detectify / ugly-duckling
Ugly Duckling is a lightweight scanner built specifically for our Crowdsource community to submit proof-of-concept modules
☆189Updated 3 years ago
Alternatives and similar repositories for ugly-duckling:
Users that are interested in ugly-duckling are comparing it to the libraries listed below
- BurpSuite Extension: A one-stop pen testing checklist and logger tool☆265Updated last year
- Cross Origin Resource Sharing MisConfiguration Scanner☆172Updated 3 years ago
- GoFingerprint is a Go tool for taking a list of target web servers and matching their HTTP responses against a user defined list of fing…☆203Updated last year
- ASN reconnaissance script☆124Updated last year
- Prototype pollution scanner using headless chrome☆216Updated 2 years ago
- ☆71Updated 4 years ago
- A reverse whois tool based on Whoxy API.☆162Updated 10 months ago
- Burp Extension for easily creating Wordlists☆210Updated 3 years ago
- Weaponizing Live CT logs for automated monitoring of assets☆132Updated 3 years ago
- The Burp extension to check JWT (JSON Web Tokens) for using keys from known from public sources☆128Updated 4 years ago
- An open source tool to aid in command line driven generation of bug bounty reports based on user provided templates.☆209Updated 4 years ago
- A projectdiscovery driven attack surface monitoring bot powered by axiom☆181Updated 2 years ago
- Takeover AWS ips and have a working POC for Subdomain Takeover.☆90Updated this week
- GraphQL security workshop labs☆102Updated 7 months ago
- Burp Suite extension that offers a toolkit for testing GraphQL endpoints.☆189Updated 6 months ago
- Custom scripts for the PIPER Burp extensions.☆97Updated last year
- A script that can resolve an input file of domains and scan them with masscan☆157Updated 4 years ago
- The Bug Bounty Reconnaissance Framework (BBRF) can help you coordinate your reconnaissance workflows across multiple devices☆304Updated 3 months ago
- List of fresh DNS resolvers updated daily☆109Updated 2 years ago
- Damn Vulnerable Cloud Application☆191Updated 6 years ago
- A simple way of sending messages from the CLI output to your Slack with webhook.☆116Updated last year
- Quickly generate context-specific wordlists for content discovery from lists of URLs or paths☆216Updated 2 years ago
- Adds a customizable "Send to..."-context-menu to your BurpSuite.☆152Updated 2 years ago
- Poor (rich?) man's bug bounty pipeline https://dubell.io☆274Updated last year
- Pentesting/Bugbounty Dockerfiles.☆176Updated 3 years ago
- ☆99Updated last year
- Takes a single wordlist item and tests it one by one over a large collection of websites before moving onto the next. Create signatures t…☆208Updated 4 years ago
- You can read the writeup on this script here☆193Updated 3 years ago
- Get the scope of your bugcrowd programs☆66Updated 4 years ago
- The Pixi module is a MEAN Stack web app with wildly insecure APIs!☆120Updated 2 years ago