chennylmf / OWASP-Web-App-Pentesting-checklists
☆71Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for OWASP-Web-App-Pentesting-checklists
- Sometimes we want to fuzz a set of sub-domain URLs with a common wordlist. Fuzzing them one by one is a tedious task, not to mention the …☆51Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆130Updated 3 years ago
- A collection of code for interacting with API sources directly to improve your understanding of those services.☆65Updated 3 years ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆89Updated 7 months ago
- Script to test open Akamai ARL vulnerability.☆70Updated 3 years ago
- Recon Custom WordList Ganerator☆56Updated 4 years ago
- Urls de-duplication tool for better recon.☆136Updated 4 months ago
- ☆75Updated 3 years ago
- Misc bounty and vulndisc things☆82Updated 3 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ASN reconnaissance script☆124Updated 9 months ago
- Suite of programs meant to aid in bug hunting and security assessments☆75Updated 4 years ago
- This Repo contains wordlist for subdomain enumeration , php file path, html file path, and js file path☆102Updated 4 years ago
- A blazing fast & feature rich Amazon S3 bucket enumerator.☆94Updated 2 years ago
- ☆57Updated 4 months ago
- Find subdomains and takeovers.☆84Updated last year
- ☆122Updated 4 years ago
- ☆60Updated 3 months ago
- BurpSuite extension to inject custom cross-site scripting payloads on every form/request submitted to detect blind XSS vulnerabilities☆107Updated last year
- Cross Origin Resource Sharing MisConfiguration Scanner☆169Updated 3 years ago
- A collection of over 5.1 million sub-domains and assets belonging to public bug bounty programs, compiled into a repo, for performing bul…☆95Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆58Updated 3 years ago
- Penetration Testing Checklist☆35Updated 4 years ago
- Get the scope of your bugcrowd programs☆66Updated 3 years ago
- jenkinz is a tool to retrieve every build for every job ever created and run on a given Jenkins instance.☆66Updated 5 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆74Updated 2 years ago