detectify / ugly-duckling
Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules
☆188Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for ugly-duckling
- GraphQL security workshop labs☆102Updated 4 months ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆201Updated last year
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆178Updated 2 years ago
- Prototype pollution scanner using headless chrome☆197Updated 2 years ago
- An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.☆205Updated 4 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆124Updated 4 years ago
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆263Updated last year
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆89Updated 7 months ago
- Cross Origin Resource Sharing MisConfiguration Scanner☆169Updated 3 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆133Updated 3 years ago
- ☆146Updated last year
- A Burp Suite Extension for parsing Project Files from the CLI.☆84Updated last month
- DEPRECATED, please use the new repository from OWASP: https://github.com/OWASP/raider☆138Updated 3 years ago
- This Burpsuite plugin allows for multiple web app testers to share their proxy history with each other in real time. Requests that comes …☆252Updated 2 years ago
- qsfuzz (Query String Fuzz) allows you to build your own rules to fuzz query strings and easily identify vulnerabilities.☆296Updated last year
- Corsair_scan is a security tool to test Cross-Origin Resource Sharing (CORS).☆122Updated last year
- A tool geared towards pentesting APIs using OpenAPI definitions.☆168Updated 2 years ago
- ☆68Updated 2 years ago
- GraphQL security testing tool☆117Updated 2 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆295Updated this week
- List of fresh DNS resolvers updated daily☆106Updated last year
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆185Updated 3 months ago
- ☆71Updated 4 years ago
- Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures t…☆205Updated 4 years ago
- ☆232Updated 4 months ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆150Updated last year
- ☆108Updated 4 years ago