daffainfo / Git-SecretLinks
Go scripts for finding sensitive data like API key / some keywords in the github repository
☆158Updated 3 years ago
Alternatives and similar repositories for Git-Secret
Users that are interested in Git-Secret are comparing it to the libraries listed below
Sorting:
- a Go code to detect leaks in JS files via regex patterns☆149Updated 4 years ago
- ☆171Updated 2 months ago
- A Burp Suite plugin/extension that offers a shell in Burp. Both useful for OS Command injection and LFI exploration☆77Updated 5 years ago
- Small tool to automate SSRF wordpress and XMLRPC finder☆82Updated 3 years ago
- A Burp extension adding a passive scan check to flag parameters whose name or value may indicate a possible insertion point for SSRF or L…☆132Updated 4 years ago
- Check AWS S3 instances for read/write/delete access☆122Updated 3 years ago
- Fast CLI tool to find the parameters that can be used to find SSRF or Out-of-band resource load☆296Updated last year
- IP Lookups for Open Ports and Vulnerabilities from internetdb.shodan.io☆131Updated 3 years ago
- Full Nuclei automation script with logic explanation.☆245Updated 3 years ago
- Go scripts for checking API key / access token validity☆219Updated 4 years ago
- Automated Web Recon Shell Scripts☆53Updated 4 years ago
- This exention enables autocompletion within BurpSuite Repeater/Intruder tabs.☆164Updated 4 years ago
- Enumerate Subdomains Through Google Dorks (Bypassed Page Filter)☆125Updated 6 months ago
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated 2 years ago
- A very (very) FAST and simple subdomain finder based on online & free services. Without any configuration requirements.☆115Updated last week
- ☆159Updated 3 years ago
- A blind XSS detection and XSS data capture framework☆174Updated 3 weeks ago
- Tool to find the real IP behind CDNs/WAFs like cloudflare using passive recon by retrieving the favicon hash. For the same hash value, al…☆184Updated 4 years ago
- A Simple Tool to Pull Paid Bounty Scopes for Wide Recon Actvities☆105Updated 4 years ago
- Wicked sick v2.0 script is intended to automate your reconnaissance process in an organized fashion.☆150Updated 2 years ago
- Hidden parameters discovery suite☆225Updated 3 years ago
- A replacement of "qsreplace", accepts URLs as standard input, replaces all query string values with user-supplied values and stdout.☆109Updated 3 years ago
- Advanced Reconnaissance and Web Application Discovery☆88Updated 4 years ago
- ☆55Updated 4 years ago
- A burp suite extension that enumerates infrastructure and application admin interfaces (OTG-CONFIG-005)☆122Updated 3 years ago
- A simple Bash one liner with aim to automate CRLF vulnerability scanning.☆69Updated 5 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆61Updated 4 years ago
- Payloads to be used with Burp Suite Intruder. (Originally found on swisskeyrepo-PayloadsAllTheThings)☆85Updated 5 years ago
- Prototype pollution scanner using headless chrome☆219Updated 3 years ago
- R3C0Nizer is the first ever CLI based menu-driven web application B-Tier recon framework.☆152Updated 4 years ago