devanshbatham / headerpwn
A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers
☆340Updated last year
Alternatives and similar repositories for headerpwn
Users that are interested in headerpwn are comparing it to the libraries listed below
Sorting:
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆382Updated last year
- AI-powered ffuf wrapper☆478Updated 5 months ago
- A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows☆290Updated last year
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆237Updated 3 months ago
- ☆198Updated 3 months ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆650Updated 3 weeks ago
- Automated Tool for Testing Header Based Blind SQL Injection☆276Updated last year
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆351Updated 5 months ago
- ☆240Updated 3 years ago
- The Most Advanced Client-Side Prototype Pollution Scanner☆221Updated 3 weeks ago
- Opensource assets and vulnerability scanning tool☆163Updated 3 months ago
- MapperPlus facilitates the extraction of source code from a collection of targets that have publicly exposed .js.map files.☆170Updated 7 months ago
- This is a python wrapper around the amazing KNOXSS API by Brute Logic☆262Updated last month
- Fuzz 401/403/404 pages for bypasses☆310Updated 4 months ago
- Discover new target domains using Content Security Policy☆428Updated 2 weeks ago
- i will upload more templates here to share with the comunity.☆543Updated last year
- ☆387Updated last week
- Advanced Time-based Blind SQL Injection fuzzer for HTTP Headers☆297Updated last year
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆200Updated 9 months ago
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆444Updated 3 years ago
- Nuclei-AI-Prompts☆190Updated last month
- Self-hosted passive subdomain continous monitoring tool.☆162Updated last year
- Local File Inclusion discovery and exploitation tool☆304Updated 4 months ago
- A smarter web fuzzing tool that combines local LLM models and ffuf to optimize directory and file discovery☆304Updated 5 months ago
- A tool to quickly do keyword searches over Gitlab and Github for OSINT & bug bounty recon☆237Updated last year
- SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens☆158Updated 5 months ago
- Streamline your recon and vulnerability detection process with SCRIPTKIDDI3, A recon and initial vulnerability detection tool built using…☆151Updated last year
- De-clutter a list of URLs☆338Updated 5 months ago
- A suite for hunting suspicious targets, expose domains and phishing discovery☆358Updated 2 weeks ago
- ☆523Updated 10 months ago