codingo / guides
A companion repo to accompany detailed guides and YouTube content to allow users to follow along
☆13Updated 4 years ago
Alternatives and similar repositories for guides:
Users that are interested in guides are comparing it to the libraries listed below
- This extension replaces the default repeater tab name with the URL path of the repeater request.☆22Updated 3 years ago
- ☆12Updated 3 years ago
- take a list of resolved subdomains and output any corresponding CNAMES en masse.☆15Updated last year
- ☆12Updated last year
- Tool to find stored robots.txt files from the past☆18Updated last year
- CRLFMap is a tool to find HTTP Splitting vulnerabilities☆25Updated 4 years ago
- WebSocket Connection Smuggler☆44Updated 2 years ago
- Burp Extension for copying requests safely. It redacts headers like Cookie, Authorization and X-CSRF-Token for now. More support can be a…☆17Updated 4 years ago
- parse ffuf & map endpoints to wordlists☆20Updated 3 years ago
- Wordlists for Bug Bounty☆25Updated 5 years ago
- A tools for JavaScript Recon☆21Updated 4 years ago
- A BurpSuite plugin for BBRF☆24Updated 2 months ago
- ☆24Updated 4 years ago
- This script scrapes the list of open Bug Bounty Programs from openbugbounty.org☆27Updated 2 years ago
- Related subdomains finder☆29Updated 2 years ago
- Extract subdomains from rapiddns.io☆23Updated 2 years ago
- Collection of content discovery wordlists in one wordlist.☆38Updated 3 years ago
- Ffuf output browser☆39Updated last year
- Query various sources for CVE proof-of-concepts☆49Updated last year
- Take a list of URIs and print all the of the paths☆10Updated 4 years ago
- qsinject (Query String Inject) is a tool that allows you to quickly substitute query string values with regex matches, one-at-a-time.☆30Updated 4 years ago
- Atlassian Confluence CVE-2021-26084 one-liner mass checker☆30Updated 3 years ago
- This extension redacts potentially sensitive header and parameter values from requests using Shannon Entropy analysis.☆12Updated 4 years ago
- whoareyou is a tool to find the underlying technology/software used in a list of websites passed through stdin (using Wappalyzer dataset)☆32Updated 4 years ago
- Example of a serverless web reconaissance workflow's AWS architecture.☆10Updated last year
- View screenshots as a slideshow over http☆15Updated 4 years ago
- Takes a list of domains as the input, checks if they have a security.txt, outputs the results.☆14Updated 4 years ago
- ☆23Updated 2 years ago
- Burp extension to increment a parameter in each active scan request☆11Updated 4 years ago
- Get all the CNs from a list of domains☆46Updated 3 years ago