darklotuskdb / SSTI-XSS-FinderLinks
XSS Finder Via SSTI
☆56Updated 2 years ago
Alternatives and similar repositories for SSTI-XSS-Finder
Users that are interested in SSTI-XSS-Finder are comparing it to the libraries listed below
Sorting:
- Basic Recon For Bug Bounty Hunter - "HuntTheBug" is Basic Scripts For Sub Domain Enumeration> Live Domain Enumeration > Sub Domain Hijack…☆55Updated 3 years ago
- An SSRF detector tool written in golang. I have fixed some errors and added some more payloads to it. But the tool credits go to z0idsec.☆45Updated 4 years ago
- A solid recon tool I use personally.☆30Updated 2 years ago
- Enhanced 403 bypass header☆21Updated 3 years ago
- Feed it a list of subdomains, it will resolve them and tell you which ones are internal☆93Updated 3 years ago
- I collected it to help the bug hunter get a reward☆58Updated 3 years ago
- KARMA is a simple bash script automation that can hit Shodan Premium API and find active IPs, ASN, Common Vulnerabilities, CVEs & Open Po…☆59Updated 4 years ago
- a burp extension for dynamic payload generation to detect injection flaws (RCE, LFI, SQLi), creates access matrix based user sessions to …☆49Updated 3 years ago
- ☆44Updated 4 years ago
- SubzzZ to find possible subdomains using passive recon. Tool also support Permutations, Mutations, Alterations.☆38Updated 4 years ago
- ☆21Updated 3 years ago
- Script for Reconnaissance(Bug Bounty)☆18Updated 3 years ago
- Blind spot is a python tool for blind injection vulnerabilities , SQLi time based , Command injection , code injection , SSTI☆26Updated 4 years ago
- ☆13Updated 3 years ago
- A very simple AEM detector written in rust.🦀☆20Updated 2 years ago
- It grep subdomains, email/username, build custom wordlist etc from gau results☆48Updated 2 years ago
- ShoLister is a tool that collects all available subdomains for specific hostname or organization from Shodan. The tool is designed to be …☆61Updated 3 years ago
- Supertruder but better☆31Updated 2 years ago
- ☆21Updated 2 years ago
- Extract endpoints marked as disallow in robots files to generate wordlists.☆59Updated 3 years ago
- Some of the gf patterns which i use☆45Updated 3 years ago
- Script that download 37+ open source nuclei templates☆44Updated 3 years ago
- A repo for tools, utils, and wrappers that are to small to put in their own repo.☆23Updated 2 years ago
- Basic Bash Script to scrape all subdomains from crtsh in a single run☆19Updated 3 years ago
- This tool is a simple LFI, RFI, RCE, and Joomla Components vulnerability scanner, created by JayCyberSecurity☆22Updated 3 years ago
- Resolvers updated daily for reconftw☆47Updated 2 years ago
- An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability☆17Updated 4 years ago
- JsValidator is a tool created for validating the JS files after crawlling it from waybackurls☆19Updated 2 years ago
- ☆21Updated 4 years ago
- collection of various grep patterns collected from tomnomnom/gf and other places☆23Updated 5 years ago