dub-flow / sessionprobeLinks
SessionProbe is a multi-threaded tool designed for penetration testing and bug bounty hunting. It evaluates user privileges in web applications by taking a session token and checking access across a list of URLs, highlighting potential authorization issues.
☆451Updated last year
Alternatives and similar repositories for sessionprobe
Users that are interested in sessionprobe are comparing it to the libraries listed below
Sorting:
- BucketLoot is an automated S3-compatible bucket inspector that can help users extract assets, flag secret exposures and even search for c…☆425Updated 6 months ago
- Pen Test Report Generation and Assessment Collaboration☆537Updated this week
- RedCloudOS is a Cloud Adversary Simulation Operating System for Red Teams to assess the Cloud Security of Leading Cloud Service Providers…☆645Updated last year
- The Internets #1 Subdomain Takeover Tool☆268Updated 2 months ago
- Misconfig Mapper is a fast tool to help you uncover security misconfigurations on popular third-party services used by your company and/o…☆749Updated 3 weeks ago
- Web Security Scanner☆329Updated last month
- ☆241Updated 6 months ago
- SubSnipe is a tool designed to help find subdomains that are vulnerable to takeover.☆124Updated 6 months ago
- TInjA is a CLI tool for testing web pages for template injection vulnerabilities and supports 44 of the most relevant template engines fo…☆366Updated 2 months ago
- ☆236Updated last year
- ☆492Updated last year
- A humble, and 𝗳𝗮𝘀𝘁, security-oriented HTTP headers analyzer.☆327Updated this week
- Spoofy is a program that checks if a list of domains can be spoofed based on SPF and DMARC records.☆708Updated last week
- 💀 Don't fear the Reaper 👻☆563Updated this week
- A powerful scanner to scan your Filesystem, S3, MySQL, Redis, Google Cloud Storage and Firebase storage for PII and sensitive data.☆404Updated 3 weeks ago
- A tool for auditing endpoints defined in exposed (Swagger/OpenAPI) definition files.☆672Updated 3 months ago
- The Distributed Scanning Framework for Everybody! Control Your Infrastructure, Scale Your Scanning—On Your Terms. Easily distribute arbit…☆570Updated last week
- Pentest Report Generator☆417Updated this week
- Domain_checker application is the trial/demo version for the new EASM (External Attack Surface Management) system called HydrAttack (hydr…☆188Updated last year
- Certainly is a offensive security toolkit to capture large amounts of traffic in various network protocols in bitflip and typosquat scena…☆189Updated 11 months ago
- Reconmap is a collaboration-first security operations platform for infosec teams and MSSPs, enabling end‑to‑end engagement management, fr…☆784Updated last month
- Secret Magpie - Secret Detection Tool☆236Updated last year
- Find CVEs associated to Linux and public exploits on github☆119Updated 3 months ago
- Dredging up secrets from the depths of the file system☆128Updated 9 months ago
- A fuzzer for finding anomalies and analyzing how servers respond to different HTTP headers☆344Updated last year
- A collection of Active Directory, phishing, mobile technology, system, service, web application, and wireless technology weaknesses that …☆247Updated 2 years ago
- A RedTeam Toolkit☆404Updated 4 months ago
- Websec interview questions by tib3rius answered☆309Updated last year
- A suite for hunting suspicious targets, expose domains and phishing discovery☆368Updated last month
- Create your own vulnerable by design AWS penetration testing playground☆387Updated 3 months ago