A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon
☆245Oct 20, 2023Updated 2 years ago
Alternatives and similar repositories for dorky
Users that are interested in dorky are comparing it to the libraries listed below
Sorting:
- Find subdomains with GPT, for free☆353Apr 18, 2024Updated last year
- This is a Burp Suite extension that allows users to easily add web addresses to the Burp Suite scope.☆97Jan 2, 2025Updated last year
- A Burp Suite extension to add OpenAI (GPT) on Burp and help you with your Bug Bounty recon to discover endpoints, params, URLs, subdomain…☆887May 3, 2023Updated 2 years ago
- A simple Burp Suite extension to crawl JavaScript (JS) files in passive mode and display the results directly on the issues☆374Jul 25, 2023Updated 2 years ago
- Find way more from the Wayback Machine, Common Crawl, Alien Vault OTX, URLScan, VirusTotal, GhostArchive & Intelligence X!☆2,543Feb 7, 2026Updated 3 weeks ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆142Sep 16, 2024Updated last year
- Escalate your SSRF vulnerabilities on Modern Cloud Environments. `surf` allows you to filter a list of hosts, returning a list of viable …☆750Dec 19, 2023Updated 2 years ago
- A python tool used to discover endpoints, potential parameters, a target specific wordlist for a given target and secrets☆1,524Jan 15, 2026Updated last month
- ⡷⠂𝚔𝚊𝚛𝚖𝚊 𝚟𝟸⠐⢾ is a Passive Open Source Intelligence (OSINT) Automated Reconnaissance (framework)☆938May 21, 2025Updated 9 months ago
- ☆380May 17, 2023Updated 2 years ago
- A path-normalization pentesting tool.☆151Jan 22, 2026Updated last month
- A proof of concept program that pulls and parses security.txt files at mass.☆29May 31, 2023Updated 2 years ago
- Identify virtual hosts by similarity comparison☆137Aug 12, 2024Updated last year
- Extract URLs, paths, secrets, and other interesting bits from JavaScript☆1,771May 22, 2024Updated last year
- Find related domains of a given domain.☆103Aug 5, 2023Updated 2 years ago
- A BurpSuite extension to create a custom word-list of endpoint and parameters for enumeration and fuzzing☆142Jun 27, 2023Updated 2 years ago
- De-clutter a list of URLs☆386Feb 3, 2026Updated 3 weeks ago
- Tool for discovering the origin host behind a reverse proxy. Useful for bypassing cloud WAFs!☆975Jan 12, 2024Updated 2 years ago
- ☆522Apr 29, 2024Updated last year
- Community edition nuclei templates, a simple tool that allows you to organize all the Nuclei templates offered by the community in one pl…☆1,039Aug 23, 2025Updated 6 months ago
- REcollapse is a helper tool for black-box regex fuzzing to bypass validations and discover normalizations in web applications☆1,290Aug 7, 2025Updated 6 months ago
- Gotator is a tool to generate DNS wordlists through permutations.☆505Jul 17, 2022Updated 3 years ago
- CLI tool that extracts a regex pattern from a list of urls ( Rust )☆61Sep 14, 2022Updated 3 years ago
- Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!☆1,268Updated this week
- fuzzuli is a url fuzzing tool that aims to find critical backup files by creating a dynamic wordlist based on the domain.☆936Aug 24, 2023Updated 2 years ago
- A tool to scrape the AWS ranges looking for a keyword in SSL certificate data.☆238Jan 10, 2024Updated 2 years ago
- Burp Extension to find potential endpoints, parameters, and generate a custom target wordlist☆1,497Jan 8, 2026Updated last month
- AllForOne allows bug bounty hunters and security researchers to collect all Nuclei YAML templates from various public repositories,☆732Mar 21, 2024Updated last year
- Recon-Ninja☆86Mar 24, 2024Updated last year
- Filter and enrich a list of subdomains by level☆210Sep 25, 2023Updated 2 years ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆219Jul 14, 2024Updated last year
- Fast and customizable subdomain wordlist generator using DSL☆928Feb 5, 2026Updated 3 weeks ago
- Private Nuclei Templates☆100Feb 24, 2025Updated last year
- Authorization-Nuclei-Templates☆39Sep 16, 2024Updated last year
- Keyhacks is a repository which shows quick ways in which API keys leaked by a bug bounty program can be checked to see if they're valid.☆6,075Aug 14, 2024Updated last year
- Never forget where you inject.☆297Aug 15, 2025Updated 6 months ago
- Fast and customizable vulnerability scanner For JIRA written in Python☆344Dec 31, 2024Updated last year
- i will upload more templates here to share with the comunity.☆567Apr 17, 2024Updated last year
- Hidden parameters discovery suite☆2,027Sep 8, 2024Updated last year