 31, 2026Updated 2 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Zzl is a reconnaissance tool that collects subdomains from SSL certificates in IP ranges☆43Oct 27, 2024Updated last year
- Automatic SSTI detection tool with interactive interface☆1,605Apr 25, 2026Updated 3 months ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆312May 16, 2024Updated 2 years ago
- An advanced cross-platform tool that automates the process of detecting and exploiting SQL injection security flaws☆4,063Oct 4, 2025Updated 10 months ago
- ☆1,171Jan 28, 2026Updated 6 months ago
- Automation tool to testing and confirm the xss vulnerability.☆306Jul 18, 2025Updated last year
- SubOwner - A Simple tool check for subdomain takeovers.☆122Oct 18, 2024Updated last year
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆867Jul 22, 2026Updated 3 weeks ago
- NucleiFuzzer is a robust automation tool that efficiently detects web application vulnerabilities, including XSS, SQLi, SSRF, and Open Re…☆1,864Apr 17, 2026Updated 3 months ago
- Virtual machines for every use case on DigitalOcean • AdGet dependable uptime with 99.99% SLA, simple security tools, and predictable monthly pricing with DigitalOcean's virtual machines, called Droplets.
- Pen Hunter is a comprehensive vulnerability scanning tool designed for penetration testers, security researchers and bug bounties. it aut…☆30Jul 12, 2026Updated last month
- ☆90Sep 13, 2025Updated 11 months ago
- This script automates SQL injection testing using SQLMap with AI-powered decision making.☆29Jun 13, 2025Updated last year
- This repository contain a lot of web and api vulnerability checklist , a lot of vulnerability ideas and tips from twitter☆3,625Feb 10, 2024Updated 2 years ago
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!☆2,717Jun 11, 2026Updated 2 months ago
- Robofinder fetches historical robots.txt files from Archive.org to uncover old directories, hidden paths, and valuable OSINT data for rec…☆270Jun 13, 2026Updated 2 months ago
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆312Mar 31, 2024Updated 2 years ago
- declutters url lists for crawling/pentesting☆1,584Feb 23, 2025Updated last year
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆184Feb 10, 2025Updated last year
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- AI-powered ffuf wrapper☆801Dec 4, 2025Updated 8 months ago
- ☆535Aug 21, 2025Updated 11 months ago
- All-in Fuzzer. Burp suite extension for auto fuzzing params, headers, body☆36Apr 9, 2026Updated 4 months ago
- Automate Recon XSS Bug Bounty☆192Mar 9, 2026Updated 5 months ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆237Sep 25, 2025Updated 10 months ago
- Top disclosed reports from HackerOne☆6,437Jul 18, 2026Updated 3 weeks ago
- Extracts URLs from OSINT Archives for Security Insights☆190Updated this week