daffainfo / apiguesser
Go script to guess an API key / OAuth token found during pentest. CLI version of https://github.com/daffainfo/apiguesser-web/
☆44Updated 2 years ago
Alternatives and similar repositories for apiguesser:
Users that are interested in apiguesser are comparing it to the libraries listed below
- Checks whether a domain is hosted on a cloud service such as AWS, Azure or CloudFlare☆58Updated 2 years ago
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- A powerful and clean bash script to dump and extract information from Project Discovery's Chaos Project https://chaos.projectdiscovery.io…☆25Updated 3 years ago
- Tool for fetching all the available waybackmachine snapshot urls☆20Updated 6 months ago
- Simple website to guess API Key / OAuth Token☆48Updated 2 years ago
- SAP penetration testing Web and network cheatsheet☆16Updated 2 years ago
- This is vulnerable microservice written in many language to demonstrating OWASP API Top Security Risk (under development)☆43Updated 2 years ago
- A BurpSuite extension to deploy an OpenVPN config file to DigitalOcean and set up a SOCKS proxy to route traffic through it☆49Updated last year
- Learning source code review, spot vulnerability, find some ways how to fix it.☆26Updated 2 years ago
- A simple automation tool to detect lfi, rce and ssti vulnerability☆55Updated 3 years ago
- This repository has workflows created for https://github.com/RikunjSindhwad/Task-Ninja☆24Updated 8 months ago
- Jumpstart multiple WebSocket servers quickly☆31Updated 3 years ago
- Performing automated scan using Burp Suite Pro & Vmware Burp Rest API☆49Updated 2 years ago
- A "Spring4Shell" vulnerability scanner.☆49Updated 2 months ago
- Script for Bug Bounty☆28Updated 3 years ago
- Tools and Scripts used in CRTP☆12Updated 4 years ago
- ☆17Updated last year
- A collection of one off hacks and simple scripts☆28Updated 2 years ago
- Vulnerable Code Snippets☆45Updated 2 years ago
- Manage attack surface data on Elasticsearch☆22Updated last year
- ☆20Updated 3 years ago
- [BASH] Bounty Meter is a command-line utility tool designed for bug bounty hunters to define their bounty target for a year, maintain and…☆33Updated last year
- XSS Finder Via SSTI☆55Updated last year
- Extract endpoints marked as disallow in robots files to generate wordlists.☆57Updated 3 years ago
- Google maps api key checker for pentesting purpose☆27Updated 2 years ago
- part of my wordlist to bruteforce DNS to find subdoamains.☆62Updated 3 years ago
- ☆19Updated 3 years ago
- Hunt SSL Certificates for interesting keywords on major cloud service providers / internet☆39Updated last month
- SSLPinDetect is a tool for analyzing Android APKs to detect SSL pinning implementations by scanning for known patterns in decompiled code…☆22Updated last month
- ☆68Updated last year