chennylmf / OWASP-Web-App-Pentesting-checklistsLinks
☆72Updated 5 years ago
Alternatives and similar repositories for OWASP-Web-App-Pentesting-checklists
Users that are interested in OWASP-Web-App-Pentesting-checklists are comparing it to the libraries listed below
Sorting:
- Misc bounty and vulndisc things☆85Updated 5 years ago
- A combined wordlists for files and directory discovery☆127Updated 4 years ago
- ☆76Updated 5 years ago
- Suite of programs meant to aid in bug hunting and security assessments☆79Updated 6 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 5 years ago
- ☆60Updated last year
- 📚 An ultimate collection wordlists of the best-known CMS☆93Updated last year
- XSS Payload without Anything.☆104Updated 6 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Hacked together script for feeding urls into Burp's Sitemap☆93Updated 2 months ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆107Updated 5 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆134Updated 4 years ago
- Takeover subdomains using AWS dangling elastic ips and have a working POC for Subdomain Takeover.☆93Updated 7 months ago
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆52Updated 4 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆66Updated 5 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆82Updated 3 years ago
- Some of my bug bounty tools☆52Updated 6 years ago
- A Simple Tool to Pull Paid Bounty Scopes for Wide Recon Actvities☆106Updated 4 years ago
- A simple Cherry Tree template that can be used to organize bug bounties☆40Updated 6 years ago
- ASN reconnaissance script☆131Updated 2 years ago
- Bucky (An automatic S3 bucket discovery tool)☆198Updated 4 years ago
- ☆39Updated 6 years ago
- Vulnerable SAML infrastructure training applicaiton☆54Updated 3 years ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆99Updated 4 years ago
- Clientside vulnerability / reflected xss fuzzer☆149Updated 2 years ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆174Updated 4 years ago
- ☆11Updated 5 years ago
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆117Updated last month
- Get all possible href | src | url from target url or domain☆40Updated 5 years ago
- FockCache - Minimalized Test Cache Poisoning☆111Updated 6 years ago