devanshbatham / headerpwnLinks
A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers
☆355Updated 2 years ago
Alternatives and similar repositories for headerpwn
Users that are interested in headerpwn are comparing it to the libraries listed below
Sorting:
- A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows☆300Updated 2 years ago
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆382Updated 2 years ago
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆402Updated last month
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆255Updated 11 months ago
- unleashed ffuf☆245Updated 3 months ago
- A smarter web fuzzing tool that combines local LLM models and ffuf to optimize directory and file discovery☆382Updated last year
- The Most Advanced Client-Side Prototype Pollution Scanner☆244Updated last week
- Ultimate Tasks Automation Framework for Hackers, DevSecOps, Pentesters, and Bug-bounty hunters!☆154Updated 4 months ago
- Local File Inclusion discovery and exploitation tool☆333Updated last year
- Opensource assets and vulnerability scanning tool☆186Updated 2 weeks ago
- ☆220Updated last year
- Automated Tool for Testing Header Based Blind SQL Injection☆322Updated 2 years ago
- A rapid HTTP downgrade smuggling scanner written in Go.☆311Updated last year
- GBounty is a multi-step website vulnerability scanner developed in Golang designed to help companies, pentesters, and bug hunters identif…☆160Updated 5 months ago
- A streamlined tool for discovering private TLDs for security research.☆239Updated last week
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆454Updated 3 years ago
- A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.☆138Updated 9 months ago
- Discover new target domains using Content Security Policy☆500Updated this week
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆165Updated last year
- ☆206Updated last year
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆219Updated last year
- AI-powered ffuf wrapper☆641Updated 2 months ago
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆423Updated this week
- Make URL path combinations using a wordlist☆169Updated 2 years ago
- Search for sensitive data in Postman public library.☆214Updated 5 months ago
- ☆173Updated 6 months ago
- jsleak is a tool to find secret , paths or links in the source code during the recon.☆572Updated 4 months ago
- Nodesub is a command-line tool for finding subdomains in bug bounty programs☆148Updated last year
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆719Updated this week
- Search for all leaked keys/secrets using one regex! bugbounty☆182Updated 10 months ago