🎯 Fast CORS misconfiguration vulnerabilities scanner
☆1,139Nov 25, 2021Updated 4 years ago
Alternatives and similar repositories for CORScanner
Users that are interested in CORScanner are comparing it to the libraries listed below
Sorting:
- Automatic SSRF fuzzer and exploitation tool☆3,489Sep 4, 2025Updated 5 months ago
- JSFinder is a tool for quickly extracting URLs and subdomains from JS files on a website.☆2,913Nov 24, 2021Updated 4 years ago
- Redis 4.x/5.x RCE☆975Nov 30, 2021Updated 4 years ago
- SSRF (Server Side Request Forgery) testing resources☆2,483Oct 12, 2024Updated last year
- SRC子域名资产监控☆1,299Jan 14, 2021Updated 5 years ago
- Burp suite 分块传输辅助插件☆2,022Feb 23, 2022Updated 4 years ago
- A python script that finds endpoints in JavaScript files☆4,286Apr 13, 2024Updated last year
- This tool generates gopher link for exploiting SSRF and gaining RCE in various servers☆3,302Apr 18, 2023Updated 2 years ago
- Burp Bounty (Scan Check Builder in BApp Store) is a extension of Burp Suite that allows you, in a quick and simple way, to improve the ac…☆1,774Apr 26, 2024Updated last year
- Burp被动扫描流量转发插件☆1,459Jun 17, 2024Updated last year
- A powerful browser crawler for web vulnerability scanners☆3,016Mar 11, 2025Updated 11 months ago
- A burp extension that add some useful function to Context Menu 添加一些右键菜单让burp用起来更顺畅☆1,896Jan 15, 2026Updated last month
- 360/0Kee-Team/crawlergo动态爬虫结合长亭XRAY扫描器的被动扫描功能☆1,183Nov 10, 2021Updated 4 years ago
- OneForAll是一款功能强大的子域收集工具☆9,635Sep 12, 2025Updated 5 months ago
- CORS Misconfiguration Scanner☆1,505Sep 17, 2022Updated 3 years ago
- weblogic 漏洞扫描工具。目前包含对以下漏洞的检测能力:CVE-2014-4210、CVE-2016-0638、CVE-2016-3510、CVE-2017-3248、CVE-2017-3506、CVE-2017-10271、CVE-2018-2628、CVE-201…☆2,073Nov 24, 2023Updated 2 years ago
- 增强版WeblogicScan、检测结果更精确、插件化、添加CVE-2019-2618,CVE-2019-2729检测,Python3支持☆968Jun 16, 2024Updated last year
- Server-Side Template Injection and Code Injection Detection and Exploitation Tool☆4,120Apr 21, 2024Updated last year
- Fastjson vulnerability quickly exploits the framework(fastjson漏洞快速利用框架)☆1,389Dec 16, 2022Updated 3 years ago
- 一个包含php,java,python,C#等各种语言版本的XXE漏洞Demo☆815Nov 28, 2022Updated 3 years ago
- Tool for automatic exploitation of XXE vulnerability using direct and different out of band methods.☆1,710Dec 1, 2024Updated last year
- TheftFuzzer is a tool that fuzzes Cross-Origin Resource Sharing implementations for common misconfigurations.☆318May 22, 2023Updated 2 years ago
- A Swagger API Exploit☆1,370Jun 7, 2024Updated last year
- JNDI服务利用工具 RMI/LDAP,支持部分场景回显、内存shell,高版本JDK场景下利用等,fastjson rce命令执行,log4j rce命令执行 漏洞检测辅助工具☆2,012May 21, 2024Updated last year
- 一个用于前端加密Fuzz的Burp Suite插件☆1,059Mar 6, 2020Updated 5 years ago
- Weblogic一键漏洞检测工具,V1.5,更新时间:20200730☆2,265May 22, 2023Updated 2 years ago
- python安全和代码审计相关资料收集 resource collection of python security and code review☆1,353Aug 6, 2020Updated 5 years ago
- Passive Security Scanner (被动式安全扫描器)☆1,947Feb 8, 2023Updated 3 years ago
- A fast vulnerability scanner helps pentesters pinpoint possibly vulnerable targets from a large number of web servers☆2,368Dec 31, 2024Updated last year
- Enumeration sub domains(枚举子域名)☆1,066Dec 1, 2021Updated 4 years ago
- HTTP parameter discovery suite.☆6,091Feb 20, 2025Updated last year
- ezXSS is an easy way for penetration testers and bug bounty hunters to test (blind) Cross Site Scripting.☆2,244Jan 8, 2026Updated last month
- 从wooyun中提取的payload,以及burp插件☆842Jun 17, 2022Updated 3 years ago
- Sublert is a security and reconnaissance tool which leverages certificate transparency to automatically monitor new subdomains deployed b…☆1,027Feb 5, 2021Updated 5 years ago
- JexBoss: Jboss (and Java Deserialization Vulnerabilities) verify and EXploitation Tool☆2,514Jan 21, 2020Updated 6 years ago
- mysql注入,bypass的一些心得☆1,326Jun 25, 2024Updated last year
- PoCBox - Vulnerability Test Aid Platform☆964Mar 26, 2024Updated last year
- 用于辅助安全工程师漏洞挖掘、测试、复现,集合了mock、httplog、dns tools、xss,可用于测试各类无回显、无法直观判断或特定场景下的漏洞。☆866Jul 21, 2019Updated 6 years ago
- Shiro550/Shiro721 一键化利用工具,支持多种回显方式☆1,950Jun 4, 2021Updated 4 years ago