detectify / ugly-duckling
Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules
☆189Updated 3 years ago
Alternatives and similar repositories for ugly-duckling:
Users that are interested in ugly-duckling are comparing it to the libraries listed below
- Cross Origin Resource Sharing MisConfiguration Scanner☆173Updated 3 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆133Updated 3 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆266Updated 2 years ago
- Bucky (An automatic S3 bucket discovery tool)☆196Updated 3 years ago
- A handy DNS service written in Go to aid in the detection of several types of blind vulnerabilities. It monitors a pentester's server for…☆191Updated 4 years ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆183Updated 2 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆205Updated last year
- Prototype pollution scanner using headless chrome☆218Updated 2 years ago
- GraphQL security workshop labs☆108Updated this week
- ☆71Updated 4 years ago
- ASN reconnaissance script☆127Updated last year
- A script that can resolve an input file of domains and scan them with masscan☆157Updated 4 years ago
- Urls status code & content length checker☆148Updated 4 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆301Updated 2 years ago
- A Burp Suite Extension for parsing Project Files from the CLI.☆87Updated 7 months ago
- You can read the writeup on this script here☆193Updated 3 years ago
- ☆151Updated last year
- An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.☆210Updated 4 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆310Updated 5 months ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆258Updated 2 years ago
- Pentesting/Bugbounty Dockerfiles.☆175Updated 3 years ago
- Detectify Crowdsource Challenge☆69Updated 3 years ago
- List of fresh DNS resolvers updated daily☆108Updated 2 years ago
- Burp Automator - A Burp Suite Automation Tool. It provides a high level CLI and Python interfaces to Burp Suite scanner and can be used t…☆197Updated last year
- A script for installing private Burp Collaborator with free Let's Encrypt SSL-certificate☆209Updated 10 months ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆91Updated 2 months ago
- FockCache - Minimalized Test Cache Poisoning☆110Updated 5 years ago
- A combined wordlists for files and directory discovery☆125Updated 4 years ago
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆222Updated 3 years ago