devanshbatham / headerpwnLinks
A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers
☆341Updated last year
Alternatives and similar repositories for headerpwn
Users that are interested in headerpwn are comparing it to the libraries listed below
Sorting:
- A lightweight tool for orchestrating and organizing your bug hunting recon / pentesting command-line workflows☆293Updated last year
- User-Agent , X-Forwarded-For and Referer SQLI Fuzzer☆381Updated 2 years ago
- Simple tool to scan a website for (DOM-based) XSS vulnerabilities and Open Redirects.☆240Updated 5 months ago
- The Most Advanced Client-Side Prototype Pollution Scanner☆226Updated 3 weeks ago
- Opensource assets and vulnerability scanning tool☆181Updated last month
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆362Updated 2 months ago
- Discover new target domains using Content Security Policy☆460Updated 2 weeks ago
- LEAKEY is a bash script which checks and validates for leaked credentials. The idea behind LEAKEY is to make it highly customizable and e…☆350Updated last year
- Search for sensitive data in Postman public library.☆206Updated 6 months ago
- A smarter web fuzzing tool that combines local LLM models and ffuf to optimize directory and file discovery☆315Updated 7 months ago
- Automated Tool for Testing Header Based Blind SQL Injection☆282Updated last year
- hakip2host takes a list of IP addresses via stdin, then does a series of checks to return associated domain names.☆447Updated 3 years ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆665Updated 3 months ago
- AI-powered ffuf wrapper☆508Updated 7 months ago
- jsleak is a tool to find secret , paths or links in the source code during the recon.☆534Updated 5 months ago
- EndExt is a .go tool for extracting all the possible endpoints from the JS files☆214Updated last year
- Nuclei-AI-Prompts☆212Updated 3 weeks ago
- Local File Inclusion discovery and exploitation tool☆318Updated 6 months ago
- Porch Pirate is the most comprehensive Postman recon / OSINT client and framework that facilitates the automated discovery and exploitati…☆421Updated last year
- A streamlined tool for discovering private TLDs for security research.☆213Updated last week
- ☆207Updated last year
- This tool use fuuzzing to try to bypass unknown authentication methods, who knows...☆248Updated 11 months ago
- Self-hosted passive subdomain continous monitoring tool.☆165Updated last year
- unleashed ffuf☆216Updated last month
- Weekly updated list of missing CVEs in nuclei templates official repository. Mainly built for bug bounty, but useful for penetration test…☆392Updated last week
- Ultimate Tasks Automation Framework for Hackers, DevSecOps, Pentesters, and Bug-bounty hunters!☆150Updated 7 months ago
- Never forget where you inject.☆257Updated 2 years ago
- Fuzz 401/403/404 pages for bypasses☆323Updated 7 months ago
- Smart context-based SSRF vulnerability scanner.☆353Updated 3 years ago
- ☆171Updated last month